Android Tamer: Virtual Machine for Android (Security) Professionals

19
ANDROID TAMER https://androidtamer.com

Transcript of Android Tamer: Virtual Machine for Android (Security) Professionals

Page 1: Android Tamer: Virtual Machine for Android (Security) Professionals

ANDROID TAMER

https://androidtamer.com

Page 2: Android Tamer: Virtual Machine for Android (Security) Professionals

WHATVirtual machine for Android (Security) Professionals

Supports

VirtualBoxVMWareVagrant / Ansible

Page 3: Android Tamer: Virtual Machine for Android (Security) Professionals

WHYSaves time while

Finding and installing toolsConfiguring themEnsuring all other tools are still workingManaging updates of each tool

Page 4: Android Tamer: Virtual Machine for Android (Security) Professionals

TOOLS INCLUDE1. adb / fastboot / android-sdk2. dex2jar / enjarify3. apktool4. jad / jd-gui / jadx / jadx-gui5. drozer6. DFF / ddrescueview7. SQLiteManager / SQLiteMan8. Burp Free / OWASP-ZAP9. pidcat

10. MobSF (in-progress)11. Cukoo-droid (in-progress)12. and more....

Page 5: Android Tamer: Virtual Machine for Android (Security) Professionals

CUSTOM FEATURES1. Easy Management of multiple devices2. One liner commands (apk2java, drozer_start etc)3. Scripts for automated analysis4. So�ware update managed over apt-get repository (alpha phase)

( )5. All Tools pre-configured in PATH (no need to switch directories)

http://repo.androidtamer.com/

Page 6: Android Tamer: Virtual Machine for Android (Security) Professionals

THAT'S NOT IT

Page 7: Android Tamer: Virtual Machine for Android (Security) Professionals

@ TWITTER

Follow Us to get Latest Android News@AndroidTamer

Page 8: Android Tamer: Virtual Machine for Android (Security) Professionals

FB/ANDROIDTAMER

Page 9: Android Tamer: Virtual Machine for Android (Security) Professionals

SECURITY ENHANCEMENTS

Page 10: Android Tamer: Virtual Machine for Android (Security) Professionals

LEARN ANDROID

https://androidtamer.com/learn_android_security

Page 11: Android Tamer: Virtual Machine for Android (Security) Professionals

DEMO TIME1. Application decompiling2. Automated assessment (drozer_checks)3. Multi devices management (adb list)4. MobSF5. Build your own Distro (Debian compatible Repository)

Page 12: Android Tamer: Virtual Machine for Android (Security) Professionals

DEMO: APK2JAVA

Page 13: Android Tamer: Virtual Machine for Android (Security) Professionals

DEMO: DROZER_CHECK

Page 14: Android Tamer: Virtual Machine for Android (Security) Professionals

DEMO: ADB LIST

1. Add entries in ~/.adb_list2. format of entries "ABC;SERIALNO"3. echo "abc;1234567890" >> ~/.adb_list

Page 15: Android Tamer: Virtual Machine for Android (Security) Professionals

DEMO: MOBSF

Page 16: Android Tamer: Virtual Machine for Android (Security) Professionals

BUILD YOUR OWN

Page 17: Android Tamer: Virtual Machine for Android (Security) Professionals

PACKAGE REPOSITORY

Page 18: Android Tamer: Virtual Machine for Android (Security) Professionals

SUGGESTIONS & SUPPORT1. Suggest more tools2. Issues / Challenges faced3. Support by contributing to the project4. Write articles & blogposts

Page 19: Android Tamer: Virtual Machine for Android (Security) Professionals

THANKS

Follow @AndroidTamer for all Updates