GithubHelp home page GithubHelp logo

cyber-buddy / apkhunt Goto Github PK

View Code? Open in Web Editor NEW
725.0 725.0 73.0 19.84 MB

APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security testers, it can be used by anyone to identify and address potential security vulnerabilities in their code.

License: GNU General Public License v3.0

Go 100.00%
android-security apkhunt code-review information-security infosec masvs mobile-sec-android mstg owasp owasp-mobile-top penetration-testing pentest pentesting pentesting-tools sast secure-coding security security-tools static-analysis static-analyzer

apkhunt's People

Contributors

0xmagn3t0 avatar chawdamrunal avatar cyber-buddy avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

apkhunt's Issues

[Bug] Jadx can't find the APK

Hi,

Trying to run this on kali. Installed dex2jar and jadx through APT. I reckon that might be what's causing this.

Due to this, no other checks are completed.

image

set the path of tools

Is it possible to provide a command line parameter, or a configuration file to set the path of jadx and dex2jar, because system packages are usually relatively old, and some distributions cannot be installed directly

dex2jar has not been observed

Hi Team,

I am facing an issue with dex2jar while running APKHunt. I am using a Docker Ubuntu container and have installed all the required packages. However, when I try to run it, I encounter an error stating that dex2jar has not been observed. Could you please assist me with this? I have attached the console screenshot of it.

Screenshot 2024-03-30 at 1 23 06 PM

Below are the export paths,

export JAVA_HOME=/usr/lib/jvm/java-11-openjdk-arm64
export PATH=$PATH:$JAVA_HOME/bin
export PATH=$PATH:/opt/jadx/bin

export PATH=$PATH:/opt/dex2jar 
export PATH=$PATH:/opt/dex2jar/dex2jar-2.0 //tried with both path 

Thank you.

Seeing the results in a txt file

Maybe i am not understanding the help instructions but I assumed that adding the option "-l" will provide the results in a .txt file. however no such file appears in my system. is there any way to store the results in the analysis and not just have them be printed not he command terminal?

output a Security issues

hello, great tool
Can i can output only references and vulnerable codes ?
Is there any option to export as .html with clean view on the security vulnerabilities

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.