
Andr01dExploits
Android exploit collection with C-based payloads for mobile device penetration testing and security research.

Android exploit collection with C-based payloads for mobile device penetration testing and security research.

Curated penetration testing wiki with daily-updated techniques, scripts, and checklists for reconnaissance, web, cloud, mobile, and…

Proof-of-concept exploit for an actively exploited Zimbra Collaboration Suite vulnerability, designed for authorized penetration testing and…

Proof-of-concept exploit scripts for CVE-2024-8068 and CVE-2024-8069, focused on authorized penetration testing, educational labs, and defensive…

Simple script for testing CVE-2016-2402 and similar flaws

Mobile Mouse 3.6.0.4 - Remote Code Execution - CVE-2023-31902

Nmap script to exploit CVE-2023-35078 - Mobile Iron Core

CVE-2025-40602 is a local privilege escalation vulnerability in the appliance management console (AMC) of SonicWall Secure Mobile Access (SMA) 1000…

Documents an OTP verification bypass vulnerability in Ascertia SigningHub, allowing attackers to brute-force OTP codes and impersonate mobile…

Proof-of-concept exploit for CVE-2020-11990 targeting Apache Cordova applications, demonstrating a remote code execution vulnerability in the mobile…

Exploit for CVE-2022-27226

PoC exploit for CVE-2024-20767 in Adobe ColdFusion, leveraging an improper access control flaw to read arbitrary files from affected servers.

Proof of concept for CVE-2022-1364 against Alibaba's UC Browser

Unlock the bootloader of any exploitable device vulnerable to CVE-2021-30327

Proof-of-concept exploit for CVE-2021-1965, a WiFi zero-click RCE in Android's MBSSID parsing, causing buffer overflow and device reboot.

Local Root vulnerability- CVE-2019-13272 / Security Bypass Vulnerability – CVE-2019-14287/Google Android - 'Stagefright' Remote Code Execution -…

Proof-of-concept exploit for CVE-2017-0411, a privilege escalation vulnerability in Android's kernel, demonstrating exploitation via Shell script.

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…