drozer is a security testing framework for Android that allows you to search for security vulnerabilities in apps and devices by interacting with the Android Runtime, other apps' IPC endpoints, and the underlying OS. It provides tools to use, share, and understand public Android exploits. drozer is open source software maintained by WithSecure. For more information and downloads, visit: [drozer](https://labs.withsecure.com/tools/drozer/). This is a BETA release of a rewritten version of drozer, updated to support Python3. Known issues include the crashing of the drozer client when building custom agents, which is considered out of scope for the beta release. To ensure compatibility, a Docker container and manual building instructions are available.
FEATURES
SIMILAR TOOLS
A tool for quantitative risk analysis of Android applications using machine learning techniques.
Tools and documentation for validating hardware security requirements on x86 platforms, including bootable USB key creation and platform configuration verification.
Phish Report is inaccessible without JavaScript and cookies enabled.
An Active Defense framework for detecting and responding to phishing attacks in Office 365 Message Trace logs.
An open-source phishing toolkit for businesses and penetration testers.
Python tool for monitoring user-select APIs in Android apps using Frida.
Industrial control system automation and testing tool for SCADA security testing.
A data-mining and deep web asset search engine for breach analysis and prevention services.
A Graphical Realism Framework for Industrial Control Simulation organized as 5 VirtualBox VMs for realistic ICS network simulation.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.