Writeup and exploit for installed app to system privilege escalation on Android 12 Beta through CVE-2021-0928, a `writeToParcel`/`createFromParcel` serialization mismatch in `OutputConfiguration`
☆120Mar 3, 2022Updated 4 years ago
Alternatives and similar repositories for ReparcelBug2
Users that are interested in ReparcelBug2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Exploit for CVE-2022-20452, privilege escalation on Android from installed app to system app (or another app) via LazyValue using Parcel …☆341Apr 12, 2023Updated 3 years ago
- CVE-2017-0806 PoC (Android GateKeeperResponse writeToParcel/createFromParcel mismatch)☆24Jun 3, 2018Updated 7 years ago
- ☆81Oct 12, 2021Updated 4 years ago
- Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mit…☆99Jan 21, 2024Updated 2 years ago
- PoC for CVE-2021-39749, allowing starting arbitrary Activity on Android 12L Beta☆32Apr 16, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PoC of CVE-2022-20474☆20Feb 3, 2025Updated last year
- Android app for trying Intents, Content Providers and Binder interfaces☆18Oct 29, 2017Updated 8 years ago
- CVE-2023-20963 PoC (Android WorkSource parcel/unparcel logic mismatch)☆76Apr 27, 2024Updated last year
- Bad Spin: Android Binder Privilege Escalation Exploit (CVE-2022-20421)☆285May 27, 2023Updated 2 years ago
- Proof of concept app for Android permanent denial-of-service vulnerability CVE-2020-0443☆17Mar 15, 2022Updated 4 years ago
- ☆12May 24, 2022Updated 3 years ago
- A search-based Android static analysis tool with much better performance than Amandroid and FlowDroid☆49Jul 6, 2021Updated 4 years ago
- Exploit code for CVE-2021-1961☆122Sep 7, 2022Updated 3 years ago
- Proof-of-concept code for Android APEX key reuse vulnerability☆108Jan 31, 2024Updated 2 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Human-friendly cross-platform system call tracing and hooking library based on Frida's Stalker☆356Jul 21, 2023Updated 2 years ago
- PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation from…☆179Sep 30, 2024Updated last year
- Slim dockerized Android ndk☆12Mar 3, 2023Updated 3 years ago
- ☆137May 1, 2023Updated 2 years ago
- The Frida based fuzzer all in one☆30Mar 13, 2021Updated 5 years ago
- Browser based rce for iOS <= 14.3☆10May 26, 2025Updated 10 months ago
- FANS: Fuzzing Android Native System Services☆266Sep 23, 2020Updated 5 years ago
- Everything you need to build and run Linux and Android kernels for exploit development☆103Apr 9, 2024Updated 2 years ago
- A bunch of JEB python scripts☆46Jun 23, 2021Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Kernel sources for the Pixel 4, Pixel 4 XL and Pixel 4a.☆19Jan 27, 2025Updated last year
- Collections of my POCs for android vendor CVEs☆289Aug 26, 2023Updated 2 years ago
- Android kernel exploitation for CVE-2022-20409☆207Oct 17, 2024Updated last year
- Android Security Bug Queries for CheckMarx☆20Sep 13, 2022Updated 3 years ago
- Code Scanner For Android Privacy☆39Mar 26, 2023Updated 3 years ago
- CVE-2024-0044☆12Aug 24, 2024Updated last year
- ☆172Aug 6, 2020Updated 5 years ago
- blabla☆50Oct 28, 2020Updated 5 years ago
- A small script to get syscall info from its number (intented to be used with Frida)☆21Aug 11, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Is a protect Android App anti any attacks and environments.☆357Dec 28, 2023Updated 2 years ago
- Fuzzing harness for testing proprietary image codecs supported by Skia on Android☆357Jan 10, 2021Updated 5 years ago
- Oversecured Vulnerable Android App☆737Jul 18, 2024Updated last year
- Writeup and exploit for CVE-2024-34740, integer overflow in Android's BinaryXmlSerializer to system_server file write and then to system_…☆61Oct 8, 2025Updated 6 months ago
- Android Kernel Exploitation☆643Feb 13, 2022Updated 4 years ago
- A small utilitiy to scan process memory and search patterns using frida with a single line of command☆22Aug 4, 2021Updated 4 years ago
- ☆22Jan 1, 2022Updated 4 years ago