The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
☆13,072Jul 21, 2026Updated this week
Alternatives and similar repositories for mastg
Users that are interested in mastg are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.☆2,420Dec 22, 2025Updated 6 months ago
- Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and …☆21,466Jul 6, 2026Updated 2 weeks ago
- 📱 objection - runtime mobile exploration☆9,271Jun 2, 2026Updated last month
- The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application pen…☆5,236Feb 8, 2024Updated 2 years ago
- Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime☆3,049Jul 1, 2026Updated 2 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- The Leading Security Assessment Framework for Android.☆4,571Apr 8, 2026Updated 3 months ago
- A collection of android security related resources☆9,545Updated this week
- The iOS Security Testing Framework☆1,399Oct 25, 2020Updated 5 years ago
- Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)☆3,496Apr 10, 2026Updated 3 months ago
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆9,604Updated this week
- Tool to look for several security related Android application vulnerabilities☆3,374Jan 16, 2024Updated 2 years ago
- ☆686Oct 31, 2022Updated 3 years ago
- Android App Security Checklist☆895Aug 27, 2022Updated 3 years ago
- A completely free, open source and online course about Reverse Engineering iOS Applications.☆2,891Apr 17, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆79,319Updated this week
- The new bridge between Burp Suite and Frida!☆1,882Oct 30, 2025Updated 8 months ago
- Reverse engineering and pentesting for Android applications☆6,159Jun 5, 2026Updated last month
- Vulnerable Android application for developers and security enthusiasts to learn about Android insecurities☆1,459Apr 17, 2024Updated 2 years ago
- Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android☆2,534Jul 13, 2026Updated last week
- Hand-crafted Frida examples☆2,531Nov 29, 2024Updated last year
- Clone this repo to build Frida☆21,374Updated this week
- A big list of Android Hackerone disclosed reports and other resources.☆1,698Sep 10, 2025Updated 10 months ago
- In-depth attack surface mapping and asset discovery☆14,856Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Documentation:☆1,630May 1, 2023Updated 3 years ago
- A runtime mobile application analysis toolkit with a Web GUI, powered by Frida, written in Python.☆1,464Jun 3, 2021Updated 5 years ago
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆72,322Updated this week
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,646Jun 7, 2026Updated last month
- A collection of awesome penetration testing resources, tools and other shiny things☆26,691Jan 25, 2026Updated 5 months ago
- An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respect…☆3,513Mar 1, 2024Updated 2 years ago
- The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topic…☆32,618Updated this week
- A Tool for Domain Flyovers☆5,956May 22, 2022Updated 4 years ago
- A swiss army knife for pentesting networks☆9,155Dec 6, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆10,505May 7, 2026Updated 2 months ago
- Mobile Edge-Dynamic Unified Security Analysis☆2,308Jul 2, 2026Updated 2 weeks ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,959Nov 10, 2023Updated 2 years ago
- A curated list of amazingly awesome Burp Extensions☆3,427Feb 17, 2026Updated 5 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,963Sep 27, 2021Updated 4 years ago
- Radare2 and Frida better together.☆1,427Updated this week
- Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ …☆10,320Jul 4, 2026Updated 2 weeks ago