
api-security-audit-action
Automates static API security auditing of OpenAPI contracts in CI/CD, running 300+ checks for authentication, authorization, and data constraints,…

Automates static API security auditing of OpenAPI contracts in CI/CD, running 300+ checks for authentication, authorization, and data constraints,…

Ghidra is a software reverse engineering (SRE) framework

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…

UNIX-like reverse engineering framework and command-line toolset

A collection of android security related resources

A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners.…

Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

Scanning APK file for URIs, endpoints & secrets.

Plugin for JADX to integrate MCP server

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

A curated list of awesome Android Reverse Engineering training, resources, and tools.

Static taint analysis platform for Android apps that detects vulnerabilities and compliance issues using customizable rule-based scanning and…

Radare2 and Frida better together.

[Official] Android reverse engineering tool focused on dynamic instrumentation automation leveraging Frida. It disassembles dex, analyzes it…