michalbednarski / TheLastBundleMismatch
Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mitigation
☆80Updated 9 months ago
Related projects ⓘ
Alternatives and complementary repositories for TheLastBundleMismatch
- ☆67Updated 3 years ago
- Android Root Zap Framework, Lazy and Powerful :)☆50Updated last year
- PendingIntent exploit☆11Updated last year
- PoC for CVE-2021-39749, allowing starting arbitrary Activity on Android 12L Beta☆19Updated 2 years ago
- Writeup and exploit for installed app to system privilege escalation on Android 12 Beta through CVE-2021-0928, a `writeToParcel`/`createF…☆109Updated 2 years ago
- Files related to the Pwn2Own Toronto 2023 exploit against the Xiaomi 13 Pro.☆10Updated 3 weeks ago
- blabla☆46Updated 4 years ago
- A black-box fuzzer to detect custom permission related privilege escalation vulnerabilities in Android.☆31Updated 2 years ago
- ☆12Updated 2 years ago
- PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation from…☆113Updated last month
- 主要记入自己复现过的android cve☆42Updated 2 years ago
- Code Scanner For Android Privacy☆38Updated last year
- modified HarmonyOS Next emulator,with root permission☆74Updated last week
- The Frida based fuzzer all in one☆30Updated 3 years ago
- 010Editor template for .abc (Open/HarmonyOS Ark Bytecode) files☆37Updated last month
- CVE-2023-20963 PoC (Android WorkSource parcel/unparcel logic mismatch)☆51Updated 6 months ago
- a demo poc for CVE-2024-0015☆12Updated 2 months ago
- android app native so fuzz. efficiently run in a real machine with frida environment.☆37Updated 9 months ago
- you can use frida in jeb !☆46Updated 2 years ago
- ☆107Updated last year
- CVE-2017-0806 PoC (Android GateKeeperResponse writeToParcel/createFromParcel mismatch)☆22Updated 6 years ago
- ☆28Updated 7 months ago
- Open/HarmonyOS abc file parser and decompiler☆39Updated last month
- A bunch of JEB python scripts☆46Updated 3 years ago
- ☆61Updated 5 years ago
- btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具☆139Updated 4 months ago
- 自己收集与编写的常用IDA脚本,通常用于反混淆☆66Updated 3 months ago
- ☆11Updated 3 years ago