Exploit for CVE-2022-20452, privilege escalation on Android from installed app to system app (or another app) via LazyValue using Parcel after recycle()
☆349Apr 12, 2023Updated 3 years ago
Alternatives and similar repositories for LeakValue
Users that are interested in LeakValue are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Writeup and exploit for installed app to system privilege escalation on Android 12 Beta through CVE-2021-0928, a `writeToParcel`/`createF…☆124Mar 3, 2022Updated 4 years ago
- Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mit…☆101Jan 21, 2024Updated 2 years ago
- Bad Spin: Android Binder Privilege Escalation Exploit (CVE-2022-20421)☆293May 27, 2023Updated 3 years ago
- PoC for CVE-2021-39749, allowing starting arbitrary Activity on Android 12L Beta☆37Apr 16, 2022Updated 4 years ago
- Writeup and exploit for CVE-2025-22441: Privilege escalation from installed app to SystemUI process on Android due to pass of untrusted A…☆106Oct 8, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Writeup and exploit for CVE-2024-34740, integer overflow in Android's BinaryXmlSerializer to system_server file write and then to system_…☆74Oct 8, 2025Updated 10 months ago
- CVE-2017-0806 PoC (Android GateKeeperResponse writeToParcel/createFromParcel mismatch)☆26Jun 3, 2018Updated 8 years ago
- Android kernel exploitation for CVE-2022-20409☆213Oct 17, 2024Updated last year
- RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege es…☆180Sep 30, 2024Updated last year
- ☆82Oct 12, 2021Updated 4 years ago
- Writeup and exploit for CVE-2024-49746: Android's Parcel::continueWrite closing File Descriptors that are later used☆47Oct 8, 2025Updated 10 months ago
- PoC of CVE-2022-20474☆21Feb 3, 2025Updated last year
- Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".☆768Sep 11, 2025Updated 11 months ago
- Collections of my POCs for android vendor CVEs☆291Aug 26, 2023Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Proof-of-concept code for Android APEX key reuse vulnerability☆109Jan 31, 2024Updated 2 years ago
- Exploit code for CVE-2021-1961☆121Sep 7, 2022Updated 4 years ago
- Android 14 kernel exploit for Pixel7/8 Pro☆562Apr 23, 2024Updated 2 years ago
- CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13☆330Dec 2, 2024Updated last year
- A black-box fuzzer to detect custom permission related privilege escalation vulnerabilities in Android.☆34Jul 29, 2026Updated last month
- Dirty Pipe root exploit for Android (Pixel 6)☆850Jun 16, 2022Updated 4 years ago
- A Collection of Android (Samsung) Security Research References☆482Jul 16, 2025Updated last year
- Simple script to find kernel objects of a certain size in the Linux kernel☆112Dec 1, 2022Updated 3 years ago
- CVE-2022-2602☆85Dec 22, 2022Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Everything you need to build and run Linux and Android kernels for exploit development☆105Apr 9, 2024Updated 2 years ago
- android app native so fuzz. efficiently run in a real machine with frida environment. See Background: https://idhyt.blogspot.com/2020/02/…☆44Jan 18, 2024Updated 2 years ago
- Slim dockerized Android ndk☆12Mar 3, 2023Updated 3 years ago
- Android Root Zap Framework, Lazy and Powerful :)☆55Jul 28, 2025Updated last year
- Android Kernel Exploitation☆650Feb 13, 2022Updated 4 years ago
- Files related to the Pwn2Own Toronto 2023 exploit against the Xiaomi 13 Pro.☆32Oct 14, 2024Updated last year
- FANS: Fuzzing Android Native System Services☆266Sep 23, 2020Updated 5 years ago
- Fuzzing harness for testing proprietary image codecs supported by Skia on Android☆358Jan 10, 2021Updated 5 years ago
- CVE-2025-21479 proof-of-concept, I think☆274Aug 16, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆142May 1, 2023Updated 3 years ago
- 🔓A Curated List Of Modern Android Exploitation Conference Talks☆801Aug 29, 2026Updated last week
- Android kernel exploit for CVE-2025-38352, previously exploited in-the-wild. Targets vulnerable x86_64 Linux kernels v5.10.x.☆311Jan 5, 2026Updated 8 months ago
- Significant security enchancements of recent major Android versions.☆188Jun 25, 2026Updated 2 months ago
- some vul☆797Apr 25, 2025Updated last year
- Human-friendly cross-platform system call tracing and hooking library based on Frida's Stalker☆358Jul 21, 2023Updated 3 years ago
- CVE-2023-20963 PoC (Android WorkSource parcel/unparcel logic mismatch)☆78Apr 27, 2024Updated 2 years ago