Skip to content
KitploitKITPLOIT
أدواتالمدونة
Log in
إرسال
أدواتالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

··الخلاصات·اتصال·الخصوصية·© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
scrounger — مجموعة أدوات اختبار تطبيقات الجوال | Kitploit
أدوات/GitHubGitHub/nettitude/scrounger
أمان أندرويدأطر الاستغلالأمان iOSتحليل الثغرات الأمنيةاختبار الاختراقأمن الجوالالأفضل في أمان iOS #14
GitHubnettitude/scrounger

scrounger

مجموعة أدوات اختبار تطبيقات الجوال

عرض المستودع
2485417منذ 7 سنواتتمت المراجعة من قبل Kitploit

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة

وصف

Scrounger - شخص يقترض أو يعيش على حساب الآخرين.

لا يوجد وصف أفضل لهذه الأداة لسببين رئيسيين، الأول هو أن هذه الأداة تستلهم من العديد من الأدوات الأخرى التي تم نشرها بالفعل، والثاني هو أنها تعتمد على ثغرات التطبيقات المحمولة.

asciicast

لماذا

على الرغم من تطوير العديد من أدوات تحليل التطبيقات المحمولة الأخرى، لا توجد أداة واحدة يمكن استخدامها لكل من Android و iOS ويمكن اعتبارها "معيارًا" يجب استخدامه في كل تقييم للتطبيقات المحمولة.

الفكرة من وراء Scrounger هي إنشاء أداة شبيهة بـ metasploit لا تقوم بعمل المختبِر ولكن تساعده في تقييمه من خلال تنفيذ المهام الروتينية التي يجب القيام بها في جميع التقييمات.

الفرق

الميزات الرئيسية التي يقدمها Scrounger ولا يقدمها الآخرون:

  • يعمل مع Android و iOS
  • وحدة تحكم ووحدات شبيهة بـ Metasploit
  • يقدم مجموعة متنوعة من الوحدات التي يمكن تشغيلها لإعطاء المختبِر نقطة انطلاق
  • قابل للتوسيع بسهولة

الإلهام / الشكر

استلهم Scrounger من أدوات أخرى، شكر جزيل لمطوري:

  • Drozer (https://github.com/mwrlabs/drozer);
  • Needle (https://github.com/mwrlabs/needle); و
  • iOS Application Analysis (https://github.com/timb-machine/ios-application-analyser).

تقني

كإخلاء مسؤول، يجب دائمًا التحقق يدويًا من جميع النتائج التي يحددها Scrounger.

عند استخدام الوحدات التي تحتاج إلى جهاز Android أو iOS، يحتاج Scrounger إلى جهاز مخترق (Rooted) أو مكسور الحماية (Jailbroken) على التوالي.

تم اختبار Scrounger للعمل على iOS 11 و Android 8.1.

تم بناء Scrounger لـ python 2.7 فقط.

تثبيت```

git clone https://github.com/nettitude/scrounger.git cd scrounger bash setup.sh pip install -r requirements.txt python setup.py install

## التطوير```
git pull https://github.com/nettitude/scrounger.git
cd scrounger
bash setup.sh
pip install -r requirements.txt
python setup.py develop

تحديث```

cd scrounger git pull python setup.py install --upgrade

## الملفات الثنائية المطلوبة

### لوحدات Android
* java (<http://www.oracle.com/technetwork/java/javase/downloads/index.html>)
* jd-cli (<https://github.com/kwart/jd-cmd>)
* apktool (<https://ibotpeaches.github.io/Apktool/>)
* d2j-dex2jar (<https://github.com/pxb1988/dex2jar>)
* adb (<https://developer.android.com/studio/releases/platform-tools>)
* أخرى (اختياري):
    * avdmanager (<https://developer.android.com/studio/#downloads>)

### لوحدات iOS
* jtool (Linux) (<http://www.newosxbook.com/tools/jtool.html>)
* otool (MacOS) (<https://developer.apple.com/xcode/>)
* ldid (<https://github.com/daeken/ldid.git>)
* iproxy (الحزمة: libimobiledevice)
* lsusb (الحزمة: usbutils)
* unzip

### ملفات ثنائية لنظام iOS
* ملفات ثنائية مضمنة:
    * dump_backup_flag
    * dump_file_protection
    * dump_keychain
    * dump_log
    * listapps
* مستودع Cydia Karen's (https://cydia.angelxwind.net) (اختياري):
    * AppSync Unified (الحزمة: net.angelxwind.appsyncunified)
    * appinst (الحزمة: com.linusyang.appinst)
* مستودع Cydia Shmoo419's (https://shmoo419.github.io/) (اختياري):
    * uncrypt11 (الحزمة: com.shmoo.uncrypt11)
    * gdb (الحزمة: gdb71050)
* مستودع Cydia Ichitaso's (http://cydia.ichitaso.com/) (اختياري):
    * clutch (الحزمة: com.kjcracks.clutch2)

## نصوص التثبيت

### Linux```
# install iproxy lsusb
sudo apt-get install libimobiledevice usbutils

# install jd-cli
if [ ! -x "$(which jd-cli)" ]; then
    curl -L -o /tmp/jdcli.zip https://github.com/kwart/jd-cmd/releases/download/jd-cmd-0.9.2.Final/jd-cli-0.9.2-dist.zip
    unzip /tmp/jdcli.zip /usr/local/share/jd-cli
    ln -s /usr/local/share/jd-cli/jd-cli /usr/local/bin/jd-cli
    ln -s /usr/local/share/jd-cli/jd-cli.jar /usr/local/bin/jd-cli.jar
    rm -rf /tmp/jdcli.zip
fi

# install apktool
if [ ! -x "$(which apktool)" ]; then
    mkdir /usr/local/share/apktool
    curl -L -o /usr/local/share/apktool/apktool https://raw.githubusercontent.com/iBotPeaches/Apktool/master/scripts/osx/apktool
    curl -L -o /usr/local/share/apktool/apktool.jar https://bitbucket.org/iBotPeaches/apktool/downloads/apktool_2.3.3.jar
    chmod +x /usr/local/share/apktool /usr/local/share/apktool/apktool.jar
    ln -s /usr/local/share/apktool /usr/local/bin/apktool
    ln -s /usr/local/share/apktool.jar /usr/local/bin/apktool.jar
fi

# install dex2jar
if [ ! -x "$(which d2j-dex2jar)" ]; then
    curl -L -o /tmp/d2j.zip https://github.com/pxb1988/dex2jar/files/1867564/dex-tools-2.1-SNAPSHOT.zip
    unzip /tmp/d2j.zip -d /tmp/d2j
    dirname=$(ls --color=none /tmp/d2j)
    mv /tmp/d2j/$dirname /usr/local/share/d2j-dex2jar
    ln -s /usr/local/share/d2j-dex2jar/d2j-dex2jar.sh /usr/local/bin/d2j-dex2jar.sh
    ln -s /usr/local/share/d2j-dex2jar/d2j-apk-sign.sh /usr/local/bin/d2j-apk-sign.sh
    rm -rf /tmp/d2j.zip
fi

if [ ! -x "$(which d2j-dex2jar)" ]; then
    ln -s /usr/local/bin/d2j-dex2jar.sh /usr/local/bin/d2j-dex2jar
fi

# install adb
if [ ! -x "$(which adb)" ]; then
    curl -L -o /tmp/platform-tools.zip https://dl.google.com/android/repository/platform-tools-latest-linux.zip
    unzip /tmp/platform-tools.zip -d /tmp/pt
    mv /tmp/pt/platform-tools /usr/local/share/
    ln -s /usr/local/share/platform-tools/adb /usr/local/bin/adb
    ln -s /usr/local/share/platform-tools/fastboot /usr/local/bin/fastboot
fi

# install ldid
if [ ! -x "$(which ldid)" ]; then
    git clone https://github.com/daeken/ldid.git /tmp/ldid
    cd /tmp/ldid
    ./make.sh
    mv ldid /usr/local/bin/
    cd /tmp
    rm -rf /tmp/ldid
fi

# install jtool
if [ ! -x "$(which jtool)" ]; then
    curl -L -o /tmp/jtool.tar http://www.newosxbook.com/tools/jtool.tar
    mkdir /tmp/jtool
    tar xvf /tmp/jtool.tar -C /tmp/jtool
    mv /tmp/jtool/jtool.ELF64 /usr/local/bin/jtool
    rm -rf /tmp/jtool.tar /tmp/jtool
fi

# install scrounger
git clone [email protected]:nettitude/scrounger.git
cd scrounger
pip install -r requirements.txt
python setup.py install

MacOS```

install iproxy ldid lsusb

brew tap jlhonora/lsusb && brew install lsusb libimobiledevice ldid

install jd-cli

if [ ! -x "$(which jd-cli)" ]; then curl -L -o /tmp/jdcli.zip https://github.com/kwart/jd-cmd/releases/download/jd-cmd-0.9.2.Final/jd-cli-0.9.2-dist.zip unzip /tmp/jdcli.zip /usr/local/share/jd-cli ln -s /usr/local/share/jd-cli/jd-cli /usr/local/bin/jd-cli ln -s /usr/local/share/jd-cli/jd-cli.jar /usr/local/bin/jd-cli.jar rm -rf /tmp/jdcli.zip fi

install apktool

if [ ! -x "$(which apktool)" ]; then mkdir /usr/local/share/apktool curl -L -o /usr/local/share/apktool/apktool https://raw.githubusercontent.com/iBotPeaches/Apktool/master/scripts/osx/apktool curl -L -o /usr/local/share/apktool/apktool.jar https://bitbucket.org/iBotPeaches/apktool/downloads/apktool_2.3.3.jar chmod +x /usr/local/share/apktool /usr/local/share/apktool/apktool.jar ln -s /usr/local/share/apktool /usr/local/bin/apktool ln -s /usr/local/share/apktool.jar /usr/local/bin/apktool.jar fi

install dex2jar

if [ ! -x "$(which d2j-dex2jar)" ]; then curl -L -o /tmp/d2j.zip https://github.com/pxb1988/dex2jar/files/1867564/dex-tools-2.1-SNAPSHOT.zip unzip /tmp/d2j.zip -d /tmp/d2j dirname=$(ls --color=none /tmp/d2j) mv /tmp/d2j/$dirname /usr/local/share/d2j-dex2jar ln -s /usr/local/share/d2j-dex2jar/d2j-dex2jar.sh /usr/local/bin/d2j-dex2jar.sh ln -s /usr/local/share/d2j-dex2jar/d2j-apk-sign.sh /usr/local/bin/d2j-apk-sign.sh rm -rf /tmp/d2j.zip fi

if [ ! -x "$(which d2j-dex2jar)" ]; then ln -s /usr/local/bin/d2j-dex2jar.sh /usr/local/bin/d2j-dex2jar fi

install adb

if [ ! -x "$(which adb)" ]; then curl -L -o /tmp/platform-tools.zip https://dl.google.com/android/repository/platform-tools-latest-darwin.zip unzip /tmp/platform-tools.zip -d /tmp/pt mv /tmp/pt/platform-tools /usr/local/share/ ln -s /usr/local/share/platform-tools/adb /usr/local/bin/adb ln -s /usr/local/share/platform-tools/fastboot /usr/local/bin/fastboot fi

تنزيل الأداة