Pinned Repositories
android-backup-extractor
Android backup extractor
arm-reverse-engineering-exercises
Reverse Engineering Exercises
AuditDroid
AduitDroid
Awesome-Fuzzing
A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
byeselinux
Android kernel module to bypass SELinux at boot
Cheatsheets
Penetration Testing/Security Cheatsheets
CrashReport
Xposed模块,截取程序崩溃日志进行弹窗显示。
CVE-2016-5195
CVE-2016-5195 (dirtycow/dirtyc0w) proof of concept for Android
cve-2019-1003000-jenkins-rce-poc
Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline: Declarative)
SafeWebView
Android Safe WebView、解决WebView的Js对象注入漏洞、支持网页将JS函数(function)传到Java层,方便回调;
0xr0ot's Repositories
0xr0ot/ADBFuzz
Fuzzing Harness for Firefox Mobile on Android
0xr0ot/android_root
Got Root!
0xr0ot/AndroidPinning
A standalone library project for certificate pinning on Android.
0xr0ot/androwarn
Yet another static code analyzer for malicious Android applications
0xr0ot/APKSmash
Look for interesting things in an APK and inject logging
0xr0ot/app-protocol-analysis
just for app protocol analysis
0xr0ot/AxmlParserPY
Python AxmlParser
0xr0ot/Boomerang
善良的android木马,手机被盗后将通讯录,短信偷回来,请清除掉相关的隐私信息,如个人照片
0xr0ot/ChkBugReport
A command line tool which parses and converts android bugreport files into more human readable html reports.
0xr0ot/colored-adb-logcat
0xr0ot/ddi
ddi - Dynamic Dalvik Instrumentation Toolkit
0xr0ot/dsploit
0xr0ot/HTTProxy
intial commit
0xr0ot/InDroid
Dalvik vm Instrumentation OS
0xr0ot/Introspy-Android
Security profiling for blackbox Android
0xr0ot/jsif-enumerator
A drozer module built to enumerate JavaScript interface strings in applications and aid low false positive detection of addJavascriptInterface vulnerabilites.
0xr0ot/JSinJS
A JS parser in JS
0xr0ot/ListServices
A small tool to list all cryptographic services available to Java. https://breakingcode.wordpress.com/2011/07/20/quickpost-listing-all-available-java-cryptographic-services/
0xr0ot/mallodroid
Find broken SSL certificate validation in Android Apps
0xr0ot/manifest-explorer
A tool for viewing Android application Manifests.
0xr0ot/ManifestAnalyzer
Android app to analyze manifests of other apps.
0xr0ot/odex_to_dex
Convert odex to dex
0xr0ot/sh
Python process launching
0xr0ot/shellcoderhandbook
shellcoderhandbook source code : "The Shellcoder's Handbook: Discovering and Exploiting Security Holes"
0xr0ot/Sravana
process the monitor data from Andbug
0xr0ot/svncloner-in-php
svn cloner is a kit for downloading source code through .svn info.
0xr0ot/xss_scan
XSS Scan