Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2026-43499] IonStack part III: Rooting Android 17 with GhostLock

Summary

GhostLock (CVE-2026-43499) is a Linux kernel vulnerability found by Nebula Security that exists in every major distribution since 2011. After turning it into a stable privilege escalation and container escape, we took one step further and used GhostLock to develop the world's first public Android 17 root. This writeup covers the additional exploit techniques used to migrate the exploit for Android.
Published
Collected

original ↗

Related coverage

back