Appie v3 released – Android Pentesting Portable Integrated Environment.
Appie is a software package that has been pre-configured to function as an Android Pentesting Environment.It is completely portable and can be carried on USB stick.This is a one stop answer for all the...
View ArticleMetaphor – Stagefright with ASLR bypass.
Metaphor’s source code is now released! The source include a PoC that generates MP4 exploits in real-time and bypassing ASLR. The PoC includes lookup tables for Nexus 5 Build LRX22C with Android 5.0.1....
View ArticleWhatsPwn – Linux tool used to extract sensitive data, inject backdoor, or...
Linux tool used to extract sensitive data, inject backdoor, or drop remote shells on android devices. With Argument Feature: [1 | FULL] >>> Start full attack. {BACKDOOR > WHATSAPP >...
View ArticleDroidfuzzer – A Modular Android Fuzzing Toolkit.
DroidFuzzer is a Android fuzzing toolkit that is mean to target devices and their mechanisms for parsing things like images and documents. DroidFuzzer is meant to be modular allowing the support for...
View ArticleAndroid APK automatic auditor.
Android APK automatic auditor for vulnerabilities in rust language. with flag: FLAGS: –force If you’d like to force the auditor to do everything from the beginning. -h, –help Prints help information...
View ArticleAppmon – Runtime Security Testing Framework for iOS, Mac OS X and Android Apps.
AppMon is an automated framework for monitoring and tampering system API calls of native apps on iOS, Mac OS X and Android apps (upcoming). You may call it the GreaseMonkey for native mobile apps....
View Articleandroguard v3.0-git with gui – Reverse engineering, Malware & goodware...
latest change androguard v3.0-git gui 3/6/2016: + update the GUI + parsing performance Androguard is mainly a tool written in python to play with : Dex/Odex (Dalvik virtual machine) (.dex)...
View ArticleIntelliDroid is tool aimed to extract call paths leading to specific behavior...
IntelliDroid is tool aimed to extract call paths leading to specific behavior in an Android application, and to execute these paths precisely during run time. When given a set of targeted behaviors,...
View Articlebackdoor-apk is a shell script that simplifies the process of adding a...
backdoor-apk is a shell script that simplifies the process of adding a backdoor to any Android APK file. Users of this shell script should have working knowledge of Linux, Bash, Metasploit, Apktool,...
View Articleqark updates ~ Tool to look for several security related Android application...
Latest change 27/6/2016: + Procyon library updated to 0.5.30 + Plugins & Modules: Added sample plugins and missing __init__.py in modules. + lib: remove pyc. + qark.py: add yapsy library and fix...
View ArticleMARA is a Mobile Application Reverse engineering and Analysis Framework.
MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a tool that puts together commonly used mobile application reverse engineering toolsets, in order to make the task or...
View Articlebackdoor-apk v0.1.2 is a shell script that simplifies the process of adding a...
Changelog v0.1.2 (2016-07-25): + Bug Fixes — Placeholder logic no longer fails on Linux systems configured for 32 bit long values. + Miscellaneous — Added AUTHORS and HISTORY files. backdoor-apk is a...
View ArticleDROID-HUNTER is an Android application vulnerability analysis and Android...
DROID-HUNTER is an Android application vulnerability analysis and Android pentest tool. Support + App info check + Baksmaling android app + Decompile android app + Extract class file + Extract java...
View Articleandrotools is Android malware static & dynamic analysis tool optimized for...
androtools is Android malware static & dynamic analysis tool optimized for automated analysis. This work was motivated observing real-world needs for Police Officer and Malware Analysts who want to...
View ArticleApktool v2.2.0 – A tool for reverse engineering Android apk files.
Changelog v2.2.0: * Migration Instructions from 2.1.1 to 2.2.0 * Updated smali/baksmali to v2.1.3 +-+ Fixed upstream issue where debug comment indexes can cause out of bounds exception. (Issue 1269) *...
View ArticleMara framework v0.2(beta) – Mobile Application Reverse Engineering & Analysis...
Changelog v0.2(beta): * Adding Preliminary Analysis (*new Features) * Adding APK Manifest Analysis (*new Features) * Tools Update ++ tools/editors/com.maskyn.fileeditor-59.apk ++...
View ArticleForensic Hashing – Android Forensic Toolkit.
All operations in Android Forensic Toolkit (AFTK, henceforth the software) can be done in the following steps. – Connect the device/drive and refresh drive list in the software. – Select desired drive...
View Articledrozer v2.4.0 is a comprehensive security audit and attack framework for...
Changelog drozer v2.4.0: + Fixed bug in sharedUID package search + Fixed bug in web delivery page + Fixed bug in busybox path + Updated busybox for PIE Support + Referenced aapt-osx in setup script +...
View ArticleTheFatRat v1.6 codename: Tasty – Backdoor Creator For Remote Access.
Changelog TheFatRat v1.6 codename “Tasty” : – Add new features create backdoor with PwnWinds ( FUD++ ) – Add some script for checking monodevelop and apache server – Add new features backdooring...
View ArticleThe Penetration Testers Framework (PTF) v1.9.1 codename: Tool Depot.
Changelog ptf v1.9.1: * fixed crackmapexec * vdbaan fix git #225 -> resolved -> PTF searches for modules based on the directory name (from INSTALL_LOCATION). This can differ from the filename...
View Article