
DVIA-v2
Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

kfd, short for kernel file descriptor, is a project to read and write kernel memory on Apple devices.

A "plugin" for Android Java to allow asking the user about SSL certificates

Rust tool to detect cell site simulators on an orbic mobile hotspot

This project shows the kind of data a rogue iPhone application can collect.

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

[Android RAT] Remotely manage your android phone using PHP Interface

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.


Cve-2015-1538-1

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

CVE-2021-25337

Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero

OWASP Secure Agent Playbook Project

The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and…

In the Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with…

Apple Silicon device emulator.