This is your work, valued
Security Researcher
AndroGoat. AndroGoat
383ScanAndroidXML. Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly
55MyTest.
20awesome-static-analysis. Static analysis tools for all programming languages
14frida-training. JavaScript
7awesome-pentest. A collection of awesome penetration testing resources, tools and other shiny things
5android_app_security_checklist. Android App Security Checklist
4s3cure. Python
2owasp-mstg. The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security testing and reverse engineering.
2frida_scripts. Frida Scripts
1plistsubtractor. Read a plist file, write out any embedded plist files
1app-sec-wiki. Files for appsecwiki.com
1Ghazi. Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab Will Replace Every GET or POST Parameters With Selected TAB in "Proxy" or "Repeater" TAB
1awesome-frida. Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)
1HelloWorld. Hello World! Learning
1awesome-infosec. A curated list of awesome infosec courses and training resources.
1SG-Cleaner. Python
1www-project-androgoat. OWASP Foundation Web Respository
1dumpdecrypted. Dumps decrypted mach-o files from encrypted iPhone applications from memory to disk. This tool is necessary for security researchers to be able to look under the hood of encryption.
1fridump. A universal memory dumper using Frida
1DVWA. Damn Vulnerable Web Application (DVWA)
1