Hi,

I want to reverse engineer api of an Android app to make a custom client that works on linux. I have good understanding of Linux, Networking and coding.

Where should I start? Is it too hard?

0 points

You can use an APK decompiler to get to the source code of the app. There is probably some logic for building and decoding API messages in there.

permalink
report
reply
0 points

Interested to hear answers for this one… maybe MITM yourself and capture packets to see whats being sent?

permalink
report
reply
0 points

Yeah, that’s where I’d start. I have no idea how easy it would be to make heads or tails of it. I guess best case it’s all plaintext JSON.

permalink
report
parent
reply
0 points

Hardest part will probably be getting around encryption. At least when I tried something like this in the past, just installing a system wide self-signed root cert was not enough as the acceptable certificate was embedded in the app and it didn’t use the system certificate store.

permalink
report
parent
reply

Asklemmy

!asklemmy@lemmy.ml

Create post

A loosely moderated place to ask open-ended questions

Search asklemmy 🔍

If your post meets the following criteria, it’s welcome here!

  1. Open-ended question
  2. Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
  3. Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
  4. Not ad nauseam inducing: please make sure it is a question that would be new to most members
  5. An actual topic of discussion

Looking for support?

Looking for a community?

Icon by @Double_A@discuss.tchncs.de

Community stats

  • 11K

    Monthly active users

  • 3.3K

    Posts

  • 67K

    Comments