
Broadpwn
Broadpwn bug (CVE-2017-9417)

Broadpwn bug (CVE-2017-9417)

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

iOS Malicious Bit Hunter is a malicious plug-in detection engine for iOS applications. It can analyze the head of the macho file of the injected…

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.


iOS 12 / OS X Remote Kernel Heap Overflow (CVE-2018-4407) POC

Crash macOS and iOS devices with one packet

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and…

IDA plugin that resolves PPL calls to the actual underlying PPL function.

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

CVE-2018-4331: Exploit for a race condition in the GSSCred system service on iOS 11.2.


This repo documents a vulnerability in Siri Shortcuts and Shared Web Credentials (SWC) allowing malformed payloads to persistently execute, trigger…

CVE-2022-46689

iOS customization app powered by CVE-2022-46689

iOS Syscall Explorer for IDA 9.X

Mobile app security auditing tool focused on automating SAST analysis, identifying underlying technologies (React Native, Flutter, Xamarin, native),…