Wednesday, January 22, 2014

Pentesting Tools for Android Device

Filled under: ,

Android is an operating system based on the Linux kernel, and designed primarily for touchscreen mobile devices such as smartphones and tablet computers. But making it as your Hacking Device is quiet awesome like Hackers in the Movie.
Making a lot of fun like messaging your friend’s browsers using JavaScript and other tools below.


1.) Network Spoofer - Network Spoofer lets you change websites on other people’s computers from an Android phone. After downloading simply log onto a Wi-Fi network, choose a spoof to use and press start.
Please note that there is no intention for Network Spoofer to include any malicious features. This application is a fun demonstration of how vulnerable home networks are too simple attacks, with permission of the network owner - DO NOT attempt to use Network Spoofer on any corporate or other non-residential networks (e.g. at school, university). It becomes very obvious when Network Spoofer is being used on a Network, and use of Network Spoofer will be considered malicious hacking by network administrators.


2.) Dsploit – There are a lot of similarities with this tool and Network Spoofer. The most complete and advanced IT security professional toolkit on Android.

3.) Wifi Kill - his app you can disable internet connection for a device on the same network. So if someone (anyone) is abusing the internet wasting precious bandwidth for a Justin Bieber video clips you could just kill their connection and stay happy with a full bandwidth just for yourself.

4.) FaceNiff - is an Android app that allows you to sniff and intercept web session profiles over the Wi-Fi that your mobile is connected to.
It is possible to hijack sessions only when WiFi is not using EAP, but it should work over any private networks (Open/WEP/WPA-PSK/WPA2-PSK)
It's kind of like Firesheep for android. Maybe a bit easier to use (and it works on WPA2!).


5.) Shark for Root - Traffic sniffer, works on 3G and WiFi (works on FroYo tethered mode too).
To open dump use WireShark or similar software, for preview dump on phone use Shark Reader.
Based on tcpdump. Please leave comments/send e-mail if you have any problems/suggestions.

1 comments:

Live Support