Skip to content
← LibraryTechnique entry
MOB-APK-REVERSEReconnaissance

APK Reverse Engineering

Pull APK, decompile with jadx / apktool, hunt for hardcoded keys, endpoints, debug flags, weak crypto.

§ Where this technique fits

MOB-APK-REVERSE is catalogued under the Reconnaissance tactic of the offensive-security kill-chain. It appears in 6 approved dossiers in the registry, typically at step 1 on average.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01
    Android Deeplink / Intent Abuse
    MOB-DEEPLINK-ABUSE · Initial Access
    seen 1×
  2. 02
    Android Root Detection Bypass
    MOB-ROOT-DETECT-BYPASS · Defense Evasion
    seen 1×
  3. 03
    Android WebView XSS / JS Bridge
    MOB-WEBVIEW-XSS · Impact
    seen 1×
  4. 04
    BLE Eavesdropping
    IOT-BLE-EAVESDROP · Credential Access
    seen 1×
  5. 05
    Content Provider Data Leak
    MOB-CONTENT-PROVIDER · Collection
    seen 1×
  6. 06
    iOS URL Scheme Hijack
    MOB-IOS-URL-SCHEME · Initial Access
    seen 1×