AndroBugs Framework is an Android vulnerability analysis system that helps developers or hackers find potential security vulnerabilities in Android applications. It offers efficient scanning (less than 2 minutes per scan on average) and high accuracy. Features include finding security vulnerabilities, checking for missing best practices, identifying dangerous shell commands, collecting information from millions of apps, and assessing app security protection. The tool is designed for Android developers or hackers on Windows and does not require the installation of Python 2.7 or any 3rd-party libraries.
FEATURES
SIMILAR TOOLS
StringSifter is a machine learning tool for automatically ranking strings for malware analysis.
A comprehensive collection of wordlists for bruteforcing and password cracking, covering various hashing algorithms and sizes.
Phish Report is inaccessible without JavaScript and cookies enabled.
An open-source phishing toolkit for businesses and penetration testers.
CHIPSEC is a framework for analyzing the security of PC platforms and components, with tools for low-level interfaces and forensic capabilities.
Comprehensive manual for mobile app security testing and reverse engineering with technical processes for verifying controls.
Practical security policy enforcement for Android apps via bytecode rewriting and in-place reference monitor.
A cyber risk management platform that financially quantifies cyber risks and provides actionable mitigation strategies while integrating with insurance coverage.
Android security virtual machine with updated tools and frameworks for reverse engineering and malware analysis.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.