
AhMyth-Android-RAT
Android Remote Administration Tool

Android Remote Administration Tool

GhostLock (CVE-2026-43499) app for the Galaxy S26 series

Android kernel LPE PoC for CVE-2026-43499, an rtmutex use-after-free in 4.19 Qualcomm kernels, adapted for Redmi K40 with LD_PRELOAD root payload.

Kernel root exploit (CVE-2026-43499) for some Amazon devices

Device-specific CVE-2026-43499 root payloads and KernelSU artifacts for Samsung Galaxy models, with firmware profiles, exploit source, and a support…

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

GhostLock (CVE-2026-43499) for the Galaxy S26

KSU installer for supported Samsung Galaxy firmware with CVE-2026-43499

Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combination of CVE-2026-49881 and…

CVE research and exploits to help gaining roots for Pixel devices

Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.


Kernel exploit for CVE-2026-43499 on Samsung Galaxy A17 achieving root via KDP bypass, KASLR recovery, and forged workqueue execution with persistent…

Patches and hooks the Linux kernel using only a stripped kernel image, extracting symbols and injecting code for inline and syscall hooking on arm64.

GhostLock (CVE-2026-43499) exploit fork for RootMyVivo Neo — iQOO Neo 11 (PD2520, SM8750, 6.6.89). For authorized research on own devices only.

GhostLock (CVE-2026-43499) adapter for 4.19.152-perf+ Android kernel

Local privilege escalation exploit for Redmi K50G/POCO F4 GT using CVE-2026-43499 (futex UAF) to gain temporary root and load KernelSU without…

GhostLock (CVE-2026-43499) for the Galaxy S25 FE (W.I.P)