
Mobile-Security-Framework-MobSF
Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Web Application Security Scanner Framework

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Firmware Analysis and Comparison Tool

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Security profiling for blackbox iOS

Fermion, an electron wrapper for Frida & Monaco.

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

A curated list of awesome iOS application security resources.

CuckooDroid - Automated Android Malware Analysis with Cuckoo Sandbox.

Some good resources for getting started with application security

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…