Skip to content

Welcome to Sterra Security Co., Ltd. 👋

Welcome to the official GitHub organization of Sterra Security Co., Ltd.

We are a security vendor based in Japan, focused on application security, mobile security, security research, and practical tooling for security engineers.

Our GitHub organization is where we publish open-source tools, research prototypes, and utilities built from real-world security assessment work.

Sterra Security logo

🚀 Featured Projects

Memory search and patch tools for mobile applications.

apk-medit and ipa-medit help streamline dynamic analysis of Android and iOS applications by allowing researchers to search, inspect, and modify memory values during security testing.

These tools are designed for mobile application security research, reverse engineering workflows, and controlled testing environments.

🛠 Our Values

Practicality

We build tools that support real assessment workflows, not just proof-of-concept demonstrations.

Reproducibility

We do not just identify risks. We aim to provide the tools and methods needed to understand, verify, and reproduce them.

Transparency

We believe security knowledge becomes more useful when it can be reviewed, improved, and shared with the community.

🔬 Focus Areas

Sterra Security works on security tooling and research across areas such as:

  • Vulnerability assessment
  • Mobile application security
  • Web application security
  • Reverse engineering
  • Security automation
  • Developer-oriented security workflows

🤝 Contribution & Collaboration

We welcome issues, feature requests, discussions, and pull requests.

If you find a bug, have an idea for improvement, or want to contribute to one of our tools, please open an issue or submit a pull request in the relevant repository.

Before contributing, please review each repository’s README, license, and contribution guidelines where available.

⚠️ Responsible Use

Our tools are intended for legitimate security research, authorized testing, education, and defensive assessment.

Do not use these tools against systems, applications, or devices without proper authorization.

🔗 Links

📄 License

Unless otherwise stated, our open-source projects are released under the MIT License.

Popular repositories Loading

  1. apk-medit apk-medit Public

    memory search and patch tool on debuggable apk without root & ndk

    Go 421 66

  2. ipa-medit ipa-medit Public

    Memory modification tool for re-signed ipa supports iOS apps running on iPhone and Apple Silicon Mac without jailbreaking.

    Go 207 24

  3. apkutil apkutil Public

    a useful utility for android app security testing

    Python 96 17

  4. anti-disassembly-poc anti-disassembly-poc Public

    A collection of Proof-of-Concept implementations of various anti-disassembly techniques for ARM32 and ARM64 architectures.

    Makefile 78 5

  5. dummy dummy Public

    Generator of static files(csv, jpeg, png, pdf) for testing file upload. It can generate csv and png files of any number of bytes!

    Python 67 2

  6. ipautil ipautil Public

    a useful utility for ios app security testing

    Python 42 9

Repositories

Showing 9 of 9 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…