Metasploit - Embedding an Android Payload into a PDF?

Apr 24, 2016 11:38 PM

Hi there my hacking mates,

I recently fell in love with metasploit and currently I'm into pentesting Android devices. I already managed to drop an android meterpreter shell with help of an .apk, but I'd like to take it a step further.

Since there are quite a few ways (and exploits) for PDF documents for Windows, I was wondering if there is a way to embed an android meterpreter payload into an PDF.

I found a fileformat PDF exploit for Android devices in the Metasploit framework, but sadly I wasn't able to get it to work with an android meterpreter payload.

Is there a way to embed such a payload inside a PDF document, so when the user opens the PDF on their Android we will get a meterpreter session?

-B1337

Just updated your iPhone? You'll find new Apple Intelligence capabilities, sudoku puzzles, Camera Control enhancements, volume control limits, layered Voice Memo recordings, and other useful features. Find out what's new and changed on your iPhone with the iOS 18.2 update.

Related Articles

637263493835297420.jpg

How to Use Zero-Width Characters to Hide Secret Messages in Text (& Even Reveal Leaks)

636455706472146367.jpg

How to Hide DDE-Based Attacks in MS Word

Comments

No Comments Exist

Be the first, drop a comment!