mobile-pentest
Installation
SKILL.md
Mobile Application Penetration Testing
When to Activate
- Android/iOS application security assessment, bug-bounty mobile triage, or app-store reconnaissance
- Need to intercept TLS traffic (SSL/cert pinning, Android 14/15 Conscrypt-APEX trust store, Flutter/RN stacks)
- Bypass root/jailbreak or biometric-gating controls during dynamic analysis
- Enumerate and exploit exported components, content providers, deep links, and WebViews
- Extract secrets from insecure storage (SharedPrefs, SQLite, Keychain, Keystore) and reverse hybrid apps