
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Collaborative application security testing between humans and agents via CLI and MCP

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Fermion, an electron wrapper for Frida & Monaco.

Static and dynamic Android application security analysis

Information flow analysis tool for Android applications

Stage two containers

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

CuckooDroid - Automated Android Malware Analysis with Cuckoo Sandbox.