업데이트로 돌아가기
New releaseAug 10, 2026

mobsfscan v1.0.0

mobsfscan은 Android 및 iOS 소스 코드에서 안전하지 않은 코드 패턴을 찾을 수 있는 정적 분석 도구입니다. Java, Kotlin, Swift, Objective C 코드를 지원합니다. mobsfscan은 MobSF 정적 분석 규칙을 사용하며 semgrep 및 libsast 패턴 매처로 구동됩니다.

공유

mobsfscan

mobsfscan은 Android 및 iOS 소스 코드에서 안전하지 않은 코드 패턴을 찾을 수 있는 정적 분석 도구입니다. Java, Kotlin, Android XML, iOS Info.plist, Swift 및 Objective C 코드를 지원합니다. mobsfscan은 MobSF 정적 분석 규칙을 사용하며 semgrep과 libsast 패턴 매처를 기반으로 합니다.

Made with Love in India Tweet

PyPI version License python platform Build

mobsfscan 후원하기

Donate to MobSF

mobsfscan이 마음에 들고 유용하다고 생각하신다면 후원을 고려해 주세요.

e-Learning 과정 및 자격증

MobSF Course Automated Mobile Application Security Assessment with MobSF -MAS

Android Security Tools Course Android Security Tools Expert -ATX

설치

pip install mobsfscan

Python 3.10–3.14 필요

명령줄 옵션```bash

$ mobsfscan usage: mobsfscan [-h] [--json] [--sarif] [--sonarqube] [--gitlab-sast] [--html] [--type {android,ios,auto}] [-o OUTPUT] [-c CONFIG] [-mp {default,billiard,thread}] [-w] [--no-fail] [-v] [path ...]

positional arguments: path Path can be file(s) or directories with source code

options: -h, --help show this help message and exit --json set output format as JSON --sarif set output format as SARIF 2.1.0 --sonarqube set output format as SonarQube generic issues (10.3+) --gitlab-sast set output format as GitLab SAST report --html set output format as HTML --type {android,ios,auto} optional: force android or ios rules explicitly -o OUTPUT, --output OUTPUT output filename to save the result -c CONFIG, --config CONFIG location to .mobsf config file -mp {default,billiard,thread}, --multiprocessing {default,billiard,thread} optional: specify multiprocessing strategy -w, --exit-warning non zero exit code on warning --no-fail force zero exit code, takes precedence over --exit-warning -v, --version show mobsfscan version

## 사용 예시```bash
$ mobsfscan tests/assets/src/
- Pattern Match ████████████████████████████████████████████████████████████ 3
- Semantic Grep ██████ 37

카테고리