
fleet
Open-source platform to secure and manage endpoints via MDM, patch management, software deployment, and osquery-powered visibility with compliance…

Open-source platform to secure and manage endpoints via MDM, patch management, software deployment, and osquery-powered visibility with compliance…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Root access to the kernel can be achieved simply by patching the Boot partition for reflashing. This solution is based on a non-parallel extended…

A Android malware analysis tool that creates comprehensive runtime profiles by hooking into application behavior across cryptography, file systems,…

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Deliberately vulnerable Android app for mobile security research and bug bounty practice - OWASP Mobile Top 10

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Android application to brute force WiFi passwords without requiring a rooted device.

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

This project shows the kind of data a rogue iPhone application can collect.

iblessing is an iOS security exploiting toolkit, it mainly includes application information gathering, static analysis and dynamic analysis. It can…

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Security profiling for blackbox iOS

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…