
HatSploit
Modular penetration testing platform that enables you to write, test, and execute exploit code.

Modular penetration testing platform that enables you to write, test, and execute exploit code.

Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

it is malicious technique used by hackers to hide malware payloads in an encoded script in a specially crafted HTML attachment or web page

cve-2019-11931

Install and run Metasploit Framework 6 on Android via Termux with automated setup, payload generation (msfvenom), and full msfconsole access for…

Simple POC for exploiting WhatsApp double-free bug in DDGifSlurp in decoding.c in libpl_droidsonroids_gif

Python script to inject existing Android applications with a Meterpreter payload.

Double-Free BUG in WhatsApp exploit poc.

Payload injector and HID emulator for Android like Hak5 and rubber ducky

Proof-of-concept exploit for CVE-2019-2107, demonstrating remote code execution via crafted HEVC video on Android media framework. Includes crash…

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

ToRat is a Remote Administation tool written in Go using Tor as a transport mechanism and RPC for communication

One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources.

Root My Galaxy SM-S9180 (dm3q) S9180ZHS8FZG1 payload port - CVE-2026-43499 + KernelSU LKM

Arcane is a simple script designed to backdoor iOS packages (iphone-arm) and create the necessary resources for APT repositories.

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023.…

Proof-of-concept exploit chain for CVE-2026-43499 targeting OPPO MT6835 Android devices, with preload payload, build system, and analysis notes for…

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499