Skip to content
View lehasaS's full-sized avatar
📖
Learning and Growing
📖
Learning and Growing

Block or report lehasaS

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Mobile Security

120 repositories

A nice CLI tool to scan process memory, using frida

Python 3 3 Updated Mar 31, 2024

The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWA…

Shell 12,604 2,597 Updated Dec 18, 2025

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

Objective-C 3,236 482 Updated Jul 9, 2023

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

JavaScript 1,908 255 Updated Dec 15, 2025

Fridax enables you to read variables and intercept/hook functions in Xamarin/Mono JIT and AOT compiled iOS/Android applications.

JavaScript 175 23 Updated Apr 4, 2023

A Frida script to bypass Xamarin certificate pinning implementations

C# 75 29 Updated Jan 6, 2023

Stand-alone binary AndroidManifest.xml decoder

C++ 240 36 Updated Dec 11, 2020

Extract DLL files from a Xamarin libmonodroid_app_bundle.so bundle

Python 2 Updated Nov 27, 2023

Extract .NET assemblies from Xamarin mobile applications.

C# 50 3 Updated Aug 9, 2021

Python utility for parsing Xamarin AssemblyStore blob files

Python 188 44 Updated May 6, 2024

All the mono c exports, ready to be used in frida!

JavaScript 75 23 Updated Nov 8, 2020

Decompress Xamarin .NET compressed binaries so they can be decompiled.

Python 48 11 Updated Oct 7, 2020

Work in progress...

JavaScript 393 75 Updated Nov 6, 2025

The app used in my Medium article "What Is Android Intent Redirection Vulnerability and How to Prevent It"

Kotlin 3 Updated Nov 16, 2023

📱 objection - runtime mobile exploration

Python 8,749 946 Updated Nov 21, 2025

Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".

Python 726 73 Updated Sep 11, 2025

InfoSec Notes

59 16 Updated Mar 23, 2024

Runtime code generation for the Java virtual machine.

Java 6,707 839 Updated Dec 19, 2025

This repository explain how to write frida hook scripts and analysis written hooks.

87 19 Updated Jun 13, 2023

DNSChef (NG) - DNS proxy for Penetration Testers and Malware Analysts

Python 163 16 Updated Nov 26, 2023

Java Object Deserialization on Android

Java 86 14 Updated Apr 11, 2019

Dex to Java decompiler

Java 46,559 5,364 Updated Dec 15, 2025

Dalvik bytecode disassembler and graph view

Rust 66 7 Updated Jun 3, 2024

Damn Vulnerable Hybrid Mobile App (DVHMA) is an hybrid mobile app (for Android) that intentionally contains vulnerabilities.

JavaScript 268 64 Updated Aug 22, 2018

Vulnerable Ios application for Ostolab Security Scanner

Dart 7 11 Updated Mar 12, 2025

Vulnerable Android application for Ostolab Security Scanner

Java 35 17 Updated May 13, 2025

Reverse engineering and pentesting for Android applications

Python 5,906 1,123 Updated Dec 7, 2025

Writeup and exploit for installed app to system privilege escalation on Android 12 Beta through CVE-2021-0928, a `writeToParcel`/`createFromParcel` serialization mismatch in `OutputConfiguration`

Java 117 20 Updated Mar 3, 2022

Disables app launch watchdog timeouts

Makefile 29 5 Updated Oct 2, 2021