
mastg
Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Decompiles Android APK/XAPK/JAR/AAR files and extracts HTTP APIs, authentication patterns, and call flows using jadx, with R8-resistant Kotlin name…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners.…

cSploit - The most complete and advanced IT security professional toolkit on Android.

Educational Android (Termux) toolkit for learning penetration testing, OSINT, social engineering, and network security through hands-on scripts,…

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Android security insights in full spectrum.

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Find your device and control it remotely. Works over SMS, instant messengers, or FMD Server's web interface. A secure open source alternative to…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Significant security enchancements of recent major Android versions.

Intentionally vulnerable hybrid Android app for security professionals to test tools and techniques, and for developers to learn common hybrid mobile…

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Static analysis tool for Android/iOS apps focusing on security issues outside the source code

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

Mobile app security auditing tool focused on automating SAST analysis, identifying underlying technologies (React Native, Flutter, Xamarin, native),…

Proof-of-concept exploit for Android CVE-2015-6612, demonstrating a privilege escalation vulnerability with a working PoC for security research and…