Skip to content

Security Café

Security Research and Services

  • Things we do on a daily basis
    • Red Team (DORA/TIBER) exercises
    • Web Application Penetration Testing
    • Mobile Application Penetration Testing
    • Infrastructure Penetration Testing
    • Vulnerability Assessment
  • CVEs, Talks and Tools
  • Contact
  • About

Tag: mmsf

Mobile Pentesting 101 – The Death of ADB Backup: Modern Data Extraction in 2026

February 2, 2026 Ionut Morosan

For a long time, the adb backup command was the “Swiss Army Knife” for mobile pentesters. It allowed us to pull the private /data/data/ folder

Continue reading

Mobile Pentesting 101: How to Pull APKs from Work Profile – A Real-World Intune Challenge

July 16, 2025 Ionut Morosan

Introduction During a recent mobile application penetration test, I encountered a challenging scenario that many mobile security testers face nowadays: extracting APKs from applications installed

Continue reading

Mobile Pentesting 101: How to Install Split APKs

October 7, 2024 Ionut Morosan

In modern mobile app development, split APKs are becoming increasingly common. They divide a large app into smaller packages, allowing for more efficient downloads and installations, especially on devices with limited storage. For mobile penetration testers, understanding and working with split APKs is essential.

Continue reading

Mobile Pentesting 101 – Introducing to MMSF (Massive Mobile Security Framework)

September 18, 2023 Ionut Morosan

Massive Mobile Security Framework, or MMSF, is a mobile framework that combines functionalities from Frida, objection, drozer, and many more.

Continue reading

Top Posts

  • Introduction to Windows shellcode development – Part 3
  • Mobile Pentesting 101 - Bypassing Biometric Authentication
  • Mobile Pentesting 101 - How to set up your Android Environment
  • My experience with the OSCP certification
  • Mobile Pentesting 101 – The Death of ADB Backup: Modern Data Extraction in 2026

Blog Stats

  • 685,617 hits

Follow us via Email

Enter your email address to follow this blog and receive notifications of new posts by email.

Join 157 other subscribers

Categories

  • Active Directory (4)
  • Announcements (2)
  • C2 (1)
  • Cloud Security (12)
    • aws (9)
    • Azure (3)
    • Kubernetes (1)
  • Conferences (4)
  • Embedded systems security (3)
    • IoT Pentesting (2)
  • Ethical Hacking (18)
  • General security (14)
  • IT Security Assurance (1)
  • IT Security Audit (3)
  • Metasploit (1)
  • Misc (21)
    • Artificial Intelligence (2)
    • Code Review (1)
    • CVE (1)
  • Mobile security (13)
  • Network security (7)
  • Operating systems (2)
  • Penetration Testing (25)
  • Pentest techniques (30)
  • Research (3)
  • Web security (13)
  • Wireless security (1)
Powered by WordPress.com.

Loading Comments...