mvt-project/mvt

MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

View on GitHub ↗Jump to charts ↓Open shareable report

Summary Information

Updated 47 minutes ago
Added to GitGenius on September 4th, 2026
Created on July 16th, 2021
Open Issues & Pull Requests: 45 (+0)
GitHub issues: Enabled
Number of forks: 1,293
Total Stargazers: 13,038 (+2)
Total Subscribers: 283 (+0)

Repository Insights (GitGenius)

Median issue/PR response: 4.4 days
Mean response time: 106.6 days
90th percentile: 352.2 days
Tracked items: 125

How this project is maintained

Around half of the issues opened in the past year never receive a reply. Work labelled "android" is answered fastest, typically in about 8 days, while "enhancement" waits about 6 months. Only 13% of issues opened in the past year have been closed. Three people close 84% of everything that gets resolved.

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Open issues: 18
New in 7 days: 2
Closed in 7 days: 2
Avg open age: 454 days
Stale 30+ days: 11
Stale 90+ days: 7

Recent activity

Opened in 7 days: 2
Closed in 7 days: 2
Comments in 7 days: 0
Events in 7 days: 2

Top labels

  • bug (21)
  • android (17)
  • enhancement (13)
  • ios (11)
  • question (6)
  • documentation (1)
  • good first issue (1)
  • help wanted (1)

Detailed Description

MVT is a forensic analysis tool that helps investigators identify signs of compromise on Android and iOS mobile devices.

The tool addresses the challenge of detecting potential spyware infections and targeted attacks on mobile platforms by automating the collection and analysis of forensic traces. It works by extracting artifacts from device acquisitions and comparing them against indicators of compromise, which are signatures of known spyware campaigns. The project was developed by Amnesty International's Security Lab in response to the Pegasus Project investigations and provides a command-line interface for conducting systematic forensic examinations.

MVT is designed for technologists and digital forensics investigators rather than end users, requiring command-line proficiency and understanding of forensic methodology. It suits organizations, civil society groups, and security researchers who need to assess whether devices have been targeted by known spyware. The tool supports both Android and iOS through separate commands and can work with public indicators of compromise published by Amnesty International and other research groups. However, the documentation emphasizes that public indicators alone are insufficient to conclusively determine device compromise, and that comprehensive assessment requires access to non-public threat intelligence available through Amnesty International's Security Lab or partner organizations.

The project maintains active development with recent significant changes introduced in a major version update that altered output formats and broke backward compatibility with scripts relying on previous output structures. Development appears focused on core functionality refinement and integration with the broader forensic research ecosystem, as evidenced by the project's connection to published forensic methodologies and ongoing maintenance alongside community contributions.