Advanced Android Bug Bounty Skills - Ben Actis, Bugcrowd's LevelUp 2017

Advanced Android Bug Bounty Skills - Ben Actis, Bugcrowd's LevelUp 2017

Bugcrowd via YouTube Direct link

Intro

1 of 27

1 of 27

Intro

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Advanced Android Bug Bounty Skills - Ben Actis, Bugcrowd's LevelUp 2017

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 Outline
  3. 3 Check /assets and /res/raw
  4. 4 Little things left in assets :
  5. 5 External Storage: Google Advice
  6. 6 External Storage Code Example
  7. 7 Installing Packages
  8. 8 Detecting reads/writes to external storage
  9. 9 Obfuscation
  10. 10 If it looks like a duck
  11. 11 Identifying crypto
  12. 12 Easy way to get decrypted values
  13. 13 Webview options
  14. 14 Javascript interfaces
  15. 15 Quick mitm proxy setup for mobile
  16. 16 What is a service
  17. 17 How one activity starts another
  18. 18 Starting a service
  19. 19 Broadcast Receiver #1
  20. 20 Dozer Tutorial
  21. 21 Intent receivers Fail example
  22. 22 Intent receiver fail
  23. 23 Abusing exported activities CVE-2013-6271
  24. 24 Abusing Services
  25. 25 Stop the service :
  26. 26 Splitting the parameter
  27. 27 Changing system properties :

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.