
Closed
Posted
Paid on delivery
I have an Android APK that must be taken apart, inspected, and stress-tested so I can see exactly where attackers could slip through. The sole objective is to identify vulnerabilities—no feature work, no code recovery, just a security deep dive. What you will do The job calls for classic Android reverse-engineering techniques: unpack the APK, de-obfuscate where possible, step through the code with JADX or similar, and hook live calls with tools such as Frida or Xposed to watch data flow. Network traffic, storage, inter-process communication, and custom crypto routines all need attention so any flaw—from insecure logging to poorly handled intents—pops out clearly. Expected outcome • A concise report that lists each vulnerability, explains the risk, and shows a reproducible proof-of-concept or trace. • Clear remediation advice for every issue you uncover. • Screenshots or captured logs that back up your findings. I will supply the release and debug builds, plus any credentials needed for authenticated areas. The engagement is complete once I can replicate your proofs and the report reads cleanly for my developers to action.
Project ID: 40600926
52 proposals
Remote project
Active 3 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
52 freelancers are bidding on average ₹21,529 INR for this job

Hello Client, Greeting of the day!!!! I read your job description I have sound of five years plus experience in App development. I have been DEVELOPED 35+ Apps, three taxi apps, Two socials apps and restaurant apps based on GPS location and notification functionality and based on different domain like sports, Health, GYM, personal business and social etc I have testing team for testing apps. I think I am strongest person for doing this job and provide the quality product with testing. I am always available for your support. Thanks Sr. Mobile Developer
₹12,500 INR in 15 days
6.6
6.6

Hello I am certified Ethical Hacker and Certified digital forensics professional with 9 years of industry experience in penetration testing of web Mobile and network applications. I can conduct comprehensive penetration tests on the android application following the. Industry security benchmark of OWASP to 10 moblie Detailed VAPT report would be provided along with actionable recommendation Regards Kajal Majhi
₹25,000 INR in 7 days
5.3
5.3

Hello!! I've carefully reviewed your requirements and can perform a comprehensive Android APK security assessment using industry-standard reverse engineering and dynamic analysis techniques. I'll inspect the app for insecure storage, network communication, IPC issues, authentication flaws, exposed secrets, logging, and cryptographic weaknesses, then provide a detailed report with reproducible findings, risk ratings, evidence, and practical remediation recommendations. I can share similar mobile security assessment experience in chat. Thanks!
₹20,000 INR in 6 days
4.8
4.8

As an experienced Full Stack Developer with a strong focus on Mobile App Development, I am confident that I possess the skills necessary to handle this project effectively. Having successfully completed over 200 projects in my 8+ years of experience, I have honed my abilities in activities such as reverse-engineering and vulnerability assessment on the Android platform. In terms of expertise, I am highly proficient in languages such as Java, which is essential for your project, and I have an intimate understanding of mobile app technology. My proficiency with tools like JADX and Frida/Xposed will undoubtedly be advantageous to analyze your APK, identify vulnerabilities and track data flow accurately, ensuring no stone is left unturned in unraveling potential risks. Moreover, my commitment to delivering fast, reliable results aligns perfectly with your project needs. Upon completion, you can expect a clear and concise report from me that not only details every vulnerability found but also provides actionable remediation advice. Let my strong background in delivering scalable and secure solutions help you ensure the safety of your application. Together, we can identify these vulnerabilities through a meticulous analysis and create a more robust product for your users. Let's take this step towards heightened protection and working together to build a secure digital future!
₹27,500 INR in 7 days
4.9
4.9

App pentest starts with static inspection—unpack, decompile, map out classes and crypto, then move to dynamic checks using Frida and packet capture. I do this as a security audit piece, not for source code or mods: APK, live traffic, storage (SharedPreferences, SQLite), exported components, and malicious intent simulation. My last delivery was a reverse engineering report for an AI health app (audit only, under NDA). You get a clear list of issues, PoCs, and logs with direct remediation notes. Is root/jailbreak allowed for dynamic testing, or must I stay within standard user mode? Pradeep
₹25,000 INR in 7 days
4.5
4.5

As an experienced developer with a strong focus on Android and Mobile App Development, I am well-equipped to take on the challenge of your project. I have a deep understanding of the inner workings of Android apps, having spent numerous years reverse-engineering, de-obfuscating, and analyzing APKs. I am proficient in using various industry-standard tools (such as JADX, Frida, and Xposed) that are essential for this type of vulnerability analysis. In addition to my technical capabilities, I believe what sets me apart is my commitment to delivering high-quality work that aligns with your specific needs. I take a meticulous and disciplined approach to all my projects—from detailed documentation to providing clear reproducible proof-of-concepts. I fully understand the importance of clear remediation advice and will ensure each vulnerability identified is paired with actionable steps for your developers. Lastly, I can offer you more than just the completion of a project. After successful delivery, my ongoing support extends for 3 months, ensuring that any post-analysis questions or clarifications are answered promptly. Moreover, my affordable domain hosting options and SEO services can be an added advantage as you optimize your app's security+ feature efficacy at reduced costs. Given my expertise, dedication and additional value-added benefits, choosing me for your project would guarantee comprehensive results that will enhance the overall security posture of your android app.
₹25,000 INR in 7 days
5.3
5.3

With over a decade of expertise as a full-stack developer and a specialization in mobile application development, particularly in Android and Kotlin, I have continually committed myself to leveraging my proficiency in order to produce secure and high-performing applications. My extensive experience falls directly in line with the requirements of your project—to take apart, scrutinize, and identify vulnerabilities on your Android APK. Utilizing classic Android reverse-engineering techniques combined with advanced tools such as JADX, Frida, and Xposed, I will dissect every aspect of the APK; from network traffic to storage, inter-process communication and custom crypto routines. My analysis will not only yield a comprehensive report that details every vulnerability uncovered and accompanied by a traceable proof-of-concept but also provide you with clear remedies for each issue. Rest assured, my deliverables will be easily understandable for both developers and non-developers.
₹12,500 INR in 7 days
4.3
4.3

I can help perform a structured security assessment of your Android APK and provide a clear understanding of potential weaknesses before they become production risks. The focus would be on analysis rather than feature changes, with findings documented in a way your developers can act on. I would review the APK through static and dynamic analysis, including decompilation, code inspection, manifest and permission review, insecure data storage checks, network communication analysis, intent handling, logging exposure, and cryptographic implementation review where applicable. For runtime validation, I would use appropriate instrumentation and monitoring techniques to trace application behavior and confirm whether suspected issues are reproducible. The final report would include vulnerability details, severity assessment, evidence such as logs or screenshots, reproduction steps, and practical remediation recommendations. I would also highlight areas that are currently implemented securely so your team has a balanced view of the application’s security posture. Could you confirm the Android version range the app supports and whether the APK includes certificate pinning, obfuscation, or any protected authentication flows that need special handling?
₹12,500 INR in 9 days
4.1
4.1

With my deep understanding of mobile app development and broad skill set that includes reversing, de-obfuscation, network analysis, crypto-analysis, and pentesting among others, I'm the ideal candidate to comprehensively analyze your Android APK for vulnerabilities. By leveraging tools such as JADX, Frida, and Xposed; I'll thoroughly analyze every aspect of your app's code - from data flow during live calls to how it handles storage and inter-process communication. My report will be concise yet informative detailing each vulnerability identified, quantifying the risks involved, and providing solid proof-of-concepts or traces for replicability. Additionally, I will include screenshots or logs that support my findings. Moreover, partnering with businesses throughout their growth journey is one of my core strengths. Therefore not only will I ensure efficient delivery of this project but also establish a long-term relationship whereby you can rely on me for your future technological needs. Let's fortify your app together making it impervious to any probable attack.
₹25,000 INR in 6 days
3.9
3.9

We at Offensium Vault Private Limited (ISO 27001:2022 & ISO 9001:2015) specialize in Android application security assessments and can perform a comprehensive security review of your APK using both static and dynamic analysis. Scope * Reverse engineer the APK using JADX, APKTool, Ghidra, and manual code review * Dynamic analysis with Frida, Objection, Burp Suite, mitmproxy, and MobSF * Assess authentication, local storage, IPC, WebViews, SSL/TLS implementation, certificate pinning, cryptography, logging, hardcoded secrets, and root detection * Identify vulnerabilities aligned with OWASP Mobile Top 10 and MASVS Deliverables * Detailed report with CVSS severity ratings, risk descriptions, PoC evidence, screenshots, and logs * Reproducible validation steps for every confirmed finding * Actionable remediation guidance prioritized by risk * Optional remediation verification after fixes are implemented We have extensive experience testing Android applications for fintech, healthcare, and enterprise environments, ensuring all findings are manually validated with minimal false positives. Ready to begin as soon as the APKs, credentials, and testing scope are provided.
₹25,000 INR in 7 days
3.6
3.6

Drawing from my broad and deep knowledge of Android development and sensitivity to security issues that can cripple any product, I can assure you a highly efficient and professional vulnerability analysis of your Android APK. Over the course of my 5+ year career as a full-stack developer with a specialization in mobile app development, I have obtained and implemented powerful strategies to root out various vulnerabilities and bolster app security. Moreover, I carry out these endeavors creatively in order to ensure real results that are difficult to replicate. I understand completely that the objective is not recovery or feature work. My proficiency includes not just Android and Java, but extends further into the realm of custom web applications, AI-powered solutions, SaaS platforms, CRM/ERP systems, and business automation tools. The sum-total of this experience guarantees I would be able to comprehensively analyze not just code-level vulnerabilities but also multifarious types such as in storage, inter-process communication etc., which you've pointed out as needing attention. I commit myself completely to the task at hand. This extends beyond merely identifying newfound vulnerabilities; It means giving clear concise reportifications of each vulnerability explaining the risk and showing an easily recreatable proof-of-concept or trace.
₹25,000 INR in 7 days
3.8
3.8

As an experienced Full Stack Mobile & Web Developer, I have a deep-rooted knowledge and understanding of Android APKs and their vulnerabilities. Over the past five years, I've built over 50 mobile applications and have specialized in their robustness in terms of performance, security, and scalability. The skills that you explicitly require for this project lie comfortably within my skill set, with extensive knowledge in Android App Development using Kotlin and Java. Additionally, being familiar with tools like JADX and Frida will help in smooth examination of codes and monitoring data flow as needed. Completing your project effectively and efficiently is my top priority. You can expect an assertive report defining each vulnerability identified along with a reproducible proof-of-concept or trace. The remediation advice will be given for every issue discovered. With meticulousness complemented by clear communication at every stage, I assure to provide a detailed report that reads cleanly for your developers' comprehension. Your project aligns perfectly with my passion for creating highly secured apps for our digital spaces. Let's join hands in making your application more impregnable, scalable, and reliable!
₹25,000 INR in 7 days
1.9
1.9

Starting with JADX decompilation and Frida hooking is the right call, but the order matters. I'll map the attack surface statically first, then use dynamic instrumentation to confirm what's actually exploitable versus what just looks scary in decompiled code. I'll unpack both builds, trace network calls and IPC channels for data leaks, and deliver a vulnerability report with reproducible PoCs and remediation guidance for each finding. One thing worth flagging: custom crypto routines in Android apps often look "secure" in static analysis but fall apart under Frida hooks because keys get logged to Logcat in debug builds. I'll specifically test for that. 1) Does the app use certificate pinning, and should I test bypass scenarios as part of the scope? Happy to talk details in chat. Shayan
₹13,750 INR in 9 days
0.9
0.9

Dear Client, I am excited about your Android security assessment project. I have strong experience reverse-engineering APKs, identifying vulnerabilities, and providing clear remediation advice. --- **What is your target of this project?** Conduct a security deep-dive on your Android APK—reverse-engineer with JADX, hook with Frida/Xposed, analyse network traffic, storage, IPC, and crypto routines—then deliver a detailed vulnerability report with PoC and remediation. --- **Core skills:** - APK Reverse Engineering (JADX, APKTool) - Dynamic Analysis (Frida, Xposed) - Network Traffic Analysis - Storage & IPC Security - Vulnerability Reporting --- **How I solve & deliver:** 1. Unpack and de-obfuscate the APK. 2. Analyse code, network, and storage. 3. Hook live calls and inspect data flow. 4. Identify and document vulnerabilities. 5. Deliver report with PoC and fixes. --- Thank you for your time. I am confident I can deliver a thorough, actionable security report. Best Regards
₹12,500 INR in 5 days
0.0
0.0

Hi, The goal of this project is to identify security weaknesses in your Android application through a structured assessment that provides actionable findings for your development team. My approach is to perform a comprehensive security review by analyzing the APK, examining application logic, inspecting network communication, local storage, IPC components, authentication flows, and cryptographic implementations. Where appropriate, I'll use standard security testing techniques and dynamic analysis to validate findings and reproduce potential vulnerabilities. The final deliverable will be a well-organized report detailing each vulnerability, its severity, business impact, reproducible evidence, and practical remediation recommendations. I'll also include screenshots, logs, and proof-of-concept traces where applicable, ensuring your developers can easily verify and address each issue. My focus is to deliver a thorough, professional security assessment that improves the application's resilience without affecting existing functionality. I look forward to discussing your project and security objectives in more detail. Thank you for your time and consideration.
₹15,000 INR in 4 days
0.0
0.0

Android APK Security Assessment — Engagement Proposal We will conduct a focused vulnerability assessment of your Android application across both release and debug builds. The engagement covers five attack surfaces: static code analysis (APK decompilation via JADX, secret detection, manifest audit), network traffic interception (certificate pinning bypass, Burp Suite proxy, API auth testing), runtime instrumentation (Frida hooking of crypto and auth methods, anti-tamper bypass), IPC and storage attacks (exported component fuzzing via drozer, on-device data inspection), and cryptography review (cipher modes, IV reuse, key derivation). Deliverables A structured vulnerability report with CVSS scores, reproduction steps, and remediation guidance for every finding. Supporting evidence includes Frida scripts, captured traffic logs, and screen recordings. A developer-ready issue backlog (CSV/JSON) and a 60-minute engineering walkthrough call are included. Timeline: 10 working days from asset handover — static analysis (Days 1–3), dynamic testing (Days 4–6), PoC development (Days 7–8), report and walkthrough (Days 9–10). Investment: [Your day rate × 9 days]. 50% on signing, 50% on draft report delivery. One round of critical-fix retesting included within 30 days at no extra charge. Timelines can change after discussion of scope
₹30,000 INR in 14 days
0.0
0.0

Hello, I have seen your are looking Android security analyst working in Android, Penetration Testing and Reverse Engineering I am having 7 years of experienced as security analyst and I will work according to your features list. Please share more details of your project. Looking forward to your response Thanks
₹12,500 INR in 3 days
0.0
0.0

I have more than 2 years of experience working with Android applications, Java, API security, and application analysis, including debugging, traffic inspection, and security assessments. Hidden client side weaknesses can expose sensitive data and allow attackers to bypass intended protections. I would perform a structured security assessment using tools such as JADX, Frida, and Burp Suite to analyze code paths, runtime behavior, network communication, storage, and IPC, then provide reproducible findings with remediation guidance. Dynamic analysis is important because many security issues only appear during execution and cannot be identified through static inspection alone. Is the application protected with packing, root detection, or certificate pinning that should be evaluated as part of the assessment? Happy to discuss details in chat. Regards, Fizza Mushtaq
₹12,500 INR in 7 days
0.0
0.0

The difference between an average result and an exceptional one is usually decided before the work even begins. One small detail in your project could have a big impact on the final outcome: the potential for hidden dependencies that may not be immediately apparent during analysis. Overlooking these can lead to vulnerabilities being masked. In a previous project, I conducted a similar vulnerability assessment for a banking app, uncovering critical security flaws that had gone undetected. The outcome led to a robust security overhaul, greatly enhancing user trust and compliance. I understand your goal is to pinpoint vulnerabilities and provide actionable remediation. My approach will involve meticulous reverse-engineering techniques, thorough testing of all data flows, and clear documentation of findings. With a focus on long-term security, I’ll ensure your app is fortified against potential threats. Regards, Ethan
₹15,400 INR in 8 days
0.0
0.0

I FOUND THE PART OF YOUR PROJECT THAT WILL DETERMINE WHETHER IT SUCCEEDS OR STRUGGLES. Overlooking the potential for false positives during the vulnerability analysis can lead to wasted resources and confusion for your developers, ultimately hindering your project's progress. With your focus on identifying vulnerabilities in the Android APK, I can ensure a thorough investigation that prioritizes clarity and actionable insights. My approach involves meticulous unpacking and de-obfuscation, coupled with live data monitoring to capture every security flaw. I will deliver a concise report detailing each vulnerability, complete with risk assessments, reproducible proofs, and clear remediation advice to facilitate swift action by your development team. I am confident that my expertise in Android security will provide you with the insights needed for robust application protection. The difference between an average result and an exceptional one is usually decided before the work even begins. Regards Junaid
₹18,750 INR in 7 days
0.0
0.0

Patna, India
Member since Apr 16, 2026
₹1500-12500 INR
₹1500-12500 INR
₹600-1500 INR
₹600-1500 INR
₹100-400 INR / hour
$15-25 USD / hour
₹12500-37500 INR
₹37500-75000 INR
$10-30 USD
₹1000-10000 INR / hour
₹37500-75000 INR
₹12500-37500 INR
$30-250 USD
₹600-1500 INR
$3000-5000 USD
$250-750 AUD
$250-750 USD
min $50 USD / hour
₹1500-12500 INR
$25-50 USD / hour
$250-750 USD
$250-750 USD
₹300-3500 INR / hour
$10-30 USD
₹750-1250 INR / hour