Skip to content

hakaioffsec/BEERUS

Repository files navigation


beerus

BEERUS

The main objective of Beerus APK is to exfiltrate packages located in the '/data/data/' directory. As demonstrated in various studies and articles, data exfiltration can occur through different paths within a smartphone, and some do not require a high level of permission. Currently, we are developing updates that will expand the capabilities of BEERUS APK. One of the features is the option to choose the path or file for data exfiltration precisely. This new feature will allow the application to not only be limited to the sandbox path but also explore other areas of the Android operating system.

Demo:

VIDEO

Download:

BEERUS.apk

Blogpost:

https://labs.hakaioffsec.com/beerus-apk-spotlighting-sandbox-exfiltration/

Slide from a talk at the H2HC 2023 Mobile Village Conference:

Slide