March 20, 2023, 5:08 a.m. | Serhat ÇİÇEK

InfoSec Write-ups - Medium infosecwriteups.com

Android Pentesting

In order to perform dynamic penetration tests in android applications, we need to bypass the sslpinning security measure. In order to circumvent this measure, it is necessary to add the Burp Suite certificate to the root certificates on the android system.

Installing root certificate on rooted android device with Magisk is very easy.This process consists of several steps.

Exporting the burp suite certificate

We need to go to the “Options” tab in the Burp suite tool and click …

android android pentesting burpsuite certificate magisk root root-certificate ssl pinning

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Level 1 SOC Analyst

@ Telefonica Tech | Dublin, Ireland

Specialist, Database Security

@ OP Financial Group | Helsinki, FI

Senior Manager, Cyber Offensive Security

@ Edwards Lifesciences | Poland-Remote

Information System Security Officer

@ Booz Allen Hamilton | USA, AL, Huntsville (4200 Rideout Rd SW)

Senior Security Analyst - Protective Security (Open to remote across ANZ)

@ Canva | Sydney, Australia