AppUse is a VM (Virtual Machine) developed by AppSec Labs. It is a unique platform for mobile application security testing, Android and iOS applications and includes exclusive custom-made tools and scripts created by AppSec Labs. As pentesters, we all know that there are a lot of commands, scripts, and tools that we use during Android and iOS penetration testing, it can be tedious to navigate from the OS to the Android shell, pull and push files, and perform our tests via CLI beside of getting easy output of static and dynamic analysis of iOS apps. This is exactly why we built the AppUse dashboard! It will allow you work faster, be more effective, get higher quality results and save precious time!
FEATURES
SIMILAR TOOLS
A C++ staged shellcode loader with evasion capabilities, compatible with Sliver and other shellcode sources, designed for offensive security testing.
An image with commonly used tools for creating a pentest environment easily and quickly, with detailed instructions for launching in a VPS.
Charlotte is an undetected C++ shellcode launcher for executing shellcode with stealth.
A reminder that technology alone is not enough to stay secure against social engineering tactics.
A toolkit to attack Office365, including tools for password spraying, password cracking, token manipulation, and exploiting vulnerabilities in Office365 APIs and services.
A tool to dump login passwords from Linux desktop users, leveraging cleartext credentials in memory.
A cross-platform tool for creating malicious MS Office documents with hidden VBA macros and anti-analysis features.
A powerful tool for extracting passwords and performing various Windows security operations.
A tool for interacting with the MSBuild API, enabling malicious activities and evading detection.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.