Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pentesting framework capable of performing static, dynamic and malware analysis, as well as web API testing.
Star Wars: Knights of the Old Republic (KotOR) is a roleplaying game made originally for the Microsoft Xbox and later released for the PC and Mac OS X, also available on iPhone, iPad and Android devices. The game was developed by BioWare and published by LucasArts for Xbox on July 15, 2003, for PCs running Microsoft Windows on November 19, 2003, and later for Mac OS X on September 7, 2004. Rococopunk is a whimsical aesthetic derivative of cyberpunk that thrusts punk attitude into the Rococo period, also known as the late Baroque period, of the 18th century. 56 Although it is a fairly recent derivative, 56 it is a style that is visually similar to the New Romantic movement of the 1980s (particularly to such groups as Adam.
MobSF is an open source and intelligent tool which you can use to perform both static and dynamic analyses on Android/iOS/Windows platforms. It support both binaries (APK, IPA & APPX ) and zipped source code. It also has specific Web API fuzzing capabilities powered by specific web api security scanner – CapFuzz. So, if you are a developer, pentester or security analyst you can identify vulnerabilities in mobile apps at all stages of development.
Python 3.6+
JDK 1.7
or aboveNote (Static Analysis):
Java 1.7+
(make it the default one).In case you don’t want to setup Static analysis, use automated prebuilt docker image. Run the following:
MobSF comes bundled with BlackArch Linux. Installation is tested on the following platforms:
Windows
(7, 8, 8.1, 10), Kali Linux
(2016.2), Ubuntu
(14.04, 16.04) , OSX
(Mavericks, Yosemite, El Capitan), OS
(Sierra, High Sierra)Clone it from the github repo:
Then navigate to the MobSF nad run (Linux/Mac):
On Windows run:
MobSF Dynamic Analysis currently supports Android:
First you need to migrate your db or you’ll encounter some errors:
Run the following to migrate your db:
This will remove all previoisly saved scan results. If migration didn’t work, run the following and try commands above again:
Then install requirements:
To start it, just run:
In case you want to run it on a specific port, try:
Start server:
Then run the following:
Example:
'We want to make the best games in the world.'
'Our team is our greatest asset. We are always on the lookout for new solutions that can enhance our teamwork.'
'We create games we would like to play ourselves: complex, nonlinear and focused on audiences appreciating deep storylines and genuine emotions.'