Introduce two App sensitive information collection tools
1.APKLeaks
APKLeaks is an apk file sensitive information scanning tool, it scans apk to obtain URI, endpoint and secret information
Install:
pip install apkleaks
Basic usage method:
It is very simple to use, just execute the following command:
apkleaks -f file.apk
If you have not installed the decompilation tool jadx, you will be prompted to install it, just enter Y:
All command options:
-f,