Had a co-worker recently ask if anyone had concrete reasons as to why it’s not good to compile an Android application with debugging enabled.
It is definitely something I always report in a mobile application penetration test but the boilerplate is pretty bare.
Well the other day I stumbled onto this blog post by Cristian R. it’s a quick read and a great walkthrough of the dangers. It may be from 2018 but it’s still applicable today!
Link HERE
Enjoy!
END TRANSMISSION