
PCAPdroid
No-root network monitor, firewall and PCAP dumper for Android

No-root network monitor, firewall and PCAP dumper for Android

The Leading Security Assessment Framework for Android.

Plugin for JADX to integrate MCP server

An easy-to-learn/use static analysis framework for Java and Android

Static taint analysis platform for Android apps that detects vulnerabilities and compliance issues using customizable rule-based scanning and…

Quickly analyze and reverse engineer Android packages

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…

Intentionally vulnerable Android banking app for practicing mobile security testing, featuring root detection, anti-debugging, SSL pinning, and…


Modular Android APK security analysis framework integrating static, dynamic, and reverse engineering tools for comprehensive vulnerability assessment…

Intentionally vulnerable Android application.

Intentionally vulnerable hybrid Android app for security professionals to test tools and techniques, and for developers to learn common hybrid mobile…

Penetration testing and auditing toolkit for Android apps.

An open source Android application that is intentionally vulnerable so as to act as a learning platform for Android application security beginners.

Fuzzy comparison tool for deobfuscating Android APKs by identifying renamed functions across versions, generating mapping files and interactive HTML…

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

PulseAPK is a WPF frontend for apktool and uber-signer with drag-and-drop support, live decompilation output, smali analysis, and integrated APK…

CVE-2026-43499 (IonStack/GhostLock) pure-C re-root POC for Samsung SM-T878U / gts7l (T878USQS8DXE1)