
mobsfscan एक स्थैतिक विश्लेषण उपकरण है जो आपके Android और iOS स्रोत कोड में असुरक्षित कोड पैटर्न खोज सकता है। यह Java, Kotlin, Swift और Objective C कोड का समर्थन करता है। mobsfscan MobSF स्थैतिक विश्लेषण नियमों का उपयोग करता है और semgrep और libsast pattern matcher द्वारा संचालित है।
mobsfscan एक स्टैटिक विश्लेषण उपकरण है जो आपके Android और iOS स्रोत कोड में असुरक्षित कोड पैटर्न खोज सकता है। यह Java, Kotlin, Android XML, iOS Info.plist, Swift और Objective C कोड का समर्थन करता है। mobsfscan MobSF स्टैटिक विश्लेषण नियमों का उपयोग करता है और यह semgrep और libsast पैटर्न मैचर द्वारा संचालित है।
यदि आपको mobsfscan पसंद आया और यह उपयोगी लगा, तो कृपया दान करने पर विचार करें।
Automated Mobile Application Security Assessment with MobSF -MAS
Android Security Tools Expert -ATX
pip install mobsfscan
Python 3.10–3.14 की आवश्यकता है
$ mobsfscan usage: mobsfscan [-h] [--json] [--sarif] [--sonarqube] [--gitlab-sast] [--html] [--type {android,ios,auto}] [-o OUTPUT] [-c CONFIG] [-mp {default,billiard,thread}] [-w] [--no-fail] [-v] [path ...]
positional arguments: path Path can be file(s) or directories with source code
options: -h, --help show this help message and exit --json set output format as JSON --sarif set output format as SARIF 2.1.0 --sonarqube set output format as SonarQube generic issues (10.3+) --gitlab-sast set output format as GitLab SAST report --html set output format as HTML --type {android,ios,auto} optional: force android or ios rules explicitly -o OUTPUT, --output OUTPUT output filename to save the result -c CONFIG, --config CONFIG location to .mobsf config file -mp {default,billiard,thread}, --multiprocessing {default,billiard,thread} optional: specify multiprocessing strategy -w, --exit-warning non zero exit code on warning --no-fail force zero exit code, takes precedence over --exit-warning -v, --version show mobsfscan version
## उदाहरण उपयोग```bash
$ mobsfscan tests/assets/src/
- Pattern Match ████████████████████████████████████████████████████████████ 3
- Semantic Grep ██████ 37