iSECPartners/ccs-testing-tool
Public repository.
Discovered public repositories for iSECPartners in the GitHub catalog.
Public repository.
Certificate extraction tool for Windows
You'll Never Take Me Alive!
Public repository.
Security profiling for blackbox Android
Bypass signature and permission checks for IPCs
Make any application debuggable
Bypass SSL certificate pinning for most applications
Public repository.
NSKeyed(Un)ArchiverDelegate implementation to encrypt state prior to preservation and decrypt it when restoring.
iSEC Partners' research publications
A brute-forcing delta robot
A BeanShell plugin for WebScarab to automate SAML auditing.
Public repository.
A very small ECC implementation for 8-bit microcontrollers
Public repository.
RTSP network protocol fuzzer
A log collector for Peach fuzzing in the cloud
You'll never take me alive.
Public repository.
Security profiling for blackbox iOS
A test framework for testing SSL/TLS client certificate validation.
A graphical web proxy written in Java. It is designed to be speedy, with the user interfaced centered around keyboard use. It should do what you want, and then get out of your way.
A multi-codec media fuzzing tool.
Sample SSL client code for correct endpoint validation.
Black box tool to bypass SSL verification on Android, even when pinning is used.
Tool for viewing Android package details, including permissions, services, activities, and more.
A tool for viewing Android application Manifests.
AWS EC2 and S3 Security Auditing Tool
Jython binding for Burp to facilitate realtime traffic analysis and modification using simple plugins.
Current development of SSLyze now takes place on a separate repository
Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS Apps