
packages_apps_PackageInstaller_AOSP10_r33_CVE-2020-0418
Android PackageInstaller source code with patch for CVE-2020-0418, a local privilege escalation vulnerability. Provides patched AOSP10 code for…

Android PackageInstaller source code with patch for CVE-2020-0418, a local privilege escalation vulnerability. Provides patched AOSP10 code for…

Proof-of-concept exploit for CVE-2023-40127 targeting Android's MediaProvider component, demonstrating a path traversal vulnerability for security…

Provides a proof-of-concept exploit for CVE-2024-50657, an incorrect access control vulnerability in Owncloud Android app, demonstrating passcode…

Provides AOSP Android Settings source for Android 10 r33, tagged with CVE-2022-20360 for vulnerability reproduction and patch analysis.

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499

Nethunter kernel for the POCO X3 Pro (vayu) based on crDroid's kernel.

Proof-of-concept exploit for CVE-2025-10184, demonstrating a permission bypass in the OxygenOS Telephony provider on Android devices.

GhostLock (CVE-2026-43499) adapter for 4.19.152-perf+ Android kernel

PoC for CVE-2026-0073, an Android ADB authentication bypass enabling network attackers to connect to previously paired devices over wireless…

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…


POC for CVE-2019-14339 Canon PRINT 2.5.5

Android Tethering Provisioning Check Bypass (CVE-2017-0554)

Android app to scan for bash Vulnerability - CVE-2014-6271 also known as Shellshock


Radare2 and Frida better together.

Non-decompiling iOS/Android app vulnerability scanner (DC25 demo lab, CB17)