
ipa-scope
Static analysis tool for iOS applications that extracts links, API keys, subdomains, binary info, linked libraries, and strings to aid mobile…

Static analysis tool for iOS applications that extracts links, API keys, subdomains, binary info, linked libraries, and strings to aid mobile…

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

PulseAPK Core: Cross-Platform tool for working with APK files: Decompilation, Analysis, Building

An updated Frida iOS dump tool supporting the latest Frida 17.5.2 APIs

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

SecurityExplained is a new series after the previous learning challenge series #Learn365. The aim of #SecurityExplained series is to create…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Decompiles Android APK/XAPK/JAR/AAR files and extracts HTTP APIs, authentication patterns, and call flows using jadx, with R8-resistant Kotlin name…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

Scanning APK file for URIs, endpoints & secrets.

OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS

Fermion, an electron wrapper for Frida & Monaco.

MCP server plugin for JEB Pro that enables AI-assisted decompilation, method/field inspection, and automated renaming during APK reverse engineering.

Django application that performs SAST and Malware Analysis for Android APKs