Luminix Labs
4 posts

Luminix Labs
@luminixlabs
Cyber Security Consultant 👨💻 | Penetration Testing Services (Web, Mobile, Cloud & Blockhain) 🛡️ | #LeadingtheSecureWay
Katılım Aralık 2023
7 Takip Edilen2 Takipçiler

Protecting Your System from Ransomware: Essential Prevention Strategies luminixlabs.com/2024/07/17/pro…

English

🚀 Exam- 𝗖𝗲𝗿𝘁𝗶𝗳𝗶𝗲𝗱 𝗠𝗼𝗯𝗶𝗹𝗲 𝗣𝗲𝗻𝘁𝗲𝘀𝘁𝗲𝗿 (𝗖𝗠𝗣𝗲𝗻) - 𝗔𝗻𝗱𝗿𝗼𝗶𝗱
🚀 Challenge- 𝗠𝗶𝘀𝗰𝗼𝗻𝗳𝗶𝗴𝘂𝗿𝗲𝗱 𝗔𝗻𝗱𝗿𝗼𝗶𝗱𝗠𝗮𝗻𝗶𝗳𝗲𝘀𝘁.𝘅𝗺𝗹
** 𝑳𝒊𝒌𝒆, 𝑪𝒐𝒎𝒎𝒆𝒏𝒕, 𝑹𝒆𝒑𝒐𝒔𝒕, 𝒂𝒏𝒅 3 𝒍𝒖𝒄𝒌𝒚 𝒘𝒊𝒏𝒏𝒆𝒓𝒔 𝒘𝒊𝒍𝒍 𝒈𝒆𝒕 100% 𝒅𝒊𝒔𝒄𝒐𝒖𝒏𝒕 𝒐𝒏 𝒐𝒖𝒓 𝑪𝑴𝑷𝒆𝒏- 𝑨𝒏𝒅𝒓𝒐𝒊𝒅 𝒆𝒙𝒂𝒎!**
🕵 𝐓𝐨𝐦'𝐬 𝐒𝐭𝐚𝐭𝐢𝐜 𝐀𝐧𝐚𝐥𝐲𝐬𝐢𝐬 𝐀𝐝𝐯𝐞𝐧𝐭𝐮𝐫𝐞!
Tom was knee-deep into an Android application pentest, dissecting lines of code with the finesse of a seasoned detective. As Tom deciphered the intricate details, a subtle intuition hinted at a potential misconfiguration waiting to be unraveled.
Can you help Tom identify security issues within the AndroidManifest.xml file below? Your expertise might just be the key to unraveling the mystery! 🕵🔎
Comment your answers below 👇
👨💻CMPen - Android:-
secops.group/pentesting-exa…

English

@TheSecOpsGroup -debug enabled (potentially exposing sensitive info)
-cleartext traffic (allowing non-https, MITM possibility)
-hardcoded secret (oAuth secret may lead to be misused)
-backup enabled allowing any sensitive info to be backed up
English
