InfoSec Community
@infosecwriteups.com
A collection of write-ups from the best hackers in the world on topics ranging from bug bounties and CTFs to vulnhub machines, hardware challenges and real life encounters. Subscribe to our weekly newsletter for the coolest infosec updates: https://weekly.infosecwriteups.com/
InfoSec Community's Company Logos


InfoSec Community's Brand Colors
Hex Code
Color name
RGB
HSL
CMYK
#EAA43C
Tulip Tree
234, 164, 60
36, 81, 58
0, 30, 74, 8
#F1BD79
Tacao
241, 189, 121
34, 81, 71
0, 22, 50, 5
#836C28
Kumera
131, 108, 40
45, 53, 34
0, 18, 69, 49
About InfoSec Community
Welcome to our InfoSec Community, where we dive deep into the vulnerabilities hidden beneath the surface of your favorite mobile apps. Our brand is dedicated to mobile application security, and we offer a range of products and services to help you understand and address these vulnerabilities. One of our featured offerings is the AndroGOAT Assessment Walkthrough.
This mobile application is filled with secrets that serve as teachable moments in mobile application security. In this article, we open up our diary of discoveries, sharing all the technical moments from our AndroGOAT journey. You can follow along as we explore the security flaws of this vulnerable mobile app together.
We also provide installation guides for AndroGOAT, both on physical Android phones and virtual machines. Additionally, we walk you through the setup process for network interception, including HTTP setup, intercepting HTTPS, and certificate pinning. Furthermore, we discuss various areas of insecure data storage, such as shared preferences, SQLite, temp files, and external storage.
We highlight the risks associated with input validations, including cross-site scripting (XSS) and SQL injection (SQLi). Join our InfoSec Community and start exploring the hidden vulnerabilities in mobile apps today!
