
ARTist
Open-source instrumentation framework for Android apps and Java middleware, modifying code during on-device compilation via the ART compiler.…

Open-source instrumentation framework for Android apps and Java middleware, modifying code during on-device compilation via the ART compiler.…

Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.

LD_PRELOAD magic for Android's AssetManager

A Frida UI tool window inside PyCharm / JetBrains IDEs.

Static and dynamic Android application security analysis

MobSF Remote code execution (via CVE-2024-21633)

PulseAPK is a WPF frontend for apktool and uber-signer with drag-and-drop support, live decompilation output, smali analysis, and integrated APK…

A simple tool to allows users to search for and analyze android apps for potential security threats and vulnerabilities

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Multi-tool reverse engineering collaboration solution.

Cross-platform APK/DEX method finder with call chain tracing, ProGuard deobfuscation, and hidden API detection

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

MAPS cloud scanner and response parser for Microsoft Defender research.

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.

Educational reverse engineering study of a Unity/IL2CPP Android game. Documents gateway protocol decoding, native anti-tampering SDK analysis, SSL…

Root your Galaxy using CVE-2026-43499

Magisk module that auto-packages renef_server (dynamic instrumentation for Android)

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…