Santoku Linux: Mobile Forensics, Malware Analysis, and App Security Testing

Santoku Linux is a bootable Linux ISO which you can run as Live CD or install on a PC/VM. Santoku Linux is a Free and Open Source distribution and contains the best tools from around the web with a focus on Mobile Forensics, Mobile Malware and Mobile Security.

The Operating System

A bootable Linux environment designed to make life easier.

  • Pre-installed platform SDKs, drivers, and utilities
  • Pre-configured GUI frameworks, such as PyGTK to support GUI tools
  • GUI tools for easy deployment and control of mobile apps
  • Auto Detection and setup of new connected mobile devices

Mobile Forensics

Tools to forensically acquire and analyze data.

  • Firmware flashing tools for multiple manufacturers
  • Imaging tools for NAND, media cards, and RAM
  • Free versions of some commercial forensics tools
  • Useful scripts and utilities specifically designed for mobile forensics

Mobile Malware Analysis

Tools useful when examining mobile malware

  • Mobile device emulators
  • Utilities to simulate network services for dynamic analysis
  • Decompilation and disassembly tools
  • Access to malware databases

Mobile Security Testing

Supporting security assessment of mobile apps.

  • Decompilation and disassembly tools
  • Scripts to detect common issues in mobile applications
  • Scripts to automate decrypting binaries, deploying apps, enumerating app details, and more

Download