Mobexler
Linux Lite-based VM for combined Android and iOS application penetration testing
Mobexler has no official, structured tool listing we can auto-sync (unlike Kali, BlackArch, REMnux, and Tails). The tools below are maintained by hand and may be incomplete or outdated — check the official docs for the current tool set.
Last verified September 5, 2026
Mobexler is a single-purpose mobile application pentest VM, not a general-purpose distro — it bundles tools like Frida, MobSF, objection, jadx, and Burp Suite specifically for static and dynamic analysis of Android and iOS apps in one place.
Use it only against applications/systems you own or are explicitly authorized to test — see the disclaimer.
Notable bundled toolsmanually maintained
burpsuite
Platform for security testing of web applications
Frida
Trace the execution of a process to analyze its behavior.
jadx
Dex to Java decompiler
mobsf
An intelligent, all-in-one open source mobile application (Android/iOS) automated pen-testing framework capable of perfo
objection
Instrumented Mobile Pentest Framework.
Getting started
Mobexler is distributed as a single downloadable OVA (not a bootable ISO) — import it into VirtualBox/VMware and it's ready with its mobile-pentest toolset preinstalled, covering both Android and iOS application testing from one VM. There's no public source repository; setup and updates are documented on the official site linked above.