bwinsight / mobile-omtg
Mobile Security - OMTG-Android Walkthrough
☆11Updated 5 years ago
Alternatives and similar repositories for mobile-omtg:
Users that are interested in mobile-omtg are comparing it to the libraries listed below
- A Bash wrapper for radamsa that can be used to fuzz exported activities and deep links.☆51Updated 3 years ago
- Intentionally vulnerable webview implementions in Android☆56Updated 3 years ago
- Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly☆49Updated 2 years ago
- Slides and other material from various conference presentations.☆44Updated last month
- Fuzzing script for redirect URL validator☆52Updated 5 years ago
- This repository contains all the examples related to a series of tutorials that demonstrate how to use the new Montoya API of Burp Suite …☆41Updated 5 months ago
- ☆53Updated 4 years ago
- This repository explain how to write frida hook scripts and analysis written hooks.☆82Updated last year
- ☆29Updated 4 years ago
- Compiled dataset of Java deserialization CVEs☆61Updated 4 years ago
- A demo app vulnerable to directory traversal☆15Updated 5 years ago
- ☆97Updated 3 years ago
- D-Link DIR-859 - RCE UnAutenticated (CVE-2019–17621)☆48Updated 5 years ago
- Vulnerable Android application for Ostolab Security Scanner☆29Updated last month
- All kind of frida stuff when needed in pentesting or reverse engineering of an android app - The perfect starter kit☆17Updated 4 years ago
- The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application pen…☆71Updated 4 years ago
- AndroBugs Framework is an efficient Android vulnerability scanner that helps developers or security researchers find potential security v…☆45Updated 2 years ago
- Some PoC (Proof-of-Concept) about vulnerability of java deserialization of untrusted data☆26Updated 3 years ago
- A Proof of Concept for demonstrating Task hijacking in Android using an attacker and a victim app.☆41Updated 4 years ago
- A tampered payload generator to Fuzz Web Application Firewalls☆36Updated 5 years ago
- Patches those pesky APKs for proxy use.☆49Updated 4 years ago
- A blog about learning how to use the Frida dynamic instrumentation toolkit with Android☆30Updated 2 years ago
- This repo contains the lazyFuzzer and the Report on the output from the same☆16Updated 5 years ago
- One-click installer for Frida and Burp certs for SSL Pinning bypass☆79Updated last year
- Supporting material for the frida scripting guide☆20Updated 2 years ago
- ☆65Updated 4 years ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago
- Flutter SSL pinning bypass using IP forwarding☆48Updated 2 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆76Updated 4 years ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated last year