
CVE-2016-5195-master
Proof-of-concept exploit for CVE-2016-5195 (Dirty COW) targeting Android devices via ADB, demonstrating local privilege escalation through race…

Proof-of-concept exploit for CVE-2016-5195 (Dirty COW) targeting Android devices via ADB, demonstrating local privilege escalation through race…

A robust digital forensics tool for extracting and analyzing Google Chrome artifacts from Android devices

Lab Exploit (CVE-2021-521): App uses Java reflection to access Android system components, retrieving a list of all installed apps. Reflection…


Lightweight Java 8 web framework for building REST APIs and web applications, with built-in routing, static file serving, and template engine support.

A bash automation that exploits the vulnerable endpoints for the Joomla! API 4.0 - 4.2.7

he Hunk Companion Plugin for WordPress: Vulnerable to Unauthorized Plugin Installation/Activation (Versions Up to and Including 1.8.4)

Lightweight Java 8 web framework with routing, filters, and static file serving. Includes security advisory for older versions and CRUD API examples.

This paper is about manual exploitation of android open port vulnerability found in ES file manager. This open TCP 59777 port allows the attacker to…

Android Task Hijacking (CVE-2021-33699) exploit practice app with attacker and victim components for hands-on mobile security training.

This repository is developed to understand CVE-2019-6447

CodePath Assignment for Weeks 7 & 8: CVE-2017-14719, CVE-2019-9787 & Unauthenticated Page/Post Content Modification via REST API

Reproducer for CVE-2023-3635 in Okio 2.9.0, demonstrating how React Native's version catalog pins a vulnerable dependency, affecting Android apps.

Proof-of-concept exploit for CVE-2026-24134, a Broken Object Level Authorization vulnerability in StudioCMS, demonstrating unauthorized access to…

Temproot for Bravia TV via CVE-2019-2215.

ColorOS短信漏洞,以及用户自救方案

CVE-2025-41090 (brokeCLAUDIA): Broken access control in microCLAUDIA, the anti-ransomware platform by CCN-CERT.