
Magisk
Android customization suite providing root access (MagiskSU), systemless module installation, boot image unpacking/repacking, and Zygisk runtime code…

Android customization suite providing root access (MagiskSU), systemless module installation, boot image unpacking/repacking, and Zygisk runtime code…

Android 16 local privilege escalation exploit for realme RMX5200 using LD_PRELOAD-based preload.so chain to achieve temporary root access via…

open-source jailbreaking tool for many iOS devices

Generate HID attack payloads for Teensy devices to automate keystroke injection, reverse shells, privilege escalation, and credential harvesting on…

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

Exploit for CVE-2022-38694 that bypasses signature verification to unlock bootloader on Unisoc/Spreadtrum devices, executing code with BootROM…

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…

Android remote access trojan (RAT) with remote webcam, microphone, file management, call/SMS control, and device controller capabilities for research…

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

Root your MediaTek device with CVE-2020-0069

Lenovo Diagnostics Driver EoP - Arbitrary R/W

Exploit chain targeting iOS devices via WebKit and kernel vulnerabilities, delivering privilege escalation and post-exploitation payload for…

Proof-of-concept exploit for CVE-2020-0069 on Mediatek Android devices, enabling kernel memory read/write and syscall hooking for privilege…

Proof-of-concept exploit for CVE-2016-6584 that bypasses Samsung KNOX protections and roots Samsung Galaxy S6 devices via a kernel write-what-where…

Linux Bluetooth - Run arbitrary management commands as an unprivileged user

Motorola Untethered Jailbreak: Exploiting CVE-2016-10277 for Secure Boot and Device Locking bypass

iOS kernel exploit tool leveraging MacDirtyCow (CVE-2022-46689) to hide the home bar on devices running iOS 14 through 16.1.2. Installed via…

Proof-of-concept exploit for CVE-2024-23700 demonstrating silent privilege escalation on Android to access contacts, SMS, calendar, call logs,…