
platform_system_netd_AOSP10_r33_CVE-2023-40084
Android netd vulnerability analysis and exploitation research for CVE-2023-40084, focusing on the platform's network daemon.

Android netd vulnerability analysis and exploitation research for CVE-2023-40084, focusing on the platform's network daemon.

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

CVE-2026-0006: Heap buffer overflow PoC for libopenapv (Android APV codec) - CVSS 9.8

Writeup and exploit for CVE-2024-34740, integer overflow in Android's BinaryXmlSerializer to system_server file write and then to system_server code…

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

Proof-of-concept exploit for CVE-2022-0219, an XXE vulnerability in Jadx that allows local file disclosure when exporting malicious APK files via the…

Exploit and writeup for installed app to root privilege escalation through CVE-2024-48336 (Magisk Bug #8279), Privileges Escalation / Arbitrary Code…

Android MediaProvider vulnerability analysis and patch for CVE-2023-40127, focusing on security assessment and remediation.

Android platform framework repository containing a patch or analysis for CVE-2023-21288, a vulnerability in the Android framework.

Android platform framework patch for CVE-2023-21281, addressing a security vulnerability in the Android framework.

Analyzes and demonstrates the Android Runtime vulnerability CVE-2021-0394, providing code-level insights for security researchers and developers.

Android KeyChain package with patch for CVE-2021-0963, addressing a security vulnerability in AOSP 10.

Repository dedicated to CVE-2022-20473, a vulnerability in Android's Minikin library, providing patched source code for AOSP 10.

Android framework patch for CVE-2023-21284, addressing a security vulnerability in AOSP 10.

Analyzes and patches Android AAC (Adaptive Audio Coding) library for CVE-2023-21282, focusing on vulnerability assessment and code-level fixes.

PulseAPK is a WPF frontend for apktool and uber-signer with drag-and-drop support, live decompilation output, smali analysis, and integrated APK…

Android AAC codec vulnerability analysis and patch for CVE-2022-20130, focusing on memory corruption in external AAC library.

Exploit code for CVE-2023-40127, a vulnerability in Android MediaProvider, demonstrating the flaw for security research and testing.