Главная
Study mode:
on
1
Intro
2
About me
3
Creating fake accounts
4
Assumptions
5
Android
6
Burp Proxy
7
Intercepted Traffic
8
OAuth
9
APK Tools
10
Dalvik
11
Smalley
12
Highlevel overview
13
Lowlevel overview
14
Code Guard
15
Reverse Engineering
16
Comparing the two
17
Stack Overflow
18
Custom crypto code
19
Font size
20
Base64
21
JVM languages
22
Jruby
23
Jruby Client Library
24
Graphing
25
Social bots
26
Fake social accounts
27
Public profile images
28
Spam
29
Monetization
Description:
Explore the world of Android application scripting and social botnet creation in this 42-minute conference talk by Daniel Peck, Principal Research Scientist at Barracuda Networks. Dive into the process of disassembling, understanding, modifying, and rebuilding APKs. Learn techniques for scripting portions of applications in JRuby sessions, including key recovery and bypassing custom cryptographic routines. Discover how to leverage these skills to create and control thousands of realistic social media accounts using data from sources like the US census. Gain insights into tools for APK manipulation, dynamic code exploration, and the creation of believable bot interactions within social networks. Understand the implications of looser restrictions on mobile applications and how they can be exploited for various purposes.

Scripting Android Applications for Social Botnet Creation - Network Exploitation Techniques

OWASP Foundation
Add to list
0:00 / 0:00