
CVE-2026-43499-RMX5200
Android 16 local privilege escalation exploit for realme RMX5200 using LD_PRELOAD-based preload.so chain to achieve temporary root access via…

Android 16 local privilege escalation exploit for realme RMX5200 using LD_PRELOAD-based preload.so chain to achieve temporary root access via…

Exploitation Framework for Embedded Devices

Android Full-Stack Device Control Platform: WebRTC/H.264 remote desktop, UI/OCR/image-matching automation, one-click MITM, built-in Frida,…

Framework turning Raspberry Pi Zero W into a versatile USB HID attack platform with keystroke/mouse injection, WiFi KARMA, Bluetooth NAP, and…

Bash script for Android device penetration testing via ADB, featuring 28 options and a Metasploit section for payload generation, remote control, and…

Modular Bluetooth Classic (BR/EDR) vulnerability testing framework with reconnaissance, exploit modules for 43 public attacks/CVEs, and structured…

BLE exploit framework for Unitree robots: command injection via hardcoded AES keys enables remote takeover, payload injection, and wormable…

Zero-click iOS exploit chain leveraging CoreAudio heap corruption (CVE-2025-31200) and kernel escalation via AppleBCMWLAN (CVE-2025-31201), with…

Emulate and Dissect MSF and *other* attacks

iOS exploit tool that silences camera shutter sound on vulnerable devices (iOS 14-16.1.2) using MacDirtyCow vulnerability. Installed via TrollStore…

Proof-of-concept exploit for CVE-2016-6584 that bypasses Samsung KNOX protections and roots Samsung Galaxy S6 devices via a kernel write-what-where…

Python script and Metasploit module that enumerates hidden directories on Siemens BACnet field panels, exploiting an authentication bypass and path…

Zero-click PNG-based exploit chain for iOS 18.2.1 chaining ImageIO, WebKit, and Core Media vulnerabilities to achieve sandbox escape, kernel-level…

Modular penetration testing framework integrating OSINT, exploitation, password cracking, Wi-Fi auditing, IoT, and hardware hacking tools for…

PoC exploits and testing framework for BlueBorne Bluetooth vulnerabilities, including Android RCE (CVE-2017-0781), Linux RCE (CVE-2017-1000251), and…

Metasploit module exploiting InfoBlox Network Automation CVE-2014-3418 command injection to create a sudo user and deliver a reverse Meterpreter…

AndroRAT is a capability that can be used to inject a root exploit as a silent installation to perform a malicious task on the device. This AndroRAT…

Exploit script for Novell ZENworks Mobile Management LFI vulnerability (CVE-2013-1081) with credential harvesting and remote code execution via…