Task Hijacking in Android (somebody call it also StrandHogg vulnerability)
☆55Dec 14, 2019Updated 6 years ago
Alternatives and similar repositories for Android-Task-Injection
Users that are interested in Android-Task-Injection are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- StrandHogg Task Injection POC☆32Dec 27, 2019Updated 6 years ago
- ☆18Oct 20, 2020Updated 5 years ago
- PoC files for the publication 'How Android's UI Security is Undermined by Accessibility'.☆19May 19, 2020Updated 6 years ago
- 风控、实时计算、技术框架、架构方案、Groovy规则引擎、规则决策☆10Jul 30, 2019Updated 7 years ago
- Use black or white list to check if 3rd app have the permission to start the protected Activity☆14Mar 6, 2018Updated 8 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆11Jun 22, 2020Updated 6 years ago
- A part of the project to detect Magisk on an Android device☆11May 13, 2019Updated 7 years ago
- A Bash wrapper for radamsa that can be used to fuzz exported activities and deep links.☆52Aug 17, 2021Updated 5 years ago
- Joint Advanced Defect assEsment for android applications☆350Apr 12, 2017Updated 9 years ago
- NSE script to detect ProxyOracle☆13Aug 30, 2021Updated 5 years ago
- All kind of frida stuff when needed in pentesting or reverse engineering of an android app - The perfect starter kit☆18Jun 2, 2020Updated 6 years ago
- (aka Kotlin Goat) - an intentionally vulnerable Kotlin application☆38Apr 17, 2024Updated 2 years ago
- A simple script to patch smali file to include a Fake Security Provider at 1 for Android Apps☆18Jan 19, 2021Updated 5 years ago
- TapJacking Attacks Demo☆20Apr 25, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Java Object Deserialization on Android☆85Apr 11, 2019Updated 7 years ago
- CVE-2017-0806 PoC (Android GateKeeperResponse writeToParcel/createFromParcel mismatch)☆26Jun 3, 2018Updated 8 years ago
- Writeup and exploit for CVE-2024-49746: Android's Parcel::continueWrite closing File Descriptors that are later used☆47Oct 8, 2025Updated 10 months ago
- A portable utility to locate android binder service☆100Sep 28, 2019Updated 6 years ago
- getSharedPreferences的 MODE_WORLD_READABLE 在7.0以上会闪退,所以用contentprovider去替换。这里只提供出具体的两个实现类,根据自己的业务看着改吧。☆21Jul 25, 2020Updated 6 years ago
- Public Android Vulnerability Information (CVE PoCs etc)☆87Apr 3, 2017Updated 9 years ago
- Temproot for Pixel 2 and Pixel 2 XL via CVE-2019-2215☆136Oct 15, 2019Updated 6 years ago
- Blog https://blog.omitol.com☆28Mar 31, 2025Updated last year
- Convert the loot directory of ntlmrelayx into an enum4linux like output☆22Apr 12, 2020Updated 6 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 安卓工程师进阶之路☆27Aug 4, 2020Updated 6 years ago
- A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.☆11Mar 18, 2019Updated 7 years ago
- Android So Fix☆28Aug 15, 2018Updated 8 years ago
- Jboss_JMXInvokerServlet_Deserialization_RCE☆21Sep 3, 2019Updated 6 years ago
- The tool is used to analyze the content of the android application in local storage.☆175May 29, 2026Updated 3 months ago
- 基于radium爬虫编写的批量任务处理脚本,使用进程池☆13Aug 20, 2020Updated 6 years ago
- cve-2019-11931☆36Nov 16, 2019Updated 6 years ago
- A Unified Platform for Evaluating SAST Tools for Android☆23Mar 30, 2025Updated last year
- Insecure Android Application for testing Biometric bypasses☆15Aug 5, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Analysis of different techniques to bypass Network Security Config with Frida☆32Dec 7, 2020Updated 5 years ago
- This experimetal fuzzer is meant to be used for API in-memory fuzzing.☆578Jun 22, 2020Updated 6 years ago
- Android Vulnerability Reports and POCs.☆28Feb 9, 2017Updated 9 years ago
- Assembly code to use for Windows kernel shellcode to edit winlogon.exe ACL☆13Mar 6, 2017Updated 9 years ago
- Frida: callback based hooking of Java classes loaded at runtime☆35Jan 6, 2023Updated 3 years ago
- Street Party is a suite of tools that allows the RTP streams of video conferencing implementations to be viewed and modified.☆244Oct 15, 2019Updated 6 years ago
- ☆17Jun 30, 2025Updated last year