Mobile Penetration Testing
Objective Course is designed to give hands on exposure to tools & technologies used for mobile penetration testing. Course all includes insight into mobile security testing and reverse engineering. Understanding mobile platforms, security architecture of mobile OS, detailed analysis of APK file, reverse engineering and APK analysis. Course also provides understanding of traffic analysis of android platform, static & dynamic analysis of APK files, permission analysis & escalation, use of mobile RATs, counter strategy for mobile malwares & APTs. Course aims to train the participants with concepts and practical to carry out mobile penetration testing. Course includes intermediate to advance concepts, tools & technologies used in mobile security assessment.
- Understanding Mobile Platform
-
- OS Architecture for Mobile platforms
- Security & Access control in mobile platforms
- Design & Architecture of Mobile Applications
- Android Studio & Android Debug Bridge (ADB)
-
- Android Emulator & Device Setup
- Android architecture & Rooting
- Android wireless access
- Proxy for Android & CA installation
- Android vulnerability application setup
- Android Application Review. Reverse Engineering and App Analysis
-
- APK file structure
- Reverse Engineering & De-compilation of apk file
- Reversing and Re-compiling With APKTool
- APK teardown using Dexplorer
- Static vs Dynamic Analysis of Mobile Apps (QARK)
- Tool based Dynamic Analysis of mobile apps (Inspeckage &Xposed)
- Traffic Analysis
- Compromising Android platforms
-
- Using Mobile RATs, AndroRat , zANTI & dSploit
- Hackode (The Hacker’s Toolbox)
- Malwares and Advanced Persistent threats
-
- MobSF & Malware Analysis
- Security Assessment with Drozer , Intent sniffing
- Fuzzing using Burp - Password Brute-Force
- Using RATS , IDA pro , Android Security Guidelines