Mobile Apps Security Testing
@MobileSecurityTesting
2.01K
subscribers
9
files
428
links
Download Telegram
Join
Mobile Apps Security Testing
2.01K subscribers
Mobile Apps Security Testing
Channel created
Mobile Apps Security Testing
https://hackerone.com/reports/43988
HackerOne
X / xAI disclosed on HackerOne: twitter android app Fragment Injection
com.twitter.android.WidgetSettingsActivity extend PreferenceActivity and export.
By entering the appropriate extra intent can call any of its internal fragment.
So do not export...
Mobile Apps Security Testing
https://hackerone.com/reports/189793
HackerOne
Quora disclosed on HackerOne: [Android] XSS via start ContentActivity
**Summary:**
XSS via start ContentActivity using 'html' parameter.
**Description (Include Impact):**
Arbitrary applications on Android can run the exported activities ContentActivity,...
Mobile Apps Security Testing
https://avicoder.me/2016/01/31/twitter-bug-bounty/
Whiskey Tango Foxtrot
Twitter Bug Bounty
urandom talks
Mobile Apps Security Testing
https://manifestsecurity.com/category/android/
Mobile Apps Security Testing
https://github.com/vjex/WriteUp?files=1
GitHub
WriteUp/ at master · avicoder/WriteUp
Collection of Some Good research Documentation. Contribute to avicoder/WriteUp development by creating an account on GitHub.
Mobile Apps Security Testing
https://manifestsecurity.com/android-application-security/
Mobile Apps Security Testing
https://codifiedsecurity.com/2017/04/03/owasp-mobile-top-10-2016-m1/
Mobile Apps Security Testing
https://github.com/b66l/OASAM
GitHub
GitHub - b66l/OASAM: OASAM is the acronym of Open Android Security Assessment Methodology and its purpose is to become a reference…
OASAM is the acronym of Open Android Security Assessment Methodology and its purpose is to become a reference framework on Android application vulnerability assessments. - b66l/OASAM
Mobile Apps Security Testing
http://blog.palominolabs.com/2013/05/13/android-security/index.html
Palomino Labs Blog
Intent Spoofing on Android - Palomino Labs Blog
Most competent web developers have learned a thing or two about how to handle cross-site scripting and cross-site request forgery, the two main attack vectors for compromising the front end of a web application. These attacks take advantage of the … Read…
Mobile Apps Security Testing
https://sites.google.com/site/mobilesecuritylabware/