
truegaze
Static analysis tool for Android/iOS apps focusing on security issues outside the source code

Static analysis tool for Android/iOS apps focusing on security issues outside the source code

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and…

Web-based Source Code Vulnerability Scanner

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.

macOS offensive security toolkit featuring dylib injection, HID keylogger, and in-memory JXA/Python payload runners for red team operations and…

POC: Heap buffer overflow in the networking code in the XNU operating system kernel


Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

A free, open-source, and cross-platform iDevice management tool

The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and…

Research on Apple's USB protocols

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

Run iOS apps without actually installing them!

Open-source iOS messenger providing end-to-end encrypted text, voice, and video calls via the Signal Protocol, with no analytics or telemetry…

iPhone 11 emulated on QEMU

Allows you to emulate an Android native library, and an experimental iOS emulation

iOS and macOS Decompiler