
cve-2016-1764
Extraction of iMessage Data via XSS

Extraction of iMessage Data via XSS

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

CVE-2022-46718: an app may be able to read sensitive location information.


Static analysis tool for iOS applications that extracts links, API keys, subdomains, binary info, linked libraries, and strings to aid mobile…

iOS Syscall Explorer for IDA 9.X

on Mac 10.12.2

Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4

CVE-2023-40429: An app may be able to access sensitive user data.

Technicolor TC7200 - Credentials Disclosure CVE : CVE-2014-1677

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

Curated database of Apple internal artifacts (entitlements, frameworks, device versions) with API, CLI, and WebUI for iOS/macOS security research and…


Web-based Source Code Vulnerability Scanner

Non-decompiling iOS/Android app vulnerability scanner (DC25 demo lab, CB17)

Mobile Hacker's Weapons / A collection of cool tools used by Mobile hackers. Happy hacking , Happy bug-hunting

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…