Mobile Apps Security Testing
@MobileSecurityTesting
2.01K
subscribers
9
files
428
links
Download Telegram
Join
Mobile Apps Security Testing
2.01K subscribers
Mobile Apps Security Testing
http://grazfather.github.io/ctf/re/2016/02/14/Sharif-CTF-RE100-Android-App-Writeup.html
grazfather.github.io
Sharif CTF 2016 - RE100 ‘Android App’ Writeup
This one I didn’t actually solve in time, because I spent too much time trying to a) Use frida and b) RE the args to the two import functions.
Mobile Apps Security Testing
https://github.com/mseclab/AHE17
GitHub
GitHub - mseclab/AHE17: Android Hacking Event 2017 Write-up
Android Hacking Event 2017 Write-up. Contribute to mseclab/AHE17 development by creating an account on GitHub.
Mobile Apps Security Testing
https://cedricvb.be/post/seccon-2015-reverse-engineering-android-apk-2-400-writeup/
Mobile Apps Security Testing
https://blogs.uni-paderborn.de/sse/tools/codeinspect/
Secure Software Engineering
CodeInspect – Binary Android Analysis
We are very happy to announce a new tool in our toolchain: CodeInspect - A Jimple-based Reverse-Engineering framework for Android and Java applications.
Developing an Android application in an IDE is very convenient since features like code completion…
Mobile Apps Security Testing
https://learn.techbeacon.com/units/how-get-started-mobile-penetration-testing-ios
TechBeacon
How to get started with mobile penetration testing for iOS
by Johanna CurieliOS applications enjoy better out-of-the-box security than their Android counterparts because of Apple's more tightly controlled environment. However, that advantage doesn't mean
Mobile Apps Security Testing
https://techbeacon.com/how-hack-app-8-best-practices-pen-testing-mobile-apps
TechBeacon
How to hack an app: 8 best practices for pen testing mobile apps
Penetration testing is a key step in avoiding mobile app hacks. Here are best practices to ensure apps have been properly tested against security...
Mobile Apps Security Testing
Spinner: Semi-Automatic Detection of Pinning without Hostname Verification
http://www.cs.bham.ac.uk/~garciaf/publications/spinner.pdf
Mobile Apps Security Testing
https://github.com/ansjdnakjdnajkd/iOS
GitHub
GitHub - ansjdnakjdnajkd/iOS: Most usable tools for iOS penetration testing
Most usable tools for iOS penetration testing. Contribute to ansjdnakjdnajkd/iOS development by creating an account on GitHub.
Mobile Apps Security Testing
https://github.com/anestisb/vdexExtractor
GitHub
GitHub - anestisb/vdexExtractor: Tool to decompile & extract Android Dex bytecode from Vdex files
Tool to decompile & extract Android Dex bytecode from Vdex files - anestisb/vdexExtractor
Mobile Apps Security Testing
https://github.com/zhkl0228/AndroidAttacher
GitHub
zhkl0228/AndroidAttacher
IDA debugging plugin for android armv7 so. Contribute to zhkl0228/AndroidAttacher development by creating an account on GitHub.
Mobile Apps Security Testing
https://github.com/zhengmin1989/GreatiOSJailbreakMaterial
GitHub
GitHub - zhengmin1989/GreatiOSJailbreakMaterial: Great iOS Jailbreak Material! - I read hundreds of papers and PPTs. Only list…
Great iOS Jailbreak Material! - I read hundreds of papers and PPTs. Only list the most useful materials here! - GitHub - zhengmin1989/GreatiOSJailbreakMaterial: Great iOS Jailbreak Material! - I ...
Mobile Apps Security Testing
https://android.jlelse.eu/how-to-debug-http-s-traffic-for-android-apps-with-burp-proxy-73f906821283
Medium
How to Debug HTTP(S) Traffic for Android Apps with Burp Proxy
Everything seems to match specifications but the app does not work? Discover Burp Proxy — one of the best ways of debugging HTTP(S) traffic! Neither source code access nor development skills are…
Mobile Apps Security Testing
http://blog.attify.com/2016/01/23/10-secure-coding-guidelines-for-mobile-apps/
Mobile Apps Security Testing
https://github.com/tanprathan/sievePWN
GitHub
GitHub - tanprathan/sievePWN: An android application which exploits sieve through android components.
An android application which exploits sieve through android components. - tanprathan/sievePWN
Mobile Apps Security Testing
https://www.youtube.com/watch?v=Cna3276byrQ
YouTube
Mobile Application Security Threats through the Eyes of the Attacker
As an active security researcher with immense professional expertise in application security, Jason Haddix joins us to explain the common attack vectors that...
Mobile Apps Security Testing
https://www.youtube.com/watch?v=OLgmPxTHLuY
YouTube
Advanced Android Bug Bounty skills - Ben Actis, Bugcrowd's LevelUp 2017
This talk will dive into commonly overlooked mobile vulnerability areas that will benefit bug bounty participants. The Android Inter Process Communication (IPC) model will be explained, and how IPC implementation flaws could allow non rooted devices to gain…
Mobile Apps Security Testing
https://www.owasp.org/images/9/95/ASDC12-Smart_Bombs_Mobile_Vulnerability_and_Exploitation.pdf
Mobile Apps Security Testing
https://blog.nviso.be/2017/12/22/intercepting-https-traffic-from-apps-on-android-7-using-magisk-burp/
NVISO Labs
Intercepting HTTPS Traffic from Apps on Android 7+ using Magisk & Burp
Intercepting HTTPS traffic is a necessity with any mobile security assessment. By adding a custom CA to Android, this can easily be done. As of Android Nougat, however, apps don’t trust clien…
Mobile Apps Security Testing
https://c43s4rs.blogspot.it/2017/12/debugging-una-app-de-android-con-ida.html
Blogspot
Debugging a una App de Android con IDA PRO - Parte 1
Hace tiempo que tengo guardado este artículo para publicarlo en un momento especial, hoy lo hago como punto de partida de un grupo de amigos...
Mobile Apps Security Testing
https://www.hex-rays.com/products/ida/support/tutorials/debugging_dalvik.pdf