On GitHub, class notes for an Android bug bounty course have been published — the repository Raunaksplanet/android-bugbounty-class-notes-notion. They cover emulator setup, APK analysis, and traffic interception via Burp Suite. Separate sections are dedicated to bypassing SSL pinning and root detection, as well as working with intents and deeplinks. This is a ready-made cheat sheet for those who want to practice finding vulnerabilities in mobile apps. You can test it right away on your own device: repeat the emulator setup and try to bypass the protection of a test app. The material will save hours of piecing together information.
Source: github.com · post in Telegram