


Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

A native APK and DEX decompiler written in Rust

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

Fast Android APK decompiler front-end that queries compiled DEX artifacts directly, extracting classes and cross-references in milliseconds without…

Unofficial frida extension for VSCode

DEX → Java decompiler in Rust — fast, progressive analysis, bilingual CLI

Automatic SQL injection and database takeover tool

Extract the managed (.NET) assemblies out of a MAUI Android assembly store.

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

A Android malware analysis tool that creates comprehensive runtime profiles by hooking into application behavior across cryptography, file systems,…

Automatic SSTI detection tool with interactive interface

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Reproduces the CVE-2026-70638 integer overflow in llama.cpp Android JNI with a safe arithmetic demo, malicious GGUF generator, and Frida hook for…

A collection of my Frida instrumentation scripts to reverse engineer mobile apps and more.