Skip to content
#

masvs

Here are 19 public repositories matching this topic...

Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

  • Updated Sep 9, 2026
  • JavaScript
APKHunt

APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security testers, it can be used by anyone to identify and address potential security vulnerabilities in their code.

  • Updated Jan 17, 2025
  • Go

Modern offline-first Application Security Intelligence Platform for Android, iOS, Flutter and React Native with attack-chain analysis, explainable findings, source exploration, AI-assisted investigation and professional reporting.

  • Updated Jul 21, 2026
  • Python
nutcracker

Nutcracker is a powerful, modular and extensible framework designed for mobile security analysis and offensive threat intelligence. Detects and bypasses anti-root/RASP protections, analyzes insecure manifest conf, extracts hardcoded secrets and launches OSINT recon — all in one tool. aligned with MASVS for comprehensive security compliance.

  • Updated Aug 24, 2026
  • Python

Assessors Studio operationalizes CycloneDX Attestations (CDXA): perform assessments, collect evidence, make claims, and issue machine-readable CycloneDX attestations, optionally legally binding for B2B and B2G use cases.

  • Updated Aug 16, 2026
  • TypeScript

NutBank is an intentionally vulnerable Android app designed for security research and mobile pentesting demos. Built to showcase nutcracker's RASP bypass capabilities. Features hardcoded secrets, insecure components, and real RASP protections (RootBeer, Frida detection, emulator detection) that nutcracker can detect and bypass.

  • Updated May 17, 2026
  • Kotlin

Mobile security toolkit for React Native: runtime root/jailbreak, debugger, hooking and integrity checks on Android and iOS, a static auditor with OWASP MASVS/CWE mappings and SARIF output, and AI-assisted review through your own model via MCP.

  • Updated Aug 19, 2026
  • TypeScript

Add this topic to your repo

To associate your repository with the masvs topic, visit your repo's landing page and select "manage topics."

Learn more