
system_bt_AOSP10_r33_CVE-2020-0471
Android Bluetooth stack (Fluoride) with a proof-of-concept exploit for CVE-2020-0471, enabling vulnerability analysis and exploitation testing on…

Android Bluetooth stack (Fluoride) with a proof-of-concept exploit for CVE-2020-0471, enabling vulnerability analysis and exploitation testing on…

Android Bluetooth stack (Fluoride) with a fix for CVE-2020-0463, enabling security analysis and exploitation testing of Bluetooth vulnerabilities on…

AOSP Bluetooth stack (Fluoride) with a patch for CVE-2020-0380, enabling analysis and testing of Bluetooth vulnerabilities on Android 10.

Android Bluetooth stack (Fluoride) with a specific patch for CVE-2021-0474, providing source code for building and testing the Bluetooth component on…

Android Wi-Fi vulnerability research repository containing patched wpa_supplicant source for CVE-2021-0326, enabling analysis and testing of the…

Analyzes and demonstrates CVE-2020-0381, a vulnerability in the Android sonivox audio engine, providing binary analysis and exploitation research for…

Glass - a fast and free IDA Pro alternative

AirPods liberated from Apple's ecosystem.

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

Mediatek Flash and Repair Utility

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Exploit that extracts Qualcomm's KeyMaster keys using CVE-2015-6639 and CVE-2016-2431

CVE-2025-21479 proof-of-concept, I think

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

Broadpwn bug (CVE-2017-9417)

Qualcomm TrustZone kernel privilege escalation

Cert exploit for MTK devices.There is a logic flaw in MTK cert verification process.Similar to CVE-2023-20696.

Low-level kernel modules and device tree source for the OnePlus 11 (sm8550), enabling hardware bring-up, driver analysis, and embedded system…