
pentest-book
Curated penetration testing wiki with daily-updated techniques, scripts, and checklists for reconnaissance, web, cloud, mobile, and…

Curated penetration testing wiki with daily-updated techniques, scripts, and checklists for reconnaissance, web, cloud, mobile, and…

Android client for Adaptix C2 framework enabling remote agent management, interactive command shells, listener control, payload generation, and…

Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.

Remote Administration Tool for Android devices

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combination of CVE-2026-49881 and…

Android Remote Access Trojan

A PoC application demonstrating the power of an Android kernel arbitrary R/W.

A tool that allows you to search for vulnerable android devices across the world and exploit them.

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

CVE-2026-43499 full exploit chain for Samsung Galaxy S22 Ultra (Android 5.10 kernel)

A method for CVE-2025-31710 and to connect to cmd_skt to obtain a root shell on unisoc unpatched models

I'll submit the poc after blackhat

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

CVE research and exploits to help gaining roots for Pixel devices

Kernel root exploit (CVE-2026-43499) for some Amazon devices

Standalone CVE-2026-43499 PoC for Galaxy S25 Ultra SM-S938N S938NKSUACZF1

A command-line utility to exploit Android Zygote injection (CVE-2024-31317)