|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/how-to-hack-android-apps/
课程评论:没有评论
课程名称:初学者利用Android应用程序进行安全检查 课程概述:在信息安全领域,无论是职业生涯还是学术学习,您都知道安全分析不仅需要对系统有透彻的理解,还需要掌握一系列工具和技术来分析特定系统。与网络和网站安全相比,移动安全是一个相对较新的领域。为了分析移动应用程序,了解其底层架构、安全模型、开发框架及相关工具是至关重要的。本课程专注于当前最广泛使用的移动操作系统Android应用程序。 课程内容介绍了Android的基本架构、权限模型及默认的安全措施。涵盖了开发者工具如Eclipse、Android Studio、Android调试桥(ADB)、UI Automator和Monkey Runner,以及网络分析的工具和技术。此外,课程还讨论了反向工程与恶意软件分析的静态和动态技术,并介绍了对Android应用进行渗透测试的过程。课程中还会讨论诸如意外数据泄露、不安全的数据存储等问题,并介绍Burp Intruder和Metasploit等工具。最后,课程总结了Android安全的最佳实践。 总体而言,本课程涉及Android安全概念,详细探讨相关工具,以帮助学员有效利用和分析Android应用程序的安全性。
If you at any point of time in your career or academia surfaced information security, you know for a fact that security analysis is not only about thorough understanding of a system but also includes a good list of tools and techniques to analyze that particular system. Unlike network and web, mobile security is a recent phenomenon. In order to analyze mobile application, one should understand the underlying architecture, security model, development frameworks and the relevant tools. This course deals with applications within the most widely used mobile OS, Android. The course introduces underlying Android architecture, its permission model and the default security measures in place. It deals with developer tools like Eclipse, Android Studio, Android Debug Bridge or ADB, UI Automator and Monkey Runner, along with tools and techniques for Network Analysis. As a part of reversing and malware analysis, static and dynamic techniques have been discussed. Pentesting an Android App is has also been discussed. Issues like unintended data leakage, insecure data storage and tools like Burp Intruder & Metasploit have also been covered. The course concludes by discussing Android best practices for security. To conclude, this course deals with Android security concepts and discusses the relevant tools in detail to exploit an Android application.