
apkSneeze
A tool that automates the mundane tasks of pentesting Android apps. It uses APKTool and Dex2Jar.

A tool that automates the mundane tasks of pentesting Android apps. It uses APKTool and Dex2Jar.

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

CVE-2026-12960 - Improper Export of Android Application Components in the ASUS Router app (com.asus.aihome). PoC, exploit APK, video, and vendor…

iOS Application w/Implementation of CVE-2024-27804

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023.…

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Command-line tool that allows searching and downloading app packages (known as ipa files) for iOS, iPadOS, tvOS, and visionOS from the App Store.

UNIX-like reverse engineering framework and command-line toolset

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)

Framework to create, generate, and embed APK payloads for Android penetration testing, leveraging Metasploit for exploitation and Apktool for…

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Next Generation SSLKillSwitch with much more support!

Penetration testing and auditing toolkit for Android apps.

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…