google / tsunami-security-scanner-plugins

This project aims to provide a central repository for many useful Tsunami Security Scanner plugins.
Apache License 2.0
860 stars 178 forks source link

PRP: Exposed Android Debug Bridge #481

Open am0o0 opened 1 month ago

am0o0 commented 1 month ago

Reference: https://hackeracademy.org/how-to-hack-android-device-with-adb-android-debugging-bridge/

as you can see it is a dangerous and widespread misconfiguration.

it is a TCP connection, I think we can send the payload using ADB java drivers like this one https://github.com/vidstige/jadb