
CVE-2024-54916
Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

Ghidra is a software reverse engineering (SRE) framework

A collection of android security related resources

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)

Triggering and Analyzing Android Kernel Vulnerability CVE-2019-2215

Exploit for CVE-2020-6514 targeting WebRTC SCTP memory corruption in Android applications. Uses Frida to hook native functions and alter SCTP packets…

Free and Open Source Reverse Engineering Platform powered by rizin

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time indicators…

A dynamic VMP dumper and import fixer, powered by VTIL.

Lightweight, cross-platform process sandboxing powered by OpenAI Codex's runtime. Sandbox any command with file, network, and credential controls.

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability…