Leaderboard/Security/Android-Pentesting-Skill
Last commit on June 6, 2026·Created on March 31, 2026

DragonJAR/Android-Pentesting-Skill

A structured workflow for static and dynamic security audits of Android APKs
Combined rank
#569
across all skills
In Security
#23
category rank
Stars
354
7d change unavailable
Forks
52
Watchers
3
Traction scoreGitHub stars can be faked, so popularity alone can be misleading. Traction Score looks for broader signs of real attention, adoption, and active maintenance.
TL;DR

This skill provides a deterministic six-phase approach to mobile security assessments. It assists researchers in moving from initial decompilation and manifest analysis to deep-link abuse detection and source-to-sink tracing.

By integrating tools for dynamic instrumentation and APK repackaging, the workflow helps identify vulnerabilities in IPC components and cryptographic implementations while generating reports based on CVSS 4.0 standards.

WHO IT'S FOR
Mobile security researchers
perform comprehensive Android APK security audits
Penetration testers
test exported components and intent injection
Reverse engineers
decompile and analyze Android application binaries
Malware analysts
analyze Android apps for malicious behavior
Repository contents

1 skill file

Compatible AgentsThe repository documents support for these agents. The skills may also work with other agents that can load SKILL.md files, but they may need some setup or small changes.
Want to install it?
Git CloneRepository instructions