Categories
Tags
8ksec 8ksec.io aidl android anti-debug anti-frida anti-hook aot APK broadcast-receiver bypass CC certificate-pinning certification config content-provider CTF ctf cybersecurity cybertalents deep-links deeplink dex dexclassloader dylib dynamic-analysis dynamic-loading emulator exam exploitation file-encryption florida flutter frida ghidra GKI hamida hextree.io hook hooking http-security ios ipc ISC2 jailbreak-detection Kali KernelSU kiosk-mode logic-bug Magisk maui mobile mobile-exploitation mono native network-interception pentest plugin privacy proxy-detection rce reverse-engineering rooting runtime script security smali sql-injection ssl-pinning static-analysis SuperSU swift systemless-root tls-pinning token-extraction url-parsing url-scheme vulnerability web webview writeup WSL2 xamarin
Bypassing MAUI Certificate SSL Pinning on Android
A journey from failing to bypass SSL pinning on a .NET MAUI app to building a generic Frida script that works on JIT, AOT, SocketsHttpHandler, and wrapped handlers - no app-specific names needed.
1437 words
|
7 minutes

From SuperSU to KernelSU: How Android Rooting Grew Up
The story of how Android root evolved from SuperSU's direct system modifications to Magisk's systemless approach and finally to KernelSU's kernel-level model.
2506 words
|
13 minutes

The Way to Hamida: Frida Artifacts
A deep dive into the fingerprints and artifacts Frida leaves behind — how they are detected, how they were patched, and what Hamida does differently.
631 words
|
3 minutes

Advanced Frida Detection Bypass
A comprehensive guide to bypassing advanced Frida detection mechanisms in Android apps, including port detection, memory maps artifact scanning, and direct syscall hooking techniques.
3065 words
|
15 minutes

8kSec.io iOS Challenges Writeups
A n00bie's journey through iOS application exploitation challenges covering reverse engineering, vulnerability discovery, and mobile security.
61 words
|
1 minutes

MobileHackingLabs iOS Challenges
A n00bie's journey through iOS application exploitation challenges covering reverse engineering, vulnerability discovery, and mobile security.
61 words
|
1 minutes

8kSec.io Android Challenges
A n00bie's journey through Android application exploitation challenges covering reverse engineering, vulnerability discovery, and mobile security.
61 words
|
1 minutes

Brod & Co. — Android CTF Writeup (BrunnerCTF 2025)
Reverse engineering Brod & Co. from BrunnerCTF 2025: Flutter + native analysis, Frida↔Ghidra mapping, overflow confirmation, and pulling the flag via util_func_c(0x1337).
774 words
|
4 minutes
