apk-redteam-pipeline - Analyze Android APKs for red-team findings
Guides authorized Android APK inventory, acquisition, decompilation, secret scanning, certificate extraction, component review, and cloud configuration inspection.
Tags
Updated: 2026-10-05Capabilities
Typical Inputs
Typical Outputs
What this skill does
- Inventory organization-owned apps
- Acquire APK and XAPK files
- Extract nested APK contents
- Decompile DEX files
- Scan strings for secrets
- Extract pinned certificates
- Enumerate exported components
- Inspect Firebase configurations
- Review WebView data flows
- Assess deep-link input flows
Inputs
- Target organization name
- Authorized target scope
- Written testing authorization
- APK or XAPK files
- Play Store developer page
- Stealer log dump
- Relevant testing tools
Outputs
- Package ID inventory
- Downloaded APK files
- Extracted APK directories
- Decompiled source directories
- Secret scan results
- Certificate metadata
- Exported component list
- Firebase configuration data
- Potential attack-surface findings
Requirements
- Explicit written authorization
- Defined permitted scope
- Relevant APK testing tools
- Command confirmation before active testing
- Sandbox, disposable VM, or controlled lab
