
QuarkPoC
iOS Application w/Implementation of CVE-2024-27804

iOS Application w/Implementation of CVE-2024-27804

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023.…

Command-line tool that allows searching and downloading app packages (known as ipa files) from the iOS App Store

UNIX-like reverse engineering framework and command-line toolset

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)

Framework to create, generate, and embed APK payloads for Android penetration testing, leveraging Metasploit for exploitation and Apktool for…

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Next Generation SSLKillSwitch with much more support!

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

Magisk module for Android 14 that adds user-installed CA certificates to the system's Conscrypt trust store, enabling HTTPS interception with proxy…

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely