
overwrite
Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Curated reading list and taxonomy of attack and defense research for mobile on-device AI systems, covering adversarial, backdoor, model stealing, and…

oob_entry tfp0 kernel exploit for armv7 iOS (iOS 3.0–10.3.4), using CVE-2023-32434. We will publish a write-up detailing the methods in the coming…

Open-source iOS messenger providing end-to-end encrypted text, voice, and video calls via the Signal Protocol, with no analytics or telemetry…

A free, open-source, and cross-platform iDevice management tool

Main repo for hosting release binaries

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

iPad 8 iPadOS 26.3 AVE toolchain research (CVE-2026-64747 class)

The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and…

Run iOS apps without actually installing them!

cerberus-re is a local Apple-focused reverse-engineering workbench for building a repeatable three-headed static/dynamic/instrumentation loop around…

An IDA Toolkit for analyzing iOS kernelcaches.

Patches Flutter engine libraries to enable runtime reverse engineering, traffic interception, and SSL pinning bypass for Android and iOS apps without…

Radare2 and Frida better together.

CVE-2026-64747 AGXG14P count-bitmask OOB trigger probe (A15/iOS 26.5.2)