| name | mobile-pentest |
| description | Use when pentesting an Android/iOS app — Frida 17 instrumentation, SSL-pinning & root/jailbreak bypass, Android 14/15 CA injection, exported-component/content-provider abuse, deep-link/WebView chains, biometric bypass, Flutter/React-Native RE |
| metadata | {"type":"offensive","phase":"exploitation","tools":"frida, frida-tools, objection, jadx, apktool, reflutter, hermes-dec, hbctool, mitmproxy, burp, palera1n, dopamine, frida-ios-dump, bagbak, mobsf, drozer, nuclei","mitre":"TA0001"} |
| kill_chain | {"phase":["recon","exploit"],"step":[1,4],"attck_tactics":["TA0043","TA0001","TA0009","TA0006","TA0005"],"attck_techniques":["T1626","T1626.001","T1517","T1409","T1517","T1577","T1631","T1407","T1635","T1521","T1521.001","T1417","T1417.001","T1660","T1644","T1623"]} |
| depends_on | ["recon-osint","reverse-engineering"] |
| feeds_into | ["exploit-development","web-pentest"] |
| inputs | ["apk_file","ipa_file","mobile_endpoint","app_package_id"] |
| outputs | ["finding_record","mobile_vulnerability_list","intercepted_traffic","extracted_secrets"] |
| references | ["references/environment-interception.md","references/android-component-attacks.md","references/webview-deeplink-exploitation.md","references/insecure-storage-crypto.md","references/ios-offensive.md","references/crossplatform-re-instrumentation.md"] |
| scripts | ["scripts/universal_unpin.js","scripts/android_ca_inject.sh","scripts/manifest_attack_surface.py","scripts/component_fuzz.sh","scripts/ios_bypass_suite.js","scripts/hermes_triage.py"] |