Skip to content

bnmgh1/Facebook-SSL-Pinning-Bypass

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 
 
 

Repository files navigation

Facebook-SSL-Pinning-Bypass

Bypass Facebook SSL Pinning in Android App.

Project Overview

This project hosts modified versions of the Facebook app (443.0.0.23.229) that include an SSL bypassing patch. This feature enables the interception and analysis of encrypted traffic, particularly focusing on Facebook's private APIs. The repository includes builds for different architectures to support a wide range of Android devices.

Custom SSL Certificate Warning 🔴

  • Notice: Users may encounter a security warning indicating that the APKs are unsafe. This warning is triggered by the custom SSL certificate used for signing the APKs.

Why This Warning Appears ℹ️

  • Reason: Android systems flag apps signed with custom or unfamiliar SSL certificates as potential security risks. This is a standard precautionary measure.

Safety Assurance ✅

  • Safety: Despite this warning, please be assured that these APKs are safe to use. They have been modified only to enable SSL bypassing, which is essential for analyzing Facebook's private API traffic.

User Responsibility ⚠️

  • Caution: Users should understand the implications of bypassing SSL and ensure they are complying with legal and ethical guidelines in their use of these APKs.

App Details

  • App Name: Facebook
  • Package Name: com.facebook.katana
  • Version: 443.0.0.23.229
  • Supported Architectures: ARM64 (arm64-v8a)

Modified APK Files

Facebook_443.0.0.23.229_arm64-v8a.apk

  • Architecture: ARM64 (arm64-v8a)
  • Description: Optimized for modern devices with ARM64 architecture, this APK offers enhanced performance and stability on the latest Android devices.

APK Comparison

APK File Architecture Description
Facebook_443.0.0.23.229_arm64-v8a.apk ARM64 (arm64-v8a) Optimized for modern ARM64 devices. Provides enhanced performance and stability.

Features

  • SSL Bypass Patch: Enables the interception of encrypted network traffic, facilitating the analysis of Facebook's private API calls.
  • Multiple Architectures: Tailored APK for ARM64 architectures, enhancing compatibility across different Android devices and emulators.

Usage Instructions

  1. Select the APK corresponding to your device's architecture.
  2. Download and install the APK on your Android device or emulator.
    • Ensure that 'Installation from unknown sources' is enabled in your device settings.
  3. Download and install BurpSuite..

Disclaimer

These modified APKs are for educational and research purposes only. It is essential to comply with all legal and ethical guidelines when intercepting network traffic.

Contributing

Contributions to this project are welcome. Please submit issues or pull requests for improvements or bug fixes.

Updates

For new updates, please send an email to tarun360@duck.com. I will try to provide updates as and when I have some free time.

Support

For any issues or queries, feel free to open an issue.

License

This project is licensed under the MIT License.

About

Bypass Facebook SSL pinning for Android Apps.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published