Afrikaans
Akan
Albanian
Amharic
Arabic
Armenian
Azerbaijani
Basque
Belarusian
Bemba
Bengali
Bihari
Bosnian
Breton
Bulgarian
Cambodian
Catalan
Cebuano
Cherokee
Chichewa
Chinese (Simplified)
Chinese (Traditional)
Corsican
Croatian
Czech
Danish
Dutch
English
Esperanto
Estonian
Ewe
Faroese
Filipino
Finnish
French
Frisian
Ga
Galician
Georgian
German
Greek
Guarani
Gujarati
Haitian Creole
Hausa
Hawaiian
Hebrew
Hindi
Hmong
Hungarian
Icelandic
Igbo
Indonesian
Interlingua
Irish
Italian
Japanese
Javanese
Kannada
Kazakh
Kinyarwanda
Kirundi
Kongo
Korean
Krio (Sierra Leone)
Kurdish
Kurdish (SoranĂ®)
Kyrgyz
Laothian
Latin
Latvian
Lingala
Lithuanian
Lozi
Luganda
Luo
Luxembourgish
Macedonian
Malagasy
Malay
Malayalam
Maltese
Maori
Marathi
Mauritian Creole
Moldavian
Mongolian
Myanmar (Burmese)
Montenegrin
Nepali
Nigerian Pidgin
Northern Sotho
Norwegian
Norwegian (Nynorsk)
Occitan
Oriya
Oromo
Pashto
Persian
Polish
Portuguese (Brazil)
Portuguese (Portugal)
Punjabi
Quechua
Romanian
Romansh
Runyakitara
Russian
Samoan
Scots Gaelic
Serbian
Serbo-Croatian
Sesotho
Setswana
Seychellois Creole
Shona
Sindhi
Sinhalese
Slovak
Slovenian
Somali
Spanish
Spanish (Latin American)
Sundanese
Swahili
Swedish
Tajik
Tamil
Tatar
Telugu
Thai
Tigrinya
Tonga
Tshiluba
Tumbuka
Turkish
Turkmen
Twi
Uighur
Ukrainian
Urdu
Uzbek
Vietnamese
Welsh
Wolof
Xhosa
Yiddish
Yoruba
Zulu
To start things off we're going to take a look at how we can set up a testing environment for us to
be able to try out all these different techniques that we're going to be using for Android vulnerability
testing this sort of setup is going to be something that we'll be able to be used with any sort of application
that you're trying to test or do.
Vulnerability analysis on most applications are going to work in emulators through Android Studio.
So you don't have an actual Android device.
You'll be able to access it through Android Studio to be able to at least emulate it.
So you could download Android Studio from developer Di Android dot com backslash studio this you are
all right here and you're just gonna go ahead and download the Android Studio version that corresponds
to your operating system version.
In this case I'm using Windows.
So once that's downloaded you're gonna get this application that you'll be able to run and essentially
we'll just walk through the installation in this video and I'll demonstrate how we can set up some emulators
that we'll be able to utilize throughout these videos.
The Android Studio IDC is also going to come with a lot of different tools that are very valuable for
us that will allow us to interact with our emulators and our applications.
So we're gonna go to him next.
We want to get Android Studio and the Android virtual devices to make sure both of these are checked
up.
It will take up a two point three gigs of space does it really matter where you install it to just.
So wherever you would usually install your stuff then hit on install and it will go through the installation
process so once this installation process is complete you'll have the Android tool kit.
That's like HDB in those sort of tools that we'll be using throughout this.
And as well you have access to write your own code as well as run emulators.
So you ever want to test specific concepts Android Studio is a good way to do it because you're able
to actually write code inside of it.
In addition to this you have some emulator set up and you'll be able to access and work with those so
we'll discuss a bit about working with emulators as well to get an idea of that and that will be sort
of in future videos as well as the completed we can hit next and finish to launch Android Studio.
So now I will ask you whether you want to input any settings or not.
In this case I do have an older install that I can import from work and choose to import settings for
your first time you probably won't have to import anything at all.
So in this case again because I had an older installation it's going to ask me about things with system
files and I can sort of lead those directories just to clear up some of the data that's there.
And then from here a launch Android Studio now launching Android Studio will take a little bit of time.
It's it's it it's an application that typically is a little bit slow.
I guess you could say on a lot of computers it really depends on your computer it might take a little
bit of time to actually boot up to begin with.
So don't be alarmed if it takes some time to start up see once you get here a little loading the components
will load in the modules and then once this is done we'll be able to access what we're really looking
to get to which is the emulators.
Now I don't necessarily think that you have to install all of Android Studio in order to get to the
insulators but I think it's good to have the whole thing available just that way you're able to have
all of the features that come with interest studio because there's a lot of helpful stuff inside of
it.
So you'll see that you'll load into the Android Studio page.
Use might not look exactly like mine because mine has a current like application that's being developed
so yours might look slightly different.
However you should have all these toolbars available to you.
And the main toolbar that we're interested in is this one here which is the E D manager if you don't
have access to it through here.
I believe we're able to get access to it through the view.
There's a few different to a windows that are available inside of here.
You just want to make sure that each of your like toolbar and navigation bar and main menu instead as
far all enabled that you're able to access this when you click on this.
What it will do is it will load up a page that will show over Android virtual devices and you see in
this case I have none available which means that I can just create a new virtual device in this case.
So these virtual devices will have a little bit of customization you'll essentially have access to be
able to create things that mimic the hardware of any of the Google devices see to see that there's phones
there's TV there's the tablets the watch OS is the automotive voices as well so you can emulate any
of those and you can pick really any of these that you'd like.
Let's just say I'll pick a pixel three for this example and you'll see inside of here there'll be a
whole bunch of different operating systems that you can pick and you'll have to download them the first
time that you want to utilize them you'll see on here you can see like which version it is.
So there's like Android 10 Android nine hundred eight point one so you can really pick whatever Android
version you'd like for this one we'll just use Android nine point 0 because I have it downloaded and
available there are really too many major operating system differences when we're working with vulnerability
analysis of applications.
But in general you just want to pick operating systems that are supported still so whatever supported
by the application you're looking dependent pen test would be what you're picking out of here.
But in this case we'll just pick nine point 0 for this example and see we'll be able to give it a name.
So I'm going to call mine pixel 3 vulnerability analysis just to give it like a unique name so I know
what it is.
And you can customize other details about it such as like the startup orientations and the performance
pieces you should just leave these all defaults and click finish and now we'll have the device available
to us to see from here we can just click on the play button and this will actually launch the device
for us to be able to use.
So let's go ahead and try that and let it run again it might take a few minutes for it to launch the
emulators as well tend to be a little bit slow to startup but once things start it up then it starts
to run pretty well and you'll be able to like work with them relatively flawlessly depending on how
fast your computer is.
I think most modern computers would be able to run emulators fairly well of course emulators aren't
really computationally intensive for the phones because the phones themselves don't use a huge amount
of hardware comparative to computers.
But yeah I got your mileage may vary depending on what kind of computer you're using and just what this
is loading here.
Also note that if you have an Android device you can utilize it for this testing as well.
The reason why I use emulators myself is because we're gonna be installing purposefully vulnerable applications
onto these devices so we don't really want to do that on a live device.
We mostly want to do that on emulators that we aren't like impacting the performance of our actual devices.
Selves.
But if you do want to utilize it you can simply just plug in your USP device and then you'll have to
enable us be debugging which I'll talk about in a future video.
To be able to actually get onto the device through ADP and then from there you'll be able to follow
along just as if you were using an MBA later.
So just keep in mind you don't necessarily always have to use the emulators you can use things such
as devices as well.
So those will work to so we can tell that this is working and running because the size of that disk
is increasing as the emulator launches the size on the disk will slightly increase.
I think usually they end up taking about like nine or 10 gigs and then as you install more stuff they'll
start to take up more and more space.
So that's just something to generally keep in mind.
You'll notice down here it also says that it's indexing a lot of the time Android Studio is going to
be working through different things to index it get things set up.
So again just be patient with Android Studio.
It will eventually start to run the things that you need it to run.
So this at least gives you a good idea about how we can install the environments that we'll be able
to test with in the next video.
We'll take a look at how we can use ADP to shell into a device and we'll also take a look at how we
can then install the applications that we want to work with in these videos.
And then from there we'll dive right into the vulnerability analysis and take a look at the different
types of common vulnerabilities that exist.
Take a look at how to analyze applications and figure out what common vulnerabilities we might want
to look at.
So that's what we'll be what we take a look at in the next video.
For now you've got your emulator setup you've got your environment set up so you should be ready to
progress on.
Can't find what you're looking for?
Get subtitles in any language from opensubtitles.com, and translate them here.