
Awesome-Pentest
A list of awesome penetration testing tools and resources.

A list of awesome penetration testing tools and resources.

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized…

Android remote administration client

Temporary root (uid 0) on a bootloader-locked ASUS Zenfone 9 via CVE-2025-21479 + a perf-based physical-address leak. GPLv3.

This uses CVE-2025-43407 as exploit and still testing working not gauranteed.

Android and Java bytecode viewer

Translates Dalvik bytecode (DEX/APK) to equivalent Java bytecode, enabling Java analysis tools to process Android applications with high correctness…

Statically unpacking common android banker malware.

CVE-2016-5195 (Dirty COW) PoC for Android 6.0.1 Marshmallow

Extracts decrypted IPA files from jailbroken iOS devices using Frida for reverse engineering, security analysis, and mobile app pentesting.

Grid: Private Location Sharing mobile app for iOS/Android. E2EE with Matrix.

Utility to decrypt App Store apps on jailbroken iOS 11.x

Local-first password manager with direct device-to-device sync


Framework providing TCP/IP-like characteristics over GSM SMS with AES+CTR encryption, enabling secure, ordered message streams for device-to-device…

CVE-2011-0228 fix for older idevices/firmwares

Privacy-first password manager with local storage and bring-your-own-cloud sync across Google Drive, Microsoft OneDrive, and Dropbox. Your…