
house
A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Android application to brute force WiFi passwords without requiring a rooted device.

Django application that performs SAST and Malware Analysis for Android APKs

Static and dynamic Android application security analysis

Proof Of Concept for Android. NoFrak is designed to prevent fracking attacks, as described in "Breaking and Fixing Origin-Based Access Control in…

CVE-2026-12960 - Improper Export of Android Application Components in the ASUS Router app (com.asus.aihome). PoC, exploit APK, video, and vendor…

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Improper Hostname Verification in EagleEyes Lite Android Application

Improper Certificate Chain Validation in EagleEyes Lite Android Application

🔗 Lightweight security orchestrator mobile application for URI vetting, providing a unified, multi-engine interface to aggregate and validate link…

Cleartext Transmission of Sensitive Information in EagleEyes Lite Android Application

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…