Drozer Notes

Certian commands and points which I came accross while learning drozer. Still in learning phase so expect more modification in future.

$ adb forward tcp:<Local_Port> tcp:<Device_Port>

$ drozer console connect

dz> run app.package.list -f <Application_Label>

dz> run app.package.list -p android.permission.<Permission_Name>

dz> run app.package.info -p android.permission.<Permission_Name>

dz> list package or dz> ls

dz> module search -d

dz> module install <module_name>

dz> run app.package.info -a <Package_Identifier>

dz> run app.package.info -a <Package_Identifier> > /path/to/saveit.txt

dz> run app.package.attacksurface <Package_Identifier>

dz> app.package.manifest <Package_Identifier>

dz> run app.activity.info -a <Package_Identifier>

dz> run app.activity.start --component <Package_Identifier> <Package_Activity_Name>

dz> run app.provider.info -a <Package_Identifier>

dz> run scanner.provider.finduris -a <Package_Identifier>

dz> run app.provider.query content://<Package_Indentifier>.<Content_Provider>/<Path>/ --vertical

dz> run app.provider.query content://<Package_Identifier>.<Content_Provider>/<Path>/ --projection "'"

dz> run app.provider.query content://<Package_Identifier>.<Content_Provider>/<Path>/ --selection "'"

dz> run app.provider.read content://<Package_Identifier>.<Content_Provider>/<Path>

<dz> run app.provider.download content://<package_Identifier>.<Content_Provider>/<Path> <Local><DIR><Path>

dz> run scanner.provider.injection -a <Package_Identifier>

dz> run scanner.provider.traversal -a <Package_Identifier>

dz> run app.service.info -a <Package_Identifier>

Other Modules…

dz> shell

dz> tools.file.upload

dz> tools.file.download

dz tools.setup.busybox

dz tools.setup.minimalsu


Written by avicoder on 29 March 2016