
Magisk
Android customization suite providing root access (MagiskSU), systemless module installation, boot image unpacking/repacking, and Zygisk runtime code…

Android customization suite providing root access (MagiskSU), systemless module installation, boot image unpacking/repacking, and Zygisk runtime code…

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Static analysis tool for Android/iOS apps focusing on security issues outside the source code

Mediatek Flash and Repair Utility

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Unlock an Android phone (or device) by bruteforcing the lockscreen PIN. Turn your Kali Nethunter phone into a bruteforce PIN cracker for Android…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Temproot for Bravia TV via CVE-2019-2215.

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…

Yet another static code analyzer for malicious Android applications

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

Reverse engineering and pentesting for Android applications

Root access to the kernel can be achieved simply by patching the Boot partition for reflashing. This solution is based on a non-parallel extended…

A free, secure and open source app for Android to manage your 2-step verification tokens.

Tool for leaking and bypassing Android malware detection system

Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.