Uploaded December 2022 | Updated September 2026, 40 minutes ago
In this presentation, Nerdwell reviews common developer assumptions about mobile application security and explores ways in which these assumptions can be invalidated. We begin with a review of some new tools that streamline the bug bounty hunter's Android hacking workflow. After that, we present tools and techniques for accessing, identifying, and extracting sensitive data from Android apps' internal storage. Then we wrap up with a discussion of how to maximize the security impact of our findings for impactful bug bounty reports.
Want to get involved?
We’re always looking for researchers and hackers like you who have tips, tricks, and skills that you want to share with the community! If you have any questions, or would like to participate with LevelUpX, please reach out to researcher.marketing@bugcrowd.com
In this presentation, Nerdwell reviews common developer assumptions about mobile application security and explores ways in which these assumptions can be invalidated. We begin with a review of some new tools that streamline the bug bounty hunter's Android hacking workflow. After that, we present tools and techniques for accessing, identifying, and extracting sensitive data from Android apps' internal storage. Then we wrap up with a discussion of how to maximize the security impact of our findings for impactful bug bounty reports.
Want to get involved?
We’re always looking for researchers and hackers like you who have tips, tricks, and skills that you want to share with the community! If you have any questions, or would like to participate with LevelUpX, please reach out to researcher.marketing@bugcrowd.com










