android_application_analyzer: analyze the content of the android application in local storage
Android Application Analyzer
The tool is used to analyze the content of the android application in local storage.
Feature
- Strings command on “so or library” file
- Compatible with python3
- Deep search :- Find all the files of the application from the entire storage
- Snapshot button :- Copy entire application directory for future reference
- The dropdown list of the application instead of Text Box
- Snapshot button :- Copy entire application directory for future reference
- The dropdown list of the application instead of Text Box
- One clikc application decompile using apktool
- One click JD GUI application navigation
- One click reinstall the APK using (uninstall app -> apktool rebuild app -> sign.jar (sign apk)-> install app)
- One click mobSF analysis (prerequisite: mobSF installation required) Note: as of now update the mobSF endpoint in GlobalVariables.py and “mobSFURL” variable
Install
git clone https://github.com/NotSoSecure/android_application_analyzer.git
cd android_application_analyzer
pip3 install -r requirement.txt
Use
python3 main.py
It will list down all the devices connected to the device as shown in Figure:
It will start fetching logcat logs for the selected device as shown in Figure:
In order to analyze the application, select it from the dropdown list as shown in Figure:
To analyze the file content of the application, Select the file as shown in Figure:
Analyze the sensitive information logcat logs as shown in Figure:
In order to view application source in JD-GUI, click on “jdgui” button as shown in Figure:
If the mobSF configured in the system and in order to open application with MobSF click on “mobSF” button as shown in Figure:
In order to decompile application using apktool, click on “apktool” button as shown in Figure:
In order to take application sandbox backup for future reference, click on the “snapshot” button as shown in Figure:
Copyright (C) 2019 NotSoSecure
Source: https://github.com/NotSoSecure/