05-04-2024
— Written by Joan Calabrés
— 6 min read
How reverse engineering fits into open banking: bypassing certificate pinning, analysing encrypted login flows, and extracting undocumented bank APIs.
31-08-2023
— Written by Joan Calabrés
— 3 min read
I built hook-updater to automatically migrate Frida hooks across app versions using Smali similarity scoring.
30-08-2023
— Written by Joan Calabrés
— 5 min read
A practical guide to reverse engineering Xamarin Android apps: decompiling DLL assemblies, hooking .NET code with Fridax, and bypassing certificate pinning.
26-04-2022
— Written by Joan Calabrés
— 9 min read
Solutions to OWASP IoTGoat: A vulnerable IoT insecure firmware with the OWASP top 10 IoT vulnerabilities.
27-02-2022
— Written by Joan Calabrés
— 5 min read
Adapting the CVE-2020-0041 privilege escalation exploit for all Pixel 3 family devices to bypass root detection in banking apps.
08-09-2019
— Written by Joan Calabrés
— 7 min read
My solutions to the CyberTruck Challenge 2019 — an Android security workshop by NowSecure covering Frida instrumentation and native reverse engineering.