
Mobile-Security-Framework-MobSF
Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Android application to brute force WiFi passwords without requiring a rooted device.

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…

CuckooDroid - Automated Android Malware Analysis with Cuckoo Sandbox.

Django application that performs SAST and Malware Analysis for Android APKs

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

I'll submit the poc after blackhat

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

Static and dynamic Android application security analysis

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Proof Of Concept for Android. NoFrak is designed to prevent fracking attacks, as described in "Breaking and Fixing Origin-Based Access Control in…

CVE-2024-23729

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Improper Hostname Verification in EagleEyes Lite Android Application