credittone/hooker

🔥🔥 hooker is a Frida-based reverse engineering toolkit for Android. It offers a user-friendly CLI, universal scripts, auto hook generation, memory roaming...

View on GitHub ↗Jump to charts ↓Open shareable report →

Summary Information

Updated 37 minutes ago
Added to GitGenius on September 12th, 2026
Created on March 29th, 2020
Open Issues & Pull Requests: 49 (+0)
GitHub issues: Enabled
Number of forks: 1,263
Total Stargazers: 5,304 (+0)
Total Subscribers: 95 (+0)

Repository Insights (GitGenius)

Median issue/PR response: 20.9 hours
Mean response time: 71.6 days
90th percentile: 128.1 days
Tracked items: 36

Most active contributors

Sign in to see contributor activity.

How this project is maintained

Around half of the issues opened in the past year never receive a reply. 89% of open issues come from outside the core team, so the backlog reflects real-world use rather than internal planning. Only 7% of issues opened in the past year have been closed. Three people close 83% of everything that gets resolved.

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Open issues: 27
New in 7 days: 0
Closed in 7 days: 0
Avg open age: 548 days
Stale 30+ days: 27
Stale 90+ days: 26

Recent activity

Opened in 7 days: 0
Closed in 7 days: 0
Comments in 7 days: 0
Events in 7 days: 0

Top labels

No label distribution available yet.

Most active issues this week

No issue events were indexed in the last 7 days.

Detailed Description

Hooker is a Frida-based reverse engineering toolkit for Android that provides a command-line interface for analyzing and instrumenting Android applications.

The toolkit addresses the need for accessible reverse engineering capabilities on Android by wrapping Frida's functionality with a user-friendly CLI and automating common tasks. It enables developers to hook into running applications, inspect their behavior, and modify their execution at runtime. The project includes universal scripts designed to work across multiple applications, automatic hook script generation to reduce manual work, memory scanning to detect activities and services, and built-in SSL/TLS certificate pinning bypass capabilities for both standard implementations and BoringSSL.

Hooker suits developers and security researchers who need to analyze Android applications without writing extensive Frida scripts from scratch. The toolkit is particularly valuable for those who want to quickly set up interception proxies, bypass certificate pinning across applications, or automate the instrumentation of common Android patterns. The embedded web server feature allows exposing application capabilities as HTTP interfaces, which facilitates automation and integration testing. This approach is most useful for educational purposes, authorized security research, and understanding how mobile applications function internally.

The project maintains active development with ongoing updates to its certificate pinning bypass mechanisms to handle evolving Android security implementations. The toolkit receives continuous maintenance to ensure compatibility with current Android versions and Frida releases. Development activity shows responsiveness to the needs of reverse engineering practitioners, with particular attention paid to keeping the JustTrustMe implementation current as Android's security landscape evolves.