
SpringPeace
(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499
Generates per-device kernel offsets from boot.img and compiles a preload library to exploit CVE-2026-43499 Android arm64 local privilege escalation.

UNISOC BootROM/FDL flasher for macOS: patched spd_dump with CVE-2022-38694 exec_addr2, protocol reference, partition rules, backup verification…

CVE-2026-43499 research port for Galaxy Z Fold4 SM-F936W F936WVLU1AVGA (in progress)

Exploit kit for Exynos 9830 bootROM that delivers signed-boot bypass, custom key injection, and memory-dump payloads for Samsung SM-G985F devices.

SM-F9360 (Galaxy Z Fold4, q4q) locked-bootloader KernelSU root — CVE-2026-43499 temp root → LD_PRELOAD DEFEX bypass → no-LTO clang-12 kernelsu.ko.…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Python utility to check if Android verified boot images (vbmeta) are signed with publicly known test keys, identifying misconfigurations in release…

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

CVE-2025-21479 proof-of-concept, I think

GPU-accelerated interactive disassembler for Android (APK/DEX) and iOS (IPA/Mach-O) binaries. Features AArch64/ARMv7 disassembly, control flow…

DoS against Belkin smart plugs via crafted firmware injection

CVE-2022-20607: Out-of-bounds write in Pixel cellular firmware leading to remote code execution with LTE authentication. Affects Android kernel.

Technical write-up and exploit for CVE-2019-5700, an arbitrary memory write vulnerability in Nvidia Tegra bootloaders via crafted Android boot image…

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

Curated list of Android reverse engineering training, tools, and resources covering static/dynamic analysis, malware analysis, CTFs, firmware…

AI-powered skill router pack for reverse engineering, penetration testing, and security research. Routes AI agents to correct methodologies and…

Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.