Search
Security · Android · For developers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts. | lingbol088-spec/ | 940 | — | ~2.4k | Automated safety check: Pass | MIT | 2 mo ago |
| 2 | Runs a full workflow for authorized Android app security testing: static APK analysis, rooted emulator setup, traffic interception and Frida hook generation. | ptn1411/ | 219 | — | ~917 | Automated safety check: Pass | No licence | 18 days ago |
| 3 | Review code for quality, correctness, and security vulnerabilities. | hiroshiyui/ | 135 | — | ~1.6k | Automated safety check: Pass | GPL-3.0 | 13 days ago |
| 4 | 用于 Android/iOS 移动应用安全逆向分析:Frida 动态插桩、绕过反调试/反注入/加固壳、脱壳、加密与 native SO 层 hook、运行时行为分析、jadx-mcp 静态攻击面分析、离线 SO 静态分析(ELF 侦察/字符串/交叉引用/反汇编/JNI 判型)。用户提到"绕过检测/闪退/脱壳/加密/抓包/行为摸底/内存扫描/分析 so/ELF… | index-login/ | 152 | — | ~3k | Automated safety check: Pass | MIT | 10 days ago |
| 5 | 移动安全漏洞挖掘知识库,基于HackerOne公开报告提供Android和iOS应用的漏洞挖掘手法、技术细节和代码模式分析;用于安全研究人员和漏洞挖掘者学习参考、代码审计和漏洞检测指导。 | s7safe/ | 211 | — | ~631 | Automated safety check: Pass | No licence | 5 mo ago |
| 6 | Run Mira environment risk collection. An agent skill from vw2x/Mira. | vw2x/ | 105 | — | ~793 | Automated safety check: Pass | GPL-3.0 | 5 days ago |
| 7 | Android APK static analysis — OWASP Mobile Top 10, Retrofit API audit, transport security, smali reading, component export, auth flow analysis. | s0ld13rr/ | 828 | — | ~2.9k | Automated safety check: Pass | MIT | 8 days ago |
| 8 | Guide for creating new Android gradle modules in the android-components project. | SAP/ | 180 | 2 repos | ~1.8k | Automated safety check: Pass | GPL-3.0 | 4 days ago |
| 9 | Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other. | index-login/ | 152 | — | ~1.9k | Automated safety check: Pass | MIT | 10 days ago |
| 10 | Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation. | dslsdzc/ | 135 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 11 | 面向新手的全谱系逆向工程路由器,覆盖 Web/JavaScript、Android/iOS、Frida、脱壳、反分析、原生二进制、协议、固件、恶意软件、游戏、云 API、CTF、可复现一致性测试。用于逆向、起步、脱壳、反编译、hook、Frida、绕过检测、APK/SO/DEX/JS/PCAP/WASM/PE/ELF/Mach-O 分析、签名还原,或从样本到验证结果的完整调查。 | manyuegong33/ | 312 | — | ~1.2k | Automated safety check: Pass | No licence | 20 days ago |
| 12 | Identifies and exploits insecure local data storage vulnerabilities in Android and iOS mobile applications including unencrypted databases, world-readable files, insecure SharedPreferences… | mukul975/ | 34k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 13 | Performs automated static analysis of Android applications using Mobile Security Framework (MobSF) to identify hardcoded secrets, insecure permissions, vulnerable components, weak cryptography, and… | mukul975/ | 34k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 14 | Authorized Android/iOS application reverse engineering and security testing: APK/IPA analysis, runtime instrumentation (Frida/Objection), SSL-pinning and jailbreak/root-detection bypass, per OWASP… | sickn33/ | 47k | 1 repo | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 15 | Perform static analysis of Android APK malware using apktool for resource decompilation, jadx for Java source recovery, and androguard for manifest inspection, dangerous permission-combination… | mukul975/ | 34k | — | ~620 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 16 | Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network… | mukul975/ | 34k | — | ~3.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 17 | Mobile (Android + iOS) application penetration testing methodology. | SnailSploit/ | 7.4k | — | ~3.5k | Automated safety check: Pass | MIT | 20 days ago |
| 18 | Analyze Android or iOS game-security trust boundaries, packages, native code, platform integrity, instrumentation, attestation, and signing. | gmh5225/ | 3.6k | — | ~282 | Automated safety check: Pass | MIT | today |
| 19 | Spoof HTTP/2 SETTINGS frames and pseudo-header order per browser profile. | uphiago/ | 1.3k | — | ~2.4k | Automated safety check: Pass | MIT | 1 mo ago |
| 20 | 20.Audit Skills Expert security auditor for AI Skills and Bundles. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~1.6k | Automated safety check: Warn | MIT | yesterday |
| 21 | Performs runtime dynamic analysis of Android applications using Frida, Objection, and Android Debug Bridge to observe application behavior during execution, intercept function calls, modify runtime… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 22 | Security-focused review of native Android and iOS mobile app source code against OWASP MASVS v2.1.0. | OWASP/ | 188 | — | ~622 | Automated safety check: Pass | CC-BY-4.0 | 15 days ago |
| 23 | Optimized command-line arguments for all Android RE tools — jadx, baksmali, aapt, apkid, rg. | Paresh-Maheshwari/ | 178 | — | ~1.4k | Automated safety check: Pass | GPL-3.0 | 11 days ago |
| 24 | Mobile application security testing (Android + iOS) mapped to OWASP MASVS/MASTG — static reversing (Flutter AOT, Unity IL2CPP, React Native/Hermes, native ARM64, Mach-O/Swift), SAST (manifest/IPC… | transilienceai/ | 563 | — | ~2.5k | Automated safety check: Pass | MIT | 2 mo ago |
| 25 | Diagnose and defeat TLS interception failures in mobile apps — certificate pinning, Android Network Security Config, user-CA distrust, native BoringSSL pinning, and mutual TLS — using objection… | trilwu/ | 157 | — | ~2.5k | Automated safety check: Pass | MIT | 1 mo ago |
| 26 | Pentest Android and iOS mobile applications including APK analysis, dynamic analysis, SSL pinning bypass, root/jailbreak detection bypass, and mobile-specific vulnerabilities. | trilwu/ | 157 | — | ~2.8k | Automated safety check: Pass | MIT | 1 mo ago |
| 27 | Test mobile inter-process communication and deep link attack surface — exported Android activities, services, receivers and content providers, intent redirection, PendingIntent hijacking, App Links… | trilwu/ | 157 | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 28 | 28.Mobile Audit Audit iOS and Android mobile applications against OWASP MASVS / MASTG — insecure storage, weak crypto, certificate pinning, deeplinks, IPC, jailbreak/root detection, reverse-engineering resistance. | briiirussell/ | 413 | — | ~2.6k | Automated safety check: Warn | MIT | 4 mo ago |
| 29 | 29.Re Frida Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~2.8k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 30 | Android 加密体系审计(crypto audit):AndroidKeyStore 密钥体系分析(别名/算法/用途/硬件背书)、 Cipher/KeyInfo 审计、加密调用点 hook(Frida 拦截密钥别名与用途)。 | dslsdzc/ | 135 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 31 | 31.Re Arm ARM 架构逆向(非 Android):Cortex-M/A 向量表、Thumb/ARM 切换、AAPCS 调用约定、位置相关代码重定位、MMIO 外设寄存器交叉。 | dslsdzc/ | 135 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 32 | Android 加固脱壳专项:乐固/360/梆梆/爱加密、DEX 恢复. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 135 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 33 | 移动应用安全深度测试专业技能(v3.0):移动端深层攻击链(App→API→后端→云)、Android/iOS深度逆向与动态调试、Frida全面对抗与加固脱壳、iOS越狱检测绕过/ObjC Runtime/LLDB调试/证书固定绕过、跨平台框架漏洞(Flutter/React… | langbyyi/ | 129 | — | ~12k | Automated safety check: Pass | Apache-2.0 | 3 days ago |