Write and recover bootable USB media
About this app
Rufid turns an Android phone into a practical USB boot-media tool.
It writes local ISO/IMG files to attached USB mass-storage devices, streams direct image URLs, creates a small FreeDOS drive, verifies written media, inspects boot records, runs read benchmarks, backs up a USB device to an Android document, extracts ZIP files, and recovers used boot media back into a normal FAT32 or exFAT drive.
The main workflow is phone-first: select a USB device, inspect it, choose an ISO/IMG, URL, or FreeDOS source, review the plan, write, and verify. Direct URL mode includes quick access to official source pages for Windows, Ubuntu, Fedora, Debian, Linux Mint, Arch Linux, and openSUSE; it does not bundle those operating system images.
Destructive USB actions are guarded by an explicit plan screen and confirmation. Rufid shows the selected USB device, size, and available hardware identifiers before write or recovery operations. It is designed for external USB mass-storage devices, not internal Android storage.
Rufid has no ad SDK, analytics SDK, billing SDK, Firebase dependency, cloud account system, or remote crash-reporting SDK. Error reports stay local on the device.
The F-Droid build path packages the boot payload set from auditable inputs. FreeDOS is assembled from source-built FreeDOS kernel, FreeCOM, SYS, and boot sector artifacts. UEFI:NTFS, wimlib, and 7-Zip-JBinding are staged from pinned upstream source paths, and the 7-Zip-JBinding Android build excludes RAR/unRAR native sources. No payload is extracted from an opaque third-party APK.
USB recovery is a metadata quick-wipe plus FAT32 or exFAT format flow. It is useful for returning a boot USB to normal storage use, but it is not secure erase and not a full-disk wipe.
Licensed under GPL-3.0-or-later, by Rufid contributors.
What's New in v0.1.2
Imported from the F-Droid repository index.
- USB write compatibility hotfix:
- - Treat unsupported final SCSI SYNCHRONIZE CACHE responses as non-fatal after image data has been written
- - Covers Illegal Request responses including invalid command, invalid command field, and invalid parameter-list reports
- - Keeps actual USB data WRITE failures, capacity errors, medium errors, and hardware errors fatal
- - Adds clearer local error reports that distinguish data WRITE failures from final cache-sync failures
Version history
Jul 2, 2026 · 11.4 MB · Android API 24–35 · code 3
Imported from the F-Droid repository index.
- USB write compatibility hotfix:
- - Treat unsupported final SCSI SYNCHRONIZE CACHE responses as non-fatal after image data has been written
- - Covers Illegal Request responses including invalid command, invalid command field, and invalid parameter-list reports
- - Keeps actual USB data WRITE failures, capacity errors, medium errors, and hardware errors fatal
- - Adds clearer local error reports that distinguish data WRITE failures from final cache-sync failures
SHA-256 00e26341711b195babd0449ea42813729d45475472b7a68ca224093f087d7705
Will it run on your device?
92%
- Runs on a broad range of modern Android versions.
- Multiple CPU architectures are covered.
- Aligned with the latest Android target SDK expectations.
Installation Guide
Open Settings on your Android device
Go to Security → Unknown sources (or Install unknown apps)
Enable "Allow from this source" for your browser or file manager
Open the downloaded APK file from your Downloads folder
Tap "Install" and wait for installation to complete
Launch the app from your home screen
Make sure to re-enable Unknown Sources restrictions after installation for security.
How to install this safely
How to verify the file you downloaded
Before you install anything, confirm the file is the one described here. On a computer, run shasum -a 256 your-download.apk (macOS or Linux) or certutil -hashfile your-download.apk SHA256 (Windows), then compare the output character-for-character with the SHA-256 on this page. If a single character differs, the file is not the build we recorded — delete it.
What the signing certificate proves
Every Android app is signed with a private key that only its developer holds. The fingerprint on this page is a hash of the matching public certificate, and it proves continuity rather than identity: it tells you a build came from whoever signed the earlier ones. Android enforces this at install time — if a package claiming to be io.github.rufid is signed with a different key, the system will refuse to install it over your existing copy. A fingerprint that changes between releases is worth pausing on, because a repackaged app that has been modified by someone else cannot keep the original signature.
How to roll back to an earlier version
No earlier build is on record for Rufid, so there is nothing to roll back to yet. When a second version is published, this section will explain how to move between them safely.
Why we list sources instead of hosting everything
The official store channel is almost always the right choice: it updates automatically and carries the publisher's own distribution guarantees. A direct APK is useful when a device has no store access, when a rollout has not reached your region, or when you need a specific version — and only when the publisher has authorized that copy. APKBrowse does not list pirated, cracked, or unauthorized rebuilds of Rufid, and a listing is removed when the evidence for it stops holding up.
Get Rufid
Every source we list for io.github.rufid is legality-reviewed. Pirated or cracked builds are never offered.
Other sources
F-Droid listing
officialF-Droid builds this app from source and signs it. This is its official listing, with older builds and full release notes.
Source code
verified publisherThe upstream repository this build is compiled from.
We check legality and signature continuity, but device behaviour still varies. Install at your own discretion.
App Information
Security Verification
We record provenance; we do not run malware scans. Verify the hash yourself before installing.
SHA-256 Hash
00e26341711b195babd0449ea42813729d45475472b7a68ca224093f087d7705
Signing certificate
cea9d7c066bafd59e196c6ccd06bd8cc70418a7463bd51de2514887e4815af5e
Permissions Required
What each permission lets Rufid do. A highlighted one is worth a second look — not necessarily wrong, just worth asking whether this app needs it.
Previous Versions
No earlier build is on record — this is the first release we have listed.
The signing certificate fingerprint for this release is on record, so a build that does not match it did not come from this publisher.
More Productivity apps
More from F-DroidReport a problem with this listing
A listing is only as good as its corrections. If a source is broken, a signature looks wrong, or this app should not be here, tell the moderation team.