
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Stage two containers

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Static and dynamic Android application security analysis

Collaborative application security testing between humans and agents via CLI and MCP

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

CuckooDroid - Automated Android Malware Analysis with Cuckoo Sandbox.

Fermion, an electron wrapper for Frida & Monaco.

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Information flow analysis tool for Android applications