Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Table of Contents
Loading contents...
README.md
Mobile Security Framework (MobSF)
Mobile Security Framework (MobSF) is a security research platform for mobile applications in Android, iOS and Windows Mobile. MobSF can be used for a variety of use cases such as mobile application security, penetration testing, malware analysis, and privacy analysis. The Static Analyzer supports popular mobile app binaries like APK, IPA, APPX and source code. Meanwhile, the Dynamic Analyzer supports both Android and iOS applications and offers a platform for interactive instrumented testing, runtime data and network traffic analysis. MobSF seamlessly integrates with your DevSecOps or CI/CD pipeline, facilitated by REST APIs and CLI tools, enhancing your security workflow with ease.
Made with in India
MobSF is also bundled with Android Tamer, BlackArch and Pentoo.
Support MobSF
Has MobSF made a difference for you? Show your support and help us innovate with a donation. It’s easy to build open source, maintaining one is a different story.
Long live open source!
Documentation
Quick setup with docker
docker pull opensecurity/mobile-security-framework-mobsf:latest
docker run -it --rm -p 8000:8000 opensecurity/mobile-security-framework-mobsf:latest
# Default username and password: mobsf/mobsf
- Try MobSF Static Analyzer Online: mobsf.live
- MobSF in CI/CD: mobsfscan
- Conference Presentations: Slides & Videos
- MobSF Online Course: OpSecX MAS
- What’s New: See Changelog
Collaborators
Ajin Abraham | Magaofei
| Matan Dobrushin
| Vincent Nadal
e-Learning Courses & Certifications
Automated Mobile Application Security Assessment with MobSF -MAS
Android Security Tools Expert -ATX
MobSF Support
- Free Support: Free limited support, questions, help and discussions, join our Slack channel
- Enterprise Support: Priority feature requests, live support & onsite training, see
Contribution, Feature Requests & Bugs
- Read CONTRIBUTING.md before opening bugs, feature requests and pull request.
- For Project updates and announcements, follow @ajinabraham or @OpenSecurity_IN.
- Github Issues are only for tracking bugs and feature requests. Do not post support or help queries there. We have a slack channel for that.
Static Analysis - Android
Static Analysis - iOS
Dynamic Analysis - Android APK
Web API Viewer
... Content truncated. Click "See More" to view the full README.
Tool Information
Author
MobSF
Project Added On
May 25, 2025
License
Open Source
Tags
Related Tools
corellium-ios-connect
This script automates the installation and configuration of usbfluxd, usbmuxd, and other necessary tools to connect iOS device of Corellium on a Linux machine, specifically addressing and fixing the usbfluxd installation issue on Kali Linux.
StableMobSecco
Cloning apk for bypassing code tampering detection, Google Safety Net and scanning vulnerable plugins
Stablebytecode-viewer
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Stable