ReFlutter a Flutter App to Bypass SSL Pinning


ReFlutter

Install

pip3 install reflutter==0.7.8

Run

reflutter myapp.apk

Kemudian, masukkan IP Proxy BurpSuite yang nantinya akan digunakan untuk Intercept.

ReFlutter

Ingat bahwa konfigurasi network BurpSuite harus disesuaikan dengan instruksi ReFLutter <ipburp>:8083.


Setup Uber APK Signer

Repository

Download

wget https://github.com/patrickfav/uber-apk-signer/releases/download/v1.3.0/uber-apk-signer-1.3.0.jar
sudo mv uber-apk-signer-1.3.0.jar /usr/share/


Inject Uber Signer to APK File

java -jar /usr/share/uber-apk-signer-1.3.0.jar -a release.RE.apk

Inject Uber Signer to APK File


File APK terbaru yang akan digunakan (ReFluttered & Signed).

release.RE-aligned-debugSigned.apk