StaCoAn Logo

StaCoAn

0
Free
Visit Website

StaCoAn is a cross-platform tool designed for static code analysis on mobile applications, focusing on identifying hardcoded credentials, API keys, URLs, decryption keys, and major coding mistakes. It offers a user-friendly interface with graphical guidance, supporting APK files with future support for IPA files. The tool allows customization through settings and wordlists, generating visual and portable reports.

FEATURES

ALTERNATIVES

A plugin for viewing, detecting weak configurations, and generating Content Security Policy headers.

A free online tool to scan for DOM-based XSS vulnerabilities in HTML, JavaScript, and CSS files.

Automated framework for monitoring and tampering system API calls of native macOS, iOS, and Android apps.

InQL is a Burp Suite extension for advanced GraphQL testing and vulnerability detection

A web application security testing platform that helps you test your knowledge on web application security through realistic scenarios with known vulnerabilities.

A tool for dynamic analysis of mobile applications in a controlled environment.

ConDroid performs concolic execution of Android apps to observe 'interesting' behavior in dynamic analysis.

APKiD is a tool that identifies compilers, packers, obfuscators, and other weird stuff in APK files.