
awesome-android-security
A curated list of Android Security materials and resources For Pentesters and Bug Hunters

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

Cross-platform GUI written in Rust using ADB to debloat non-rooted Android devices. Improve your privacy, the security and battery life of your…

How to Install OpenClaw on an Android Phone and Control It via WhatsApp

Proof-of-concept and writeup showing how to retrieve Wi-Fi SSID/password from a D-Link Komfy smart switch over BLE by reversing the iOS app’s custom…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Educational reverse engineering study of a Unity/IL2CPP Android game. Documents gateway protocol decoding, native anti-tampering SDK analysis, SSL…

Hands-on challenges for learning how to reverse engineer Flutter applications.

Exploit chain utilizing directory traversal and iOS restore to overwrite protected files.

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

Blue Pigeon is a Bluetooth-based data exfiltration and proxy tool to enable communication between a remote Command and Control (C2) server and a…

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

CVE-2023-40429: An app may be able to access sensitive user data.

Open source Android, iOS and Web app for learning about and managing digital and physical security. From how to send a secure message to dealing with…

CVE-2022-46718: an app may be able to read sensitive location information.

Adaptation of CVE-2023-6241 for Google Pixel 7 from Google Pixel 8 taken from securitylab/SecurityExploits/Android/Mali/CVE_2023_6241

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13. This repo demonstrates how to exploit…


Technical write-up and exploit code for CVE-2019-11932, a double-free vulnerability in WhatsApp for Android that leads to remote code execution via a…