apk2gold
objection
apk2gold | objection | |
---|---|---|
1 | 17 | |
654 | 7,012 | |
- | 1.2% | |
0.0 | 1.6 | |
2 months ago | 7 days ago | |
Shell | Python | |
- | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
apk2gold
-
Awesome CTF : Top Learning Resource Labs
Apk2Gold - Yet another Android decompiler.
objection
- apk.sh, make reverse engineering Android apps easier!
- Prerequisites for reverse engineering?
-
Mitmproxy 8
This is true, by default Android apps do not trust user-installed certificate authorities. IMO the easiest solution if you're doing security testing on a dedicated device is MagiskTrustUserCerts[1]. If you're not testing on a dedicated device or you don't want to root the device, I'd recommend using the objection[2] tool which has a guided mode for patching an apk, and you can modify the manifest to add your CA or to trust all user-installed CAs.
[1]: https://github.com/NVISOsecurity/MagiskTrustUserCerts
[2]: https://github.com/sensepost/objection/wiki/Patching-Android...
-
Is this networking knowledge enough ?
Then use runtime tools like Runtime Mobile Security, Grapefruit, and Objection to see stuff in action and practice Frida along with as these tools usually support loading custom Frida scripts.
-
Okhttp3 SSL pinning bypass
you might have more luck in some whitehat hacking groups etc. ive used https://github.com/sensepost/objection to try out my own app.
-
Beststar all songs + unlimited play v1.1
In some form yes. Internally this is just a Frida gadget script which you can see here does support IOS.
What are some alternatives?
backdoor-apk - backdoor-apk is a shell script that simplifies the process of adding a backdoor to any Android APK file. Users of this shell script should have working knowledge of Linux, Bash, Metasploit, Apktool, the Android SDK, smali, etc. This shell script is provided as-is without warranty of any kind and is intended for educational purposes only.
frida - Clone this repo to build Frida
jadx - Dex to Java decompiler
drozer - The Leading Security Assessment Framework for Android.
enjarify
Free-RASP-Community - SDK providing app protection and threat monitoring for mobile devices, available for Flutter, Cordova, Android and iOS.
Apktool - A tool for reverse engineering Android apk files
awesome-frida - Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)
android-classyshark - Android and Java bytecode viewer
dexterity - Dex manipulation library
pwndbg - Exploit Development and Reverse Engineering with GDB Made Easy