{"enrichment":{"faq":[{"a":"Mobile-pentest is a framework for dynamic analysis and penetration testing of Android and iOS applications. It enables security researchers to perform runtime instrumentation, intercept traffic, bypass security controls like SSL pinning and root detection, enumerate exported components, and reverse engineer hybrid apps built with Flutter or React Native.","q":"What is mobile-pentest used for?"},{"a":"Mobile-pentest leverages Frida-based instrumentation to hook certificate validation routines at runtime, allowing testers to intercept and modify SSL/TLS traffic even when apps implement certificate pinning. This enables traffic analysis and manipulation without requiring certificate installation on the target device.","q":"How does mobile-pentest handle frida ssl pinning bypass on mobile?"},{"a":"Yes. Mobile-pentest provides techniques to bypass both Android root detection and iOS jailbreak detection mechanisms through Frida hooks and runtime patching. Testers can instrument system calls and detection routines to allow security testing on rooted or jailbroken devices.","q":"Can mobile-pentest help with android root detection and ios jailbreak detection bypass?"},{"a":"Mobile-pentest helps enumerate and exploit exported Android components, content providers, and deep links that lack proper access controls. It can identify intent hijacking, task hijacking, and deep-link exploitation vectors that allow unauthorized inter-app communication or data access.","q":"What exported component and deep link vulnerabilities can mobile-pentest identify?"},{"a":"Mobile-pentest covers reverse engineering techniques for hybrid applications, including Flutter and React Native codebases. It addresses Hermes bytecode decompilation for React Native and provides guidance on analyzing cross-platform app logic and extracting sensitive information from compiled binaries.","q":"Does mobile-pentest support reverse engineering of flutter and react native apps?"},{"a":"Mobile-pentest guides extraction of secrets from insecure storage mechanisms including SharedPreferences, SQLite databases, and iOS Keychain. It demonstrates techniques for dumping app data, identifying unencrypted credentials, and leveraging storage vulnerabilities on both rooted Android and jailbroken iOS devices.","q":"How can mobile-pentest help extract secrets from insecure app storage?"}],"shadow_tags":["dynamic-analysis","runtime-instrumentation","hybrid-apps","certificate-interception","detection-evasion","component-enumeration","storage-extraction","jailbreak-rooting","bytecode-decompilation"],"summary_rewrite":"Mobile-pentest guides dynamic analysis of Android and iOS applications through Frida-based instrumentation, certificate pinning circumvention, and detection bypass. It covers exported component abuse, deep-link exploitation, WebView attacks, and hybrid app reverse engineering for Flutter and React Native codebases."},"files":[{"bytes":10961,"path":"skills/mobile-pentest/SKILL.md","sha256":"fb9dddec824dc247a4471d1435d19f8ad4d3f18d42e619cf8ad78f73076c24dd","url":"https://skillfed.io/files/hypnguyen1209/offensive-claude/mobile-pentest/97332e95/SKILL.md"}],"id":"hypnguyen1209/offensive-claude/mobile-pentest","links":{"html":"https://skillfed.io/hypnguyen1209/offensive-claude/mobile-pentest","md":"https://skillfed.io/hypnguyen1209/offensive-claude/mobile-pentest.md","repo":"https://github.com/hypnguyen1209/offensive-claude"},"meta":{"agents_supported":[],"first_seen":"2026-07-28","forks":58,"language":"Python","last_updated":"2026-07-03","license":"MIT","name":"mobile-pentest","publisher":"hypnguyen1209","stars":326},"relations":{"similar":[{"id":"yaklang/hack-skills/mobile-ssl-pinning-bypass"},{"id":"Aradotso/security-skills/android-app-pentest-environment"},{"id":"Aradotso/security-skills/jamboree-android-security-sandbox"},{"id":"Aradotso/security-skills/android-studio-pentest-environment"},{"id":"yaklang/hack-skills/android-pentesting-tricks"},{"id":"Aradotso/security-skills/android-pentest-environment-setup"},{"id":"Aradotso/security-skills/androidstudio-app-pentest-environment"},{"id":"Aradotso/security-skills/jamboree-android-security-testing"},{"id":"Aradotso/security-skills/android-mobile-security-sandbox-jamboree"},{"id":"shuvonsec/claude-bug-bounty/mobile-pentest"}]},"slug":{"owner":"hypnguyen1209","repo":"offensive-claude","skill":"mobile-pentest"},"version":"97332e95"}
