
Thick-Client-Pentest-Checklist
A OWASP Based Checklist With 80+ Test Cases

A OWASP Based Checklist With 80+ Test Cases

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.

An API hooking framework for intercepting and monitoring Windows applications

HTTP Proxy Analysis for reverse engineering protocol communication

An strace-like program for the Windows 'native' API

MAPS cloud scanner and response parser for Microsoft Defender research.


C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…


OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

A collection of hacking / penetration testing resources to make you better!