
CVE-2014-8609-exploit
Proof-of-concept exploit for CVE-2014-8609, demonstrating Android pending intent vulnerability exploitation for security research and mobile…

Proof-of-concept exploit for CVE-2014-8609, demonstrating Android pending intent vulnerability exploitation for security research and mobile…

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

Static and dynamic Android application security analysis

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

(deprecated) Android application vulnerability analysis and Android pentest tool

Django application that performs SAST and Malware Analysis for Android APKs

An intentionally vulnerable Android Application to demonstrate various vulnerabilities that airses in Android Components.

Fermion, an electron wrapper for Frida & Monaco.

Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

Demo Android application demonstrating CVE-2019-9465 for security testing and vulnerability analysis on mobile platforms.

*This project is no longer maintained* OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

CVE-2026-12960 - Improper Export of Android Application Components in the ASUS Router app (com.asus.aihome). PoC, exploit APK, video, and vendor…

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection