
android
cSploit - The most complete and advanced IT security professional toolkit on Android.

cSploit - The most complete and advanced IT security professional toolkit on Android.

Install and run Metasploit Framework 6 on Android via Termux with automated setup, payload generation (msfvenom), and full msfconsole access for…

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

One-click root for vivo/iQOO devices on locked bootloader | CVE-2026-43499 + KernelSU

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

exploit for CVE-2012-4220 working on zte-open

Use CVE-2026-43074 to disable SELinux on Android (Linux 6.6/6.12)

Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell

AndroRAT is a capability that can be used to inject a root exploit as a silent installation to perform a malicious task on the device. This AndroRAT…

Exploit for CVE-2019-2215 to gain temporary root on Xiaomi MIUI devices, enabling bootloader unlock and system modifications.

Proof-of-concept exploit for CVE-2019-2215, a use-after-free vulnerability in the Android binder driver enabling local privilege escalation on…

Exploit implementation for Android Stagefright vulnerability CVE-2015-3864, enabling remote code execution and privilege escalation on Android 5.1.1…

Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A AI general-purpose state-space search engine, validated first on autonomous penetration testing.

Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with…

Red team automation framework built on Cobalt Strike, integrating exploit modules, post-exploitation tools, and lateral movement capabilities for…

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor