From Collaborative RCE Knowledge Library

Jump to: navigation, search

Android Anti Reversing Articles


Item name: DEX EDUCATION 201 ANTI-EMULATION
Rating: 0.0 (0 votes)
Author: Tim Strazzere                        
Home URL: N/A
Last updated:
Version (if appl.):
Direct D/L link: http://hitcon.org/2013/download/Tim%20Strazzere%20-%20DexEducation.pdf
Description: This is actually in continuance to http://www.woodmann.com/collaborative/knowledge/index.php/Dex_Education:_Practicing_Safe_Dex
The previous article is about Anti-Reversing against some of the Android Malware Analysis tools.
This paper is about Anti-Emulation for Android.
Also listed in: (Not listed in any other category)
More details: Click here for more details, images, related URLs & comments for this item! (or to update its entry)



Item name: Dex Education: Practicing Safe Dex
Rating: 0.0 (0 votes)
Author: Tim Strazzere                        
Home URL: N/A
Last updated:
Version (if appl.):
Direct D/L link: http://www.strazzere.com/papers/DexEducation-PracticingSafeDex.pdf
Description: This is probably the first public publication on how Tim deconstruct some of the intricacies of the dex file format and analyze how some of the Android tools parse and manage the dex format. Along the way he observed a number of easily exploitable functionality, documenting specifically why they fail and how to fix them. A proof of concept tool - APKfuscator - that shows how to exploit these flaws.
It introduces some of the basic Anti-Reversing against some of the Android tools that Malware Analyst use to analyse Android Malware.

You can find his POC here.
https://github.com/strazzere/APKfuscator

Also listed in: (Not listed in any other category)
More details: Click here for more details, images, related URLs & comments for this item! (or to update its entry)




RSS feed Feed containing all updates and additions for this category.

RSS feed Feed containing all updates and additions for this category, including sub-categories.





Views
Category Navigation Tree
   Tools