Android SDK - A software development kit that enables developers to create applications for the Android platform. If you're a new Android developer, we recommend you download the ADT Bundle to quickly start developing apps. The Android SDK includes sample projects with source code. Download here
Burp Suite - Burp Suite is an integrated platform for performing security testing of web applications.Burp gives you full control, letting you combine advanced manual techniques with state-of-the-art automation, to make your work faster, more effective, and more fun. Download here
Androguard - Create your own static analysis tool,; Analysis a bunch of android apps,; Analysis .Open source database of android malware. Download here
ApkInspector - The goal of this project is to aide analysts and reverse engineers to visualize compiled Android packages and their corresponding DEX code. APKInspector provides both analysis functions and graphic features for the users to gain deep insight into the malicious apps. Download here
DroidBox -
Its developed to offer dynamic analysis of Android applications. The
following information is shown in the results, generated when analysis
is ended:
• Hashes for the analyzed package
• Incoming/outgoing network data
• File read and write operations
• Started services and loaded classes through DexClassLoader
• Information leaks via the network, file and SMS
• Circumvented permissions
• Cryptography operations performed using Android API
• Listing broadcast receivers
• Sent SMS and phone calls
Additionally,
two images are generated visualizing the behavior of the package. One
showing the temporal order of the operations and the other one being a
treemap that can be used to check similarity between analyzed packages. Download here
Android Framework for Exploitation - Smartphone Pentest Framework: Rather this tool allows you to assess the security of the smartphones in your environment in the manner you’ve come to expect with modern penetration testing tools. Download here
Android Network Toolkit (ANTI) - This app is capable of mapping your network, scanning for vulnerable devices or configuration issues. It is for use by the amateur security enthusiast home user to the professional penetration tester, ANTI provides many other useful features such as:easy connection to open ports, visual sniffing (URLs & Cookies) and - establishing
MiTM attacks (using predefined and user-defined filters), Server Side / Client Side Exploits, Password cracker to determine password’s safety level, Replace Image as
visual in demos and Denial of Service attacks. All this is packed into a very user-friendly and intuitive Android app (and soon to be released iOS app). Download here