In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.
PoC: CVE-2026-0073
An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized Wireless Debugging ports on Android 13+ and establishes a fully interactive raw PTY shell.
PoC: CVE-2026-0073
https://devtint.github.io/CVE-2026-0073/
PoC: CVE-2026-0073
CVE-2026-0073
PoC: CVE-2026-0073-Android-ADBD-bypass-POC
CVE-2026-0073 — Android ADB daemon (adbd) TLS authentication bypass via EVP_PKEY_cmp type confusion. Gain unauthorized shell access over WiFi using EC/Ed25519 key mismatch. PoC exploit for Android 14+.
PoC: poc-CVE-2026-0073
CVE-2026-0073 - ADB Wireless Mutual Authentication Bypass PoC
[POC] MAL-2026-2307 — CVE-2026-0073-Android-ADBD-bypass-POC_zh_CN
CVE-2026-0073-Android-ADBD-bypass-POC汉化版
PoC: POC-CVE-2026-0073
Security research PoC for CVE-2026-0073: ADB authentication bypass verification
PoC: CVE-2026-0073-Android-adbd-authentication-bypass
Research on CVE-2026-0073. An auth bypass allowing any attacker with local network access to connect to an Android device with dev tools and wireless debugging or ADB-over-TCP enabled. Device needs to have been paired before. This has been tested working on Android 14 in Android Studio. Should work on others as well but exploitability may vary.
PoC: CVE-2026-0073
0-Click RCE Android Adb TLS Wireless Debugging
PoC: CVE-2026-0073-Android-client-TLS-auth-bypass
translating original python exploit to C
PoC: CVE-2026-0073-ZERO-CLICK
ZERO-CLICK VUL - CVE-2026-0073 Android ADB Wireless Auth Bypass Exploit Framework. Multi-target zero-click RCE as shell user via TLS cert logic flaw in adbd. Targets Android 11+ devices pre-May 2026 patch with wireless debugging enabled. Features batch IP scanning, diagnostic commands, EC/Ed25519 key support, verbose debug mode & interactive wizard
PoC: CVE-2026-0073-ADBD-Bypass
Android ADB Authentication Bypass - Wireless ADB RCE Scanner
PoC: CVE-2026-0073-PoC-Exploit
🚀 CVE-2026-0073 - Android ADB Wireless Debugging Exploit (CVSS 8.8) 🔓 Zero-click authentication bypass via TLS type confusion. Gain interactive shell, execute commands, scan networks. Educational red-team tool. 🐚⚡
PoC: poc-CVE-2026-0073
CVE-2026-0073 - ADB Wireless Mutual Authentication Bypass PoC
PoC: adbHijacker
A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled
PoC: CVE-2026-0073-Research
CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free