
jadx-magic-strings
JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

A tool that automates the mundane tasks of pentesting Android apps. It uses APKTool and Dex2Jar.

Technical analysis and safety-conscious research harness for CVE-2019-6447 in ES File Explorer for Android

Main repo for hosting release binaries

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Flutter Reverse Engineering Framework

A frida tool to dump dex in memory to support security engineers analyzing malware.

AirPods liberated from Apple's ecosystem.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Mobile Edge-Dynamic Unified Security Analysis

bash script to facilitate some aspects of an Android application assessment

PoC Frida script to view Android libbinder traffic

OPPO Find N2 GhostLock (CVE-2026-43499) exploit adaptation

Hands-on challenges for learning how to reverse engineer Flutter applications.

Android Malware Tracker

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

Agent Skill for operating renef.io — Android ARM64 dynamic instrumentation: hook native/Java, patch memory, trace syscalls, bypass SSL pinning/root…

OPPO Find X6 Pro GhostLock (CVE-2026-43499) exploit adaptation