
stagefright-cve-2015-3864
PoC - Binary patches for CVE-2015-3864 (NOT for production, use at your own risk)

PoC - Binary patches for CVE-2015-3864 (NOT for production, use at your own risk)

Open source Android Forensics app and framework

Just an attempt to adapt for Note 4, I do not know what I am doing.

Proof-of-concept exploit for CVE-2015-1474, demonstrating a rogue parcel crash in Android SurfaceFlinger via deserialization, enabling privilege…

Apple CoreGraphics framework fails to validate the input when parsing CCITT group 3 encoded data resulting in a heap overflow condition. A small heap…

Local root exploit for Nexus5 Android 4.4.4(KTU84P)

Exploit for Apple CoreGraphics heap overflow (CVE-2014-4377) enabling arbitrary code execution on iOS 7.1.x via crafted PDF used as HTML image.

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

CydiaSubstrate-based patch for CVE-2014-4377, a CoreGraphics memory corruption vulnerability on iOS, providing a runtime fix for affected devices.

*This project is no longer maintained* OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Proof-of-concept exploit for Apple SSL/TLS verification vulnerability (CVE-2014-1266) in iOS and OS X, demonstrating HTTPS interception via a proxy…

Patch iOS SSL vulnerability (CVE-2014-1266)

Android Data Stealing Vulnerability

Proof Of Concept for Android. NoFrak is designed to prevent fracking attacks, as described in "Breaking and Fixing Origin-Based Access Control in…

C exploit for CVE-2013-2595 targeting a kernel memory corruption in Qualcomm MSM camera driver on Android devices, enabling local privilege…

CVE-2013-2596 memory corruption exploit for Android devices, targeting a kernel vulnerability to achieve privilege escalation.

android location service cache dumper