
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

The repo contains a series of challenges for learning Frida for Android Exploitation.

Unofficial frida extension for VSCode

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

Android DEX → Java decompiler in Rust, built for speed — full apps in seconds, queries in milliseconds. Progressive analysis, javac-verified output,…

Fermion, an electron wrapper for Frida & Monaco.

The ARTful library for dynamically modifying the Android Runtime


Reproduces the CVE-2026-70638 integer overflow in llama.cpp Android JNI with a safe arithmetic demo, malicious GGUF generator, and Frida hook for…

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

A Android malware analysis tool that creates comprehensive runtime profiles by hooking into application behavior across cryptography, file systems,…

Tool for reverse engineering macOS/OS X


Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Automatic SSTI detection tool with interactive interface

A fast DOM based XSS vulnerability scanner with simplicity.

Automatic SQL injection and database takeover tool