PoC of unlocking an Android device without lock screen password
仓库
canyie 的仓库
RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation from adb to installed app
PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls or answer incoming calls, manipulate call settings, access & control notifications sent by other apps, control nearby devices, record audio, access device identifiers, and bypass background restriction
a lightweight, multi-platform, multi-architecture hook framework.
A third-party Xposed framework implementation which supports Android 5.0~14.
Installer and manager for the Dreamland framework.
好耶 是女装
A Kernel based root solution for Android GKI
LSPosed Framework
The Magic Mask for Android
Exploit and writeup for installed app to root privilege escalation through CVE-2024-48336 (Magisk Bug #8279), Privileges Escalation / Arbitrary Code Execution Vulnerability
Two ways to detect Magisk v23.0 and older. Magisk v24+ users won't be affected. OLD VERSIONS WERE BUGGY, UPGRADE YOUR MAGISK.
PoC of injecting zygote processes by replacing system native bridge support
Some sentences collected by myself
QNotified phoenix - To make OICQ great again
Rikka's Android libraries.
Inject into zygote process
A Riru module trying to make Magisk more hidden.
Block shitty apps from reading system settings
Test DPC is a sample device policy controller for use with Android Enterprise. It gives developers the ability to see how their app will behave in a managed context such as device owner or within a managed profile. Users can set up a work profile, enable work apps, set applications restrictions, manage security polices, and much more.