
ARTful
The ARTful library for dynamically modifying the Android Runtime

The ARTful library for dynamically modifying the Android Runtime

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

PulseAPK Core: Cross-Platform tool for working with APK files: Decompilation, Analysis, Building

Magisk module for Android 14 that adds user-installed CA certificates to the system's Conscrypt trust store, enabling HTTPS interception with proxy…

Android penetration testing tool for Kali linux

LD_PRELOAD magic for Android's AssetManager

fsp - Firestore Database Vulnerability Scanner Using APKs

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

PoC Exploit for AOSP UserDictionary Content Provider (CVE-2018-9375)

Demo Android application for CVE-2019-9465

Python PoC for CVE-2026-18907 path traversal in TECNO Hi Browser's download handler. Includes malicious HTTP server and naive downloader to…

Educational Android lab for CVE-2020-23349 in Sina Weibo SDK 4.2.7

Educational Android lab for CVE-2023-31014 implicit intent hijacking

Android exploit collection with C-based payloads for mobile device penetration testing and security research.

Walk through CVE-2023-41898: exploit an unvalidated deep link in Home Assistant Android to load arbitrary URLs in a privileged WebView and leak a…

Proof-of-concept for CVE-2026-22010 Android intent redirection: demonstrates an exported activity forwarding intents to attacker-controlled internal…

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…