Penetration testing

Android penetration tools walkthrough series: Drozer

Drozer from MWR labs (formerly known as Mercury) is one of the most leveraged Android security frameworks for pentesting Android applications. Drozer enables

Android penetration tools walkthrough series: AndroBugs framework

Android apps are arguably the most commonly used features of smartphones on the market today. Our lives are made more organized, faster, and more streamlined

Importance of IP Fragmentation in Penetration Testing

Introduction Penetration testing is an extremely important testing aspect when we consider the optimum level of security for any system pertaining to crucial

Android penetration tools walkthrough series: QARK

In this article, we are going to learn how to use the Quick Android Review Kit. QARK one of the most efficient Android static analysis tool developed by two

Privilege escalation on linux with live examples

One of the most important phase during penetration testing or vulnerability assessment is privilege escalation. During that step, hackers and security resear

Threat Hunting – Zyklon Trojan

This is a lab that is conducted in a test bed. The resources were downloaded from malware.trafficanalysis.net. The samples provided came from a case study of

Android penetration tools walkthrough series: Frida

Frida is a powerful and extensible instrumentation toolkit – among its many strengths, it is ideally suited to testing and evaluating native Android apps. Fr

Threat Hunting – Chthonic Banking Trojan

This is a lab that is conducted in a test bed. The resources were downloaded from malware.trafficanalysis.net. The samples provided came from a case study of

Android Penetration Tools Walkthrough Series: Androguard

Today, much of our personal and financial information is tied to mobile and web apps. Penetration testing is an ever-growing enterprise in the tech space, as

Use of Various Windows Utilities to Manage ICS Processes

Introduction Target Audience: Operational Technology (OT) operators of industrial control systems (ICS) that do not have information technology (IT) training