satishpatnayak / ScanAndroidXMLLinks
Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly
☆52Updated 2 years ago
Alternatives and similar repositories for ScanAndroidXML
Users that are interested in ScanAndroidXML are comparing it to the libraries listed below
Sorting:
- Vuldroid is a Vulnerable Android Application made with security issues in order to demonstrate how they can occur in code☆66Updated 4 years ago
- Slides and other material from various conference presentations.☆45Updated 2 months ago
- File system enumerator and monitor for Android and Ubuntu.☆17Updated 4 years ago
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆26Updated 2 years ago
- Application for showcasing Android Deep Link and WebView Vulnerabilities☆16Updated 2 years ago
- Static and dynamic Android application security analysis☆75Updated last year
- Supporting material for the frida scripting guide☆22Updated 3 years ago
- Intentionally vulnerable webview implementions in Android☆57Updated 3 years ago
- AndroBugs Framework is an efficient Android vulnerability scanner that helps developers or security researchers find potential security v…☆47Updated 2 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆29Updated last year
- Flutter SSL pinning bypass using IP forwarding☆49Updated 3 years ago
- Some simple scripts that I use during bug bounty hunting in Android Apps☆28Updated 10 months ago
- A Proof of Concept for demonstrating Task hijacking in Android using an attacker and a victim app.☆41Updated 4 years ago
- One-click installer for Frida and Burp certs for SSL Pinning bypass☆83Updated 2 years ago
- apkizer is a mass downloader for android applications for all available versions.☆47Updated 4 years ago
- A Bash wrapper for radamsa that can be used to fuzz exported activities and deep links.☆52Updated 4 years ago
- ☆48Updated 11 months ago
- ☆46Updated 6 months ago
- Burp extension to generate multi-step CSRF POC.☆31Updated 6 years ago
- Returns results from Google search.☆50Updated 3 years ago
- Automate the process of an S3 bucket subdomain takeover via dangling CNAME record☆26Updated last year
- Dependency Confusion Security Testing Tool☆51Updated 3 years ago
- ☆10Updated 2 years ago
- A list of threat sinks used in the manual security source code review for application security☆73Updated 2 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆34Updated 3 years ago
- ☆22Updated 2 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- You can find hardcoded Api-Key,Secret,Token Etc..☆77Updated 3 years ago
- The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application pen…☆71Updated 5 years ago