Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

A Universal Way to Exploit Android PendingIntents in High-profile and System Apps

Black Hat via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course examines how insecure Android PendingIntents can be hijacked to execute intents with another app’s identity and permissions. It uses vulnerability case studies and covers automated hunting methods and security guidelines.

Syllabus

Intro
Agenda
Who we are
The Pendingintent API
Previous Research
Retrieving Pendingintents
Hijacking Insecure Pendingintents
Deep Dive Into PendingIntent
Hijacking Pendingintents with Implicit Base Intent
Case Studies
POC of CVE-2020-0188
CVE-2020-0389: Notification
A-166126300: MediaBrowser Service
Some High Profile Apps: AppWidgets
CVE-2020-0294: System Service
Restrictions on URI Grant from uid 1000
Hunting Insecure Pendingintents Automatically
Search APIs without IMMUTABLE
Search Empty or Implicit base Intents
Security Changes in Android 12
Security Guidelines
Final Advice

Taught by

Black Hat

Reviews

Start your review of A Universal Way to Exploit Android PendingIntents in High-profile and System Apps

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.