
mitmproxy
An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Root an Android Studio emulator by patching its ramdisk with Magisk — in pure Go.

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

Frida toolkit that bypasses SSL/TLS certificate pinning on Android apps, hooking Java TrustManager, OkHttp, Conscrypt, and native OpenSSL/BoringSSL…

Android Full-Stack Device Control Platform: WebRTC/H.264 remote desktop, UI/OCR/image-matching automation, one-click MITM, built-in Frida,…

The new bridge between Burp Suite and Frida!

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Automated SSL pinning bypass for any Flutter & Shorebird version — PyGhidra static analysis auto-discovers BoringSSL and generates ready-to-run Frida…

Capture HTTP/HTTPS traffic from Android apps and send to Proxyman for debugging.

Intercept, modify, repeat and attack Android's Binder transactions using Burp Suite

Interact with Frida devices, processes, and scripts directly from your browser.

Next Generation SSLKillSwitch with much more support!

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.