
AndroTickler
Penetration testing and auditing toolkit for Android apps.

Penetration testing and auditing toolkit for Android apps.

Extracts app settings, permissions, deeplinks, and SSL pinning bypass suggestions from Android APK files via static analysis of AndroidManifest.xml,…

Static analysis tool for iOS applications that extracts links, API keys, subdomains, binary info, linked libraries, and strings to aid mobile…

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

The repo contains a series of challenges for learning Frida for Android Exploitation.

A curated list of awesome iOS application security resources.

Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".

SecurityExplained is a new series after the previous learning challenge series #Learn365. The aim of #SecurityExplained series is to create…

A tool to automate the boring process of APK recon

The tool is used to analyze the content of the android application in local storage.

bash script to facilitate some aspects of an Android application assessment

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

Static analysis of APKs with regular expressions

A tool that automates the mundane tasks of pentesting Android apps. It uses APKTool and Dex2Jar.

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

CVE-2026-12960 - Improper Export of Android Application Components in the ASUS Router app (com.asus.aihome). PoC, exploit APK, video, and vendor…