ANDROID SECURITY TOOLKIT

HEXROOT FUZZ

Web reconnaissance, fuzzing and security testing directly from your Android device.

HexRootFuzz provides a graphical environment for running powerful security tools without manually executing terminal commands.

ANDROID 8+ KOTLIN JETPACK COMPOSE ROOT OPTIONAL
hexrootfuzz@android:~

$ hexrootfuzz --status

[ OK ] Environment initialized

$ tools --list

[01] FFUF

[02] GOBUSTER

[03] HYDRA

$ scan --ready

SYSTEM READY_

03 SECURITY TOOLS
08+ ANDROID VERSION
100% NATIVE ANDROID
MIT LICENSE

Security tools. One interface.

A compact Android environment for reconnaissance, fuzzing and authorized security assessments.

01
🔍

Web Fuzzing

Discover directories, endpoints, files and hidden resources using FFUF.

02
📂

Enumeration

Directory, DNS and virtual host enumeration powered by Gobuster.

03
🔑

Credential Testing

Hydra integration for authorized authentication testing against compatible services.

04
📝

Wordlist Generator

Build custom dictionaries for directories, endpoints and security testing.

05
📊

Live Logs

Monitor tool execution and command output directly from the application.

06
📤

Export Results

Copy and export scan results for further analysis and documentation.

Built around proven tools.

01 / FUZZING

FFUF

Fast web fuzzer for discovering hidden resources, API endpoints and files.

Directory fuzzing Endpoint discovery Response filtering Status code filtering
02 / ENUMERATION

GOBUSTER

Enumeration utility for directories, DNS records and virtual hosts.

Directory enumeration DNS enumeration Virtual host discovery
03 / AUTH TESTING

HYDRA

Network login cracker used for authorized credential testing.

Credential testing Authentication auditing Compatible services

Security testing in your pocket.

A native Android interface designed around fast, practical security workflows.

HexRootFuzz Android interface
HexRootFuzz security tools
HexRootFuzz scan interface

From target to results.

01

Configure

Select the security tool, target and wordlist.

02

Execute

Launch the selected tool from the Android interface.

03

Monitor

Follow execution through real-time logs.

04

Analyze

Copy or export the resulting findings.

Run your workflow.

HexRootFuzz brings command-line security tooling into a graphical Android environment.

FFUF READY
ffuf \
-w wordlists/directories.txt \
-u https://target.com/FUZZ \
-mc 200

Requirements

OS Android 8.0+
ENVIRONMENT Termux
FFUF Required
GOBUSTER Required
HYDRA Required
ROOT Optional

What's next?

SCAN HISTORY JSON EXPORT CSV EXPORT HTML REPORTS MULTI-THREAD CUSTOM HEADERS COOKIE SUPPORT PROXY SUPPORT RECURSIVE FUZZING

Authorized security testing only.

HexRootFuzz is intended for authorized security testing, research and educational purposes. Users are responsible for ensuring they have explicit permission before testing any target.

Your Android. Your toolkit.

Explore, test and analyze from a single interface.