Interested in most things IT - primarily #infosec, #CTFs, #sysadmin, #devops, #automation, #networks, #webdev. Also #keyboards, #locksports. Snr Sec Engineer.
Feb 7, 2019 • 15 tweets • 3 min read
Hey kids! Wanna research some shitty Atrient Android apps? Follow along with me, this is going to be fun. (1/?)
So it turns out Atrient has been creating and releasing shitty Android apps in their customers' names. After having a closer look, I realized that Atrient packaged their clients' private RSA keys into the aforementioned apps, most likely used for backend communications. (2/?)