Skip to content
@MobSF

Mobile Security Framework

Automated pentesting framework for Android, iOS and Windows Apps

Pinned

  1. Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static a…

    JavaScript 10.8k 2.5k

  2. docs Public

    MobSF Documentation

    HTML 13 15

  3. mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysi…

    Java 166 38

  4. MobSF related Presentations, Slides and Others.

    Java 28 17

  5. httptools helps you to capture, repeat and live intercept HTTP requests with scripting capabilities. It is built on top of mitmproxy

    CSS 39 19

  6. RP4MobSF Public

    a nginx reverse proxy with ssl and auth for MobSF

    Shell 11 12

Repositories

  • Mobile-Security-Framework-MobSF Public

    Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

    JavaScript 10,806 GPL-3.0 2,502 14 5 Updated Mar 25, 2022
  • mobsfscan Public

    mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysis rules and is powered by semgrep and libsast pattern matcher.

    Java 166 LGPL-3.0 38 4 0 Updated Feb 1, 2022
  • docs Public

    MobSF Documentation

    HTML 13 GPL-3.0 15 0 0 Updated Jan 27, 2022
  • test_files Public

    Test files for MobSF

    2 2 0 0 Updated Jan 23, 2022
  • Android-InsecureBankv2 Public

    Vulnerable Android application for developers and security enthusiasts to learn about Android insecurities

    Java 1 MIT 348 0 0 Updated Jan 2, 2022
  • yara-python-dex Public

    yara-python-dex enabled wheels

    Python 3 3 0 0 Updated Dec 21, 2021
  • pivaa Public

    Created by High-Tech Bridge, the Purposefully Insecure and Vulnerable Android Application (PIVAA) replaces outdated DIVA for benchmark of mobile vulnerability scanners.

    Java 0 GPL-3.0 43 0 0 Updated Jul 23, 2021
  • diva-android Public

    DIVA Android - Damn Insecure and vulnerable App for Android

    Java 4 GPL-3.0 221 0 0 Updated May 17, 2021
  • DVIA-v2 Public

    Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security enthusiasts/professionals or students to test their iOS penetration testing skills in a legal environment. This project is developed and maintained by @prateekg147. The vulnerabilities and solutions covered in t…

    Swift 1 MIT 98 0 0 Updated May 17, 2021
  • httptools Public

    httptools helps you to capture, repeat and live intercept HTTP requests with scripting capabilities. It is built on top of mitmproxy

    CSS 39 LGPL-2.1 19 0 0 Updated Feb 7, 2021