
BlueSpy
PoC to record audio from a Bluetooth device

PoC to record audio from a Bluetooth device

Key Negotiation Of Bluetooth (KNOB) attacks on Bluetooth BR/EDR and BLE [CVE-2019-9506]

Documenting Osmo Mobile BLE protocol

Linux Kernel < 4.13.1 - BlueTooth Buffer Overflow (PoC) BlueBorne - Proof of Concept - Unarmed/Unweaponized - DoS (Crash) only

Proof of Concept of Sweyntooth Bluetooth Low Energy (BLE) vulnerabilities.

BlueBorne Exploits & Framework This repository contains a PoC code of various exploits for the BlueBorne vulnerabilities. Under 'android' exploits…

AOSP Bluetooth stack repository modified to address CVE-2022-20224, providing a patched version of the Fluoride Bluetooth stack for Android 10.

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

AOSP Bluetooth stack repository modified for CVE-2021-0435, providing a patched or vulnerable version for analysis and testing of Bluetooth…

Simple detection tool for Blueborne vulnerability found on Android devices --- CVE-2017-0781.

Exploit the hack for IOS 11.1.2 and earlier to collect leaked information.

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

Exploit of the CVE-2025-36911 vulnerability in Python for testing our own equipment

Proof-of-concept exploit for Blueborne CVE-2017-1000251 enabling Bluetooth denial-of-service attacks on Linux machines via crafted L2CAP packets.

Proof-of-concept tool demonstrating zero-authentication Bluetooth RFCOMM access bypass in vulnerable thermal printers

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

Exploit for CVE-2020-0225 in the Android Fluoride Bluetooth stack, enabling remote code execution via a crafted Bluetooth packet. Includes build…

Exploit script for CVE-2017-0785 that crashes the Bluetooth module on Android 4.0+ devices by sending crafted SDP search requests, causing…