Mastering Mobile Security! Specialized in iOS & Android exploit development and vulnerability research. Offensive mobile training and Arm64 lab environmentmobilehackinglab.comJoined January 2023
FIRST Ever Online Mobile Hacking Conference
Free, worldwide online event bringing the mobile security community together for sessions on mobile hacking, AI, malware, forensics, live mobile‑focused CTF with prizes!
When: March 3 and 4, 2026
Register here: mobilehackinglab.com/mobile-hacking…
😨 From JSInterface bug to 1-click RCE and a 5-figure bounty...
A while ago, our teammate Lyes found a vulnerability in an Android app that eventually earned a 5 figure bug bounty payout.
Finding and validating the full chain manually took ~4 days, which later sparked a simple question. 👇
How much time would this take using Djini.ai?
In the blog post, Lyes walks through both perspectives.
First, the exploit chain as it was pieced together manually.
Then, how the same risky surface surfaced again when retraced with Djini, but in significantly less time.
👉 Full write-up: lnkd.in/eNHkFMM8
🚨 DJINI.AI IS LIVE!
NEW website. NEW interface.
And NEW crazy subscriptions with complementary MHL courses included!
AI agents now help you:
⚡ static + dynamic testing, automated
⚡ fuzz native interfaces & JNI
⚡ auto-collect evidence + reports - incl. screenshots
⚡ logically click through flows for you
⚡ explore real app behavior (iOS & Android) - Visual Intelligence
Want to win FREE access?
Comment on our LinkedIn launch post 👇
linkedin.com/feed/update/ur…
🚨𝗡𝗲𝘄 𝗠𝗼𝗱𝘂𝗹𝗲 𝗖𝗼𝗺𝗶𝗻𝗴: 𝗦𝗰𝘂𝗱𝗼 𝗛𝗘𝗔𝗣 𝗘𝘅𝗽𝗹𝗼𝗶𝘁𝗮𝘁𝗶𝗼𝗻
Scudo replaced the heap. Hardening went up. Old patterns stopped working.
A Scudo Exploitation module is dropping in the coming weeks for Android Userland Fuzzing & Exploitation.
Already enrolled? Lifetime access applies.
Enroll now, get access at drop 👇
mobilehackinglab.com/afe-promo
📱 Sponsor alert!
@MobileHackLab joins #MCC2025 as a Community Hacker sponsor 🎉
They’re giving away Android course vouchers + exam attempts!
Pro tip 👉 Attend the Android Workshop @ MCC2025 to get a head start 🚀
🔗 linkedin.com/feed/update/ur…
It's confirmed! Ken Gannon / 伊藤 剣 (@Yogehi) of Mobile Hacking Lab, and Dimitrios Valsamaras (@Ch0pin) of Summoning Team (@SummoningTeam) used five different bugs to exploit the #Samsung Galaxy S25. They earn $50,000 and 5 Master of Pwn points. #Pwn2Own
Misconfigured exported services can be exploited for privilege Escalation, data leakage or remote code execution. Is a serious risk for Mobile application.
#MAPT@MobileHackLab it’s a great platform to learn 💜💜
Bismillah.
Releasing a new blog on “Exploiting Unsanitized URL Handling and SQL Injection through Deep Links” -> Write-up of Flipcoin Lab for iOS, from @MobileHackLab.
medium.com/@YoKoKho/explo…
Bismillah.
Releasing a new blog on “Bypassing iOS Jailbreak Detection by Patching the Binary with Ghidra” -> Write-up of No Escape Lab from @MobileHackLab.
medium.com/@YoKoKho/bypas…
Note: If you’re already familiar with the fundamentals, just please jump straight to Chapter 4.4.
133 Followers 247 FollowingHead of mobile security at Reversec, drozer maintainer, amateur balcony gardener, professional rambler.
Opinions shared here are those of your employer.
7K Followers 3K Followingaka Drego. Head of Cyber Threat Intelligence at @D3LabIT! @PhishingArmy, #meioc is my projects and @backbox_org dev! My passions are #F1 and #Running!
1K Followers 419 FollowingAuthor of Fuzzing Against the Machine
founder @fuzzsociety_org
Lead @ Zimperium Inc
Previously at https://t.co/Vv2eAzDOmC, https://t.co/1UUZqbAGYZ, https://t.co/jTibP1ivk8
28K Followers 108 FollowingMobile and IoT device virtualization on Arm. On-site and in the cloud. To sign up or learn more, visit us at https://t.co/2Sc3DIPzbX