Repository navigation
android-security
- Website
- Wikipedia
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Scanning APK file for URIs, endpoints & secrets.
Reverse Engineering Resources About All Platforms(Windows/Linux/macOS/Android/iOS/IoT) And Every Aspect! (More than 3500 open source tools and 2300 posts&videos)
Unlock an Android phone (or device) by bruteforcing the lockscreen PIN. Turn your Kali Nethunter phone into a bruteforce PIN cracker for Android devices! (no root, no adb)
An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners. I'm just maintaining it.
Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime
A curated list of Android Security materials and resources For Pentesters and Bug Hunters
A big list of Android Hackerone disclosed reports and other resources.
Radare2 and Frida better together.
[Official] Android reverse engineering tool focused on dynamic instrumentation automation leveraging Frida. It disassembles dex, analyzes it statically, generates hooks, discovers reflected methods, stores intercepted data and does new things from it. Its aim is to be an all-in-one Android reverse engineering platform.
The repo contains a series of challenges for learning Frida for Android Exploitation.
APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security testers, it can be used by anyone to identify and address potential security vulnerabilities in their code.
A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.
Damn Vulnerable Bank is designed to be an intentionally vulnerable android application. This provides an interface to assess your android application security hacking skills.
Oversecured Vulnerable Android App
An OSINT tool to quickly extract IP and URL endpoints from APKs by disassembling and decompiling
Android security insights in full spectrum.
Android security guides, roadmap, docs, courses, write-ups, and teryaagh.
Swiss army knife for identifying and fingerprinting Android devices. MIT license, no restrictions on usage in production.
Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.