badintent.md 1.1 KB

BadIntent

Description

BadIntent integrates Android's Binder framework with Burp Suite. It enables pentesters to use the typical Burp Suite workflow and all of its tools and extensions. BadIntent helps in identifying vulnerabilities, makes AIDL-attacks more easy to perform and assists in attacks against backends. Since Binder transactions are hooked, it is possible to analyze, interrupt, modify and repeat most communication channels and exchanged messages. This can be used for reverse engineering and obfuscation bypass activities.

Categories

  • Mobile Security
  • Penetration Testing
  • Reverse Engineering

Black Hat sessions

Arsenal US 2017

Code

https://github.com/mateuszk87/BadIntent

Lead Developer

Mateusz Khalil - https://github.com/mateuszk87/

Social Media