Skip to content
#

owasp-vapt-mobile

Here is 1 public repository matching this topic...

An intentionally insecure Android app for practicing mobile VAPT. Demonstrates common Android vulnerabilities like insecure SharedPreferences, exported components, WebView JS bridges, client-side auth bypass, hardcoded secrets, and SSL pinning bypass using Frida.

  • Updated Dec 13, 2025

Improve this page

Add a description, image, and links to the owasp-vapt-mobile topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the owasp-vapt-mobile topic, visit your repo's landing page and select "manage topics."

Learn more