Android Rootkits & Detection
From the rooting stack to detection engineering: how Magisk, Zygisk, KernelSU, APatch, and Frida hide — and how to build checks that catch them, validated on live farm devices.
Best for
Android security engineers, app-protection and RASP teams, fintech/SoftPOS security
What students work on
- Rooting stack internals: boot chain, Magisk patching, Zygisk injection, KernelSU and APatch kernel interfaces
- Detection engineering: cross-view checks, kernel probes, attestation, and their bypasses
- Hands-on labs on rooted farm devices from our validation lab