Adhrit is an open source Android APK reversing and analysis suite. The tool is an effort to find an efficient solution to all the needs of mobile security testing and automation. Adhrit has been built with a focus on flexibility and mudularization. Adhrit currently uses the Ghera benchmarks to identify vulnerability patterns in Android applications. The project is subject to continuous updations and will incorporate the latest available methodologies and tools. Adhrit has been presented at conferences like OWASP Seasides, ThreatCon and Cysinfo. Feature requests and bug reports are always welcome!
- Package name, debug and backup status
- Exported components (activities, services, providers and receivers)
- Implicit intent filters
- Critical permissions
- SQLite DBs
- Web Issues
- Storage Issues
- Crypto Issues
- API tokens
- Strings from native libraries
- Linux or MAC
- Java JDK
- Dowload the zip or clone the package and extract the tool (
git clone https://github.com/abhi-r3v0/Adhrit.git).
The script automatically identifies if you're running Adhrit for the first time and will install all the dependencies & libraries required by the tool.
Presentations / Conferences:
This will automatically launch the Web interface where the APK can be uploaded and the report will be generated.
If the UI didn't launch by itself, navigate to
- Rahul Sani (firstname.lastname@example.org, @rahulsani99)
- P S Narayanan (email@example.com, @0xP5N_)
- Akhil Mahendra (firstname.lastname@example.org, @Akhil_Mahendra)
- Vaisakh (email@example.com, @vaisakhjnr) (new)
- Loyd Jayme (firstname.lastname@example.org, @loydjayme25)