
Resources-for-Application-Security
Some good resources for getting started with application security

Some good resources for getting started with application security

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Firmware Analysis and Comparison Tool

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Evidence first autonomous web security testing for controlled, authorized targets. With reproducible labs, audit trails, reports, and XBEN…

Information flow analysis tool for Android applications

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

A curated list of awesome iOS application security resources.

Full-stack platform for authorized web application security scanning with a detector-based engine, async Celery workers, and a React dashboard for…

Stage two containers

Fermion, an electron wrapper for Frida & Monaco.

Static and dynamic Android application security analysis