> For the complete documentation index, see [llms.txt](https://notes.cavementech.com/pentesting-quick-reference/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://notes.cavementech.com/pentesting-quick-reference/mobile-hacking/mobile-hacking.md).

# Mobile Hacking

### Courses

{% embed url="<https://mobisec.reyammer.io/>" %}

{% embed url="<https://www.mobilehackinglab.com/>" %}

{% embed url="<https://app.hextree.io/map>" %}

{% embed url="<https://www.mobilehackinglab.com/course/android-frida-labs>" %}
Frida free course
{% endembed %}

### Write ups

{% embed url="<https://hassona.gitbook.io/hassona-appsec/android>" %}

🔥 Explore Mobile Hacking: In-Depth Write-ups from the Community 🔥

We are thrilled to showcase the hard work and dedication of our talented community members who’ve created in-depth write-ups across a range of mobile hacking challenges. Dive into their insights, learn from their techniques, and be inspired to tackle your own challenges.

Huge thanks to everyone who contributed! 🙌

𝐒𝐭𝐫𝐢𝐧𝐠𝐬

1. <https://shorturl.at/VmfYi> : Credit - Faruk Arslan
2. <https://shorturl.at/np75w> : Credit - Simon Bertrand
3. <https://shorturl.at/sHbHH> : Credit - Bernardo Valente
4. <https://shorturl.at/kn00E> : Credit - Eyosiyas Alemayehu

𝐅𝐨𝐨𝐝𝐒𝐭𝐨𝐫𝐞:

1. <https://shorturl.at/YHEPw> : Credit - Prince Varghese
2. <https://cl.gy/rHZPz> : Credit - Simon Bertrand
3. <https://cl.gy/HGbEJ> : Credit - Dwi Putra Prayoga Sulaeman
4. <https://cl.gy/dHRoc> : Credit - Hicham El Aaouad

𝐍𝐨𝐭𝐞𝐊𝐞𝐞𝐩𝐞𝐫:

1. <https://cl.gy/NrAJt> : Credit - Ajmal Moochingal
2. <https://cl.gy/IUiJB> : Credit - Faruk Arslan

𝐆𝐮𝐞𝐬𝐬 𝐌𝐞:

1. <https://cl.gy/flFYK> : Credit - Simon Bertrand
2. <https://cl.gy/yCEdT> : Credit - Bernardo Valente
3. <https://cl.gy/ymJCP> : Credit - Majd Abuleil
4. <https://cl.gy/fwnTr> : Credit - Dwi Putra Prayoga Sulaeman

𝐂𝐨𝐧𝐟𝐢𝐠 𝐄𝐝𝐢𝐭𝐨𝐫:

1. <https://cl.gy/FWZqE> : Credit - Ajmal Moochingal
2. <https://cl.gy/mTPxU> : Credit - Simon Bertrand
3. <https://cl.gy/VQYqJ> : Credit - Bernardo Valente
4. <https://cl.gy/wcyEp> : Credit - Benjamin Muthui
5. <https://cl.gy/EbzhI> : Credit - Faruk Arslan

𝐂𝐲𝐜𝐥𝐢𝐜 𝐒𝐜𝐚𝐧𝐧𝐞𝐫: Lab url:

1. <https://cl.gy/FEKXc> : Credit - Simon Bertrand
2. <https://cl.gy/AcmeL> : Credit - Bernardo Valente
3. <https://cl.gy/veFpG> : Credit - Benjamin Muthui
4. <https://cl.gy/QFuVz> : Credit - Faruk Arslan

𝐀𝐜𝐜𝐞𝐬𝐬 𝐥𝐚𝐛𝐬: <https://lnkd.in/eTym-v75>

### Android Bug finding reports

{% embed url="<https://dphoeniixx.medium.com/practical-android-pentesting-a-case-study-on-tiktok-rce-4a82e79cc7c6>" %}

### Useful Stuff

📙 𝐢𝐎𝐒 𝐒𝐢𝐠𝐧𝐚𝐥 / 𝐖𝐞𝐛𝐑𝐓𝐂 𝐝𝐞𝐞𝐩 𝐝𝐢𝐯𝐞 (𝐌𝐚𝐫𝐠𝐢𝐧 𝐑𝐞𝐬𝐞𝐚𝐫𝐜𝐡)(𝐔𝐬𝐢𝐧𝐠 Corellium)\
👉 You Can’t Spell WebRTC Without RCE (Parts 1–3):\
Part 1: <https://lnkd.in/ePRUwcig>\
Part 2: <https://lnkd.in/eHDaP87b>\
Part 3: https//<https://lnkd.in/epiTzkNB>

📙𝐀𝐧𝐝𝐫𝐨𝐢𝐝 — 𝐖𝐞𝐛𝐑𝐓𝐂 & 𝐒𝐢𝐠𝐧𝐚𝐥, 𝐖𝐡𝐚𝐭𝐬𝐀𝐩𝐩,... (𝐆𝐨𝐨𝐠𝐥𝐞 𝐏𝐫𝐨𝐣𝐞𝐜𝐭 𝐙𝐞𝐫𝐨)\
👉 Adventures in Video Conferencing (Parts 1–3)\
Part 1: <https://lnkd.in/eKJJ\\_-SX>\
Part 2: <https://lnkd.in/eT5qnEC5>\
Part 3: <https://lnkd.in/eF7AGMYY>

Interesting learning mobile security for free? Check out our free courses

🆓 𝐅𝐫𝐞𝐞 𝐑𝐞𝐬𝐨𝐮𝐫𝐜𝐞𝐬 𝐭𝐨 𝐋𝐞𝐯𝐞𝐥 𝐔𝐩 𝐘𝐨𝐮𝐫 𝐌𝐨𝐛𝐢𝐥𝐞 𝐇𝐚𝐜𝐤𝐢𝐧𝐠 𝐒𝐤𝐢𝐥𝐥𝐬:\
𝐅𝐫𝐞𝐞 𝐢𝐎𝐒 𝐏𝐫𝐨𝐠𝐫𝐚𝐦𝐦𝐢𝐧𝐠 𝐂𝐨𝐮𝐫𝐬𝐞:\
<https://lnkd.in/etj4EJ2m>\
𝐅𝐫𝐞𝐞 𝐢𝐎𝐒 𝐀𝐩𝐩𝐥𝐢𝐜𝐚𝐭𝐢𝐨𝐧 𝐏𝐞𝐧𝐭𝐞𝐬𝐭 𝐂𝐨𝐮𝐫𝐬𝐞:\
<https://lnkd.in/eKeEmexR>\
𝐅𝐫𝐞𝐞 𝐎𝐟𝐟𝐞𝐧𝐬𝐢𝐯𝐞 𝐀𝐧𝐝𝐫𝐨𝐢𝐝 𝐏𝐫𝐨𝐠𝐫𝐚𝐦𝐦𝐢𝐧𝐠:\
<https://lnkd.in/eNEbSJZ6>\
𝐅𝐫𝐞𝐞 𝐀𝐧𝐝𝐫𝐨𝐢𝐝 𝐀𝐩𝐩 𝐏𝐞𝐧𝐭𝐞𝐬𝐭 𝐂𝐨𝐮𝐫𝐬𝐞:\
<https://lnkd.in/eCENK2Fs>\
𝐅𝐫𝐞𝐞 𝐅𝐫𝐢𝐝𝐚 𝐂𝐨𝐮𝐫𝐬𝐞 & 𝐋𝐚𝐛𝐬:\
<https://lnkd.in/eFsh7vwf>

𝐅𝐫𝐞𝐞 𝐋𝐚𝐛𝐬 𝐟𝐨𝐫 𝐢𝐎𝐒 & 𝐀𝐧𝐝𝐫𝐨𝐢𝐝 (𝐫𝐞𝐚𝐥-𝐰𝐨𝐫𝐥𝐝 𝐜𝐡𝐚𝐥𝐥𝐞𝐧𝐠𝐞𝐬)\
<https://lnkd.in/eTym-v75>
