- Root Check Bypass
frida -U -f az.package.name --codeshare dzonerzy/fridantiroot
- Magisk
- Riru
- LSPosed
- Always Trust User Certificates -> A Magisk module that automatically adds user certificates to the system root CA store
- Traffic Analysis via Tcpdump
LSPosed Modules:
- SSLUnpinning
- TrustMeAlready
- --no-pause issue in Frida
- Failed to spawn: need Gadget to attach on jailed Android
- 2 - Failed to spawn: need Gadget to attach on jailed Android
- My problem was not to have Frida server in Android Emulator. To install it:
- Also, when you execute Frida server in Android Emulator, be careful to have execute (+x) permission on the file
- [frida.ProcessNotFoundError: unable to find process with name 'system_server'; 1. Be root; 2. Run frida-server](frida.ProcessNotFoundError: unable to find process with name 'system_server')
- Build Burp Certificate on Android
- It should be build as System certificate
- Read-write (rw) mount issue on Android
adb remount
issue on Androidadb remount
troubleshooting- Android Emulator --writable-system
- Android Emulator --no-snapshot-load
- Kill Android Server
- Android Emulator reboot
# Being Root
adb root
adb shell
# Building Proxy:
settings put global http_proxy <proxy_address>:<port>
settings put global global_http_proxy_host <proxy_address>
settings put global global_http_proxy_port <port>
settings put global global_proxy_pac_url null
# Deleting Proxy:
settings delete global http_proxy
settings delete global global_http_proxy_host
settings delete global global_http_proxy_port
settings delete global global_proxy_pac_url