移动应用安全检测报告: ⁡⁡Tianqi⁡⁡ v2.7.0

安全基线评分


安全基线评分 46/100

综合风险等级


风险等级评定

  1. A
  2. B
  3. C
  4. F

漏洞与安全项分布(%)


隐私风险

3

检测到的第三方跟踪器数量


检测结果分布

高危安全漏洞 8
中危安全漏洞 41
安全提示信息 4
已通过安全项 3
重点安全关注 3

高危安全漏洞 程序可被任意调试

[android:debuggable=true]
应用可调试标签被开启,这使得逆向工程师更容易将调试器挂接到应用程序上。这允许导出堆栈跟踪和访问调试助手类。

高危安全漏洞 App 链接 assetlinks.json 文件未找到

[android:name=][android:host=http://m12345.cc]
App Link 资产验证 URL (http://m12345.cc/.well-known/assetlinks.json) 未找到或配置不正确。(状态代码:None)。应用程序链接允许用户从 Web URL/电子邮件重定向到移动应用程序。如果此文件丢失或为 App Link 主机/域配置不正确,则恶意应用程序可以劫持此类 URL。这可能会导致网络钓鱼攻击,泄露 URI 中的敏感数据,例如 PII、OAuth 令牌、魔术链接/密码重置令牌等。您必须通过托管 assetlinks.json 文件并通过 Activity intent-filter 中的 [android:autoVerify=“true”] 启用验证来验证 App Link 网域。

高危安全漏洞 App 链接 assetlinks.json 文件未找到

[android:name=][android:host=https://m12345.cc]
App Link 资产验证 URL (https://m12345.cc/.well-known/assetlinks.json) 未找到或配置不正确。(状态代码:None)。应用程序链接允许用户从 Web URL/电子邮件重定向到移动应用程序。如果此文件丢失或为 App Link 主机/域配置不正确,则恶意应用程序可以劫持此类 URL。这可能会导致网络钓鱼攻击,泄露 URI 中的敏感数据,例如 PII、OAuth 令牌、魔术链接/密码重置令牌等。您必须通过托管 assetlinks.json 文件并通过 Activity intent-filter 中的 [android:autoVerify=“true”] 启用验证来验证 App Link 网域。

高危安全漏洞 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。

应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/alivc/rtc/device/utils/AESUtils.java, line(s) 39,46
im/rightkinghts/ui/hui/friendscircle/okhttphelper/AESHelper.java, line(s) 50
im/rightkinghts/ui/utils/AesUtils.java, line(s) 27,49,58
im/rightkinghts/ui/utils/ChiperUtils.java, line(s) 51,73,82

高危安全漏洞 如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击

如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-7

Files:
im/rightkinghts/ui/ArticleViewer.java, line(s) 7340,61,62
im/rightkinghts/ui/components/EmbedBottomSheet.java, line(s) 677,33,34

高危安全漏洞 不安全的Web视图实现。Web视图忽略SSL证书错误并接受任何SSL证书。此应用程序易受MITM攻击

不安全的Web视图实现。Web视图忽略SSL证书错误并接受任何SSL证书。此应用程序易受MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#webview-server-certificate-verification

Files:
com/base/module/web/X5WebView.java, line(s) 233,232

高危安全漏洞 启用了调试配置。生产版本不能是可调试的

启用了调试配置。生产版本不能是可调试的
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04c-Tampering-and-Reverse-Engineering.md#debugging-and-tracing

Files:
com/bjz/comm/net/BuildConfig.java, line(s) 3,8
com/litesuits/orm/BuildConfig.java, line(s) 3,4
com/serenegiant/uvccamera/BuildConfig.java, line(s) 3,6

高危安全漏洞 SSL的不安全实现。信任所有证书或接受自签名证书是一个关键的安全漏洞。此应用程序易受MITM攻击

SSL的不安全实现。信任所有证书或接受自签名证书是一个关键的安全漏洞。此应用程序易受MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#android-network-apis

Files:
com/base/module/dns/DnsModule.java, line(s) 105,15,16,17,18

中危安全漏洞 应用程序已启用明文网络流量

[android:usesCleartextTraffic=true]
应用程序打算使用明文网络流量,例如明文HTTP,FTP协议,DownloadManager和MediaPlayer。针对API级别27或更低的应用程序,默认值为“true”。针对API级别28或更高的应用程序,默认值为“false”。避免使用明文流量的主要原因是缺乏机密性,真实性和防篡改保护;网络攻击者可以窃听传输的数据,并且可以在不被检测到的情况下修改它。

中危安全漏洞 应用程序数据存在被泄露的风险

未设置[android:allowBackup]标志
这个标志 [android:allowBackup]应该设置为false。默认情况下它被设置为true,允许任何人通过adb备份你的应用程序数据。它允许已经启用了USB调试的用户从设备上复制应用程序数据。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Broadcast Receiver (com.google.android.gms.measurement.AppMeasurementReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危安全漏洞 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危安全漏洞 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危安全漏洞 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危安全漏洞 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危安全漏洞 Activity设置了TaskAffinity属性

()
如果设置了 taskAffinity,其他应用程序可能会读取发送到属于另一个任务的 Activity 的 Intent。为了防止其他应用程序读取发送或接收的 Intent 中的敏感信息,请始终使用默认设置,将 affinity 保持为包名

中危安全漏洞 Activity设置了TaskAffinity属性

()
如果设置了 taskAffinity,其他应用程序可能会读取发送到属于另一个任务的 Activity 的 Intent。为了防止其他应用程序读取发送或接收的 Intent 中的敏感信息,请始终使用默认设置,将 affinity 保持为包名

中危安全漏洞 Activity设置了TaskAffinity属性

()
如果设置了 taskAffinity,其他应用程序可能会读取发送到属于另一个任务的 Activity 的 Intent。为了防止其他应用程序读取发送或接收的 Intent 中的敏感信息,请始终使用默认设置,将 affinity 保持为包名

中危安全漏洞 Broadcast Receiver (im.rightkinghts.messenger.AutoMessageHeardReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.messenger.AutoMessageReplyReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.messenger.MusicPlayerReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.messenger.voip.VoIPMediaButtonReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.messenger.AppStartReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (qitian.rightkinghts.youiyouiyuoiyouiyoui.RefererReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.keepalive.MonitorReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Broadcast Receiver (im.rightkinghts.keepalive.ScreenReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Service () 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危安全漏洞 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危安全漏洞 可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息

可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-6

Files:
com/base/module/web/MyWebView.java, line(s) 134,127
com/base/module/web/X5WebView.java, line(s) 142,131
im/rightkinghts/ui/hui/discoveryweb/DiscoveryJumpToPage.java, line(s) 253,246

中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
com/alivc/rtc/device/core/persistent/PersistentConfiguration.java, line(s) 52,151,326,376
com/base/module/web/X5WebView.java, line(s) 252
com/base/utils/FileUtils.java, line(s) 39,74,372,393
com/base/utils/HttpUtils.java, line(s) 71
com/base/utils/PhotoUtils.java, line(s) 66,72
com/base/utils/SystemUtils.java, line(s) 335,352
com/danikula/videocache/StorageUtils.java, line(s) 26,45
im/rightkinghts/messenger/AndroidUtilities.java, line(s) 1225,616,1219,1220
im/rightkinghts/messenger/FileLog.java, line(s) 49,82,331
im/rightkinghts/messenger/ImageLoader.java, line(s) 1421,1422
im/rightkinghts/messenger/SharedConfig.java, line(s) 657
im/rightkinghts/messenger/voip/VoIPController.java, line(s) 300
im/rightkinghts/ui/DocumentSelectActivity.java, line(s) 415,507,507,507,510
im/rightkinghts/ui/SettingsActivity.java, line(s) 1135
im/rightkinghts/ui/components/voip/VoIPHelper.java, line(s) 486
im/rightkinghts/ui/dialogs/McShareDialog.java, line(s) 167
im/rightkinghts/ui/fragments/MeFragmentV2.java, line(s) 865
im/rightkinghts/ui/hui/chats/GroupShareActivity.java, line(s) 264
im/rightkinghts/ui/hui/mine/AboutAppActivity.java, line(s) 375
im/rightkinghts/ui/hui/mine/QrCodeActivity.java, line(s) 362
im/rightkinghts/ui/hviews/helper/MryDisplayHelper.java, line(s) 278
im/rightkinghts/ui/utils/DeviceIdUtil.java, line(s) 83,84
im/rightkinghts/ui/utils/DownloadUtils.java, line(s) 142

中危安全漏洞 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/base/utils/MD5Util.java, line(s) 14
com/base/utils/SecurityUtils.java, line(s) 52
com/bjz/comm/net/utils/MD5Utils.java, line(s) 19
com/danikula/videocache/ProxyCacheUtils.java, line(s) 74
com/litesuits/orm/db/assit/Encrypt.java, line(s) 35
im/rightkinghts/messenger/AndroidUtilities.java, line(s) 2171
im/rightkinghts/messenger/FileUploadOperation.java, line(s) 418
im/rightkinghts/messenger/Utilities.java, line(s) 371
im/rightkinghts/translate/MD5.java, line(s) 21,52
im/rightkinghts/ui/hui/friendscircle/okhttphelper/MD5Utils.java, line(s) 19
im/rightkinghts/ui/utils/ChiperUtils.java, line(s) 17

中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
com/danikula/videocache/sourcestorage/DatabaseSourceInfoStorage.java, line(s) 6,7,28
com/litesuits/orm/db/assit/Querier.java, line(s) 4,14

中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
com/alivc/rtc/device/UTUtdid.java, line(s) 23,24,43
com/bjz/comm/net/bean/AtUserBean.java, line(s) 60
com/bjz/comm/net/bean/FCEntitysRequest.java, line(s) 49
com/bjz/comm/net/bean/FCEntitysResponse.java, line(s) 121
com/bjz/comm/net/bean/FcUserInfoBean.java, line(s) 116
com/bjz/comm/net/bean/MiniGameBean.java, line(s) 113
com/bjz/comm/net/bean/ResponseAccessTokenBean.java, line(s) 60
com/litesuits/orm/db/assit/SQLBuilder.java, line(s) 62
com/litesuits/orm/db/model/EntityTable.java, line(s) 32
com/litesuits/orm/db/model/MapProperty.java, line(s) 7
com/yhao/floatwindow/FloatLifecycle.java, line(s) 13,14
com/zhy/http/okhttp/builder/PostFormBuilder.java, line(s) 48
im/rightkinghts/javaBean/ShareInstallConfigBean.java, line(s) 46
im/rightkinghts/messenger/ContactsController.java, line(s) 1191,1532
im/rightkinghts/messenger/FileRefController.java, line(s) 130,162,179,194,199,204,211,229,226,232
im/rightkinghts/messenger/ImageLoader.java, line(s) 774
im/rightkinghts/messenger/LocaleController.java, line(s) 553
im/rightkinghts/messenger/NotificationsController.java, line(s) 2178,2223
im/rightkinghts/messenger/SendMessagesHelper.java, line(s) 2282,1469,1477,3118
im/rightkinghts/tgnet/TLRPC$User.java, line(s) 98
im/rightkinghts/tgnet/TLRPC.java, line(s) 38457,37279,37445,38457,32598,34629,31703,30721,33646,36702,36722
im/rightkinghts/ui/ArticleViewer.java, line(s) 1817,4749,4001
im/rightkinghts/ui/ChannelCreateActivity.java, line(s) 135
im/rightkinghts/ui/ChatEditTypeActivity.java, line(s) 120
im/rightkinghts/ui/DataAutoDownloadActivity.java, line(s) 302,446,317,456,310,451
im/rightkinghts/ui/DataSettingsActivity.java, line(s) 211,365,223,373,217,369
im/rightkinghts/ui/LaunchActivity.java, line(s) 2033
im/rightkinghts/ui/NotificationsCustomSettingsActivity.java, line(s) 352,350,348
im/rightkinghts/ui/NotificationsSettingsActivity.java, line(s) 367
im/rightkinghts/ui/PassportActivity.java, line(s) 3571,3577,883,4595,878,4587,3585,881,4591,874,4575,3581,3564,3567,886,4579
im/rightkinghts/ui/QuickRepliesSettingsActivity.java, line(s) 166,162,158,154
im/rightkinghts/ui/actionbar/Theme.java, line(s) 2774,3204,3272
im/rightkinghts/ui/adapters/MentionsAdapter.java, line(s) 385
im/rightkinghts/ui/cells/TextInfoPrivacyCell.java, line(s) 28
im/rightkinghts/ui/components/AlertsCreator.java, line(s) 523,525
im/rightkinghts/ui/components/CheckBoxBase.java, line(s) 59,57,58
im/rightkinghts/ui/components/ContextProgressView.java, line(s) 33,36,39,42,34,37,40,43
im/rightkinghts/ui/components/EmojiView.java, line(s) 3982,3986
im/rightkinghts/ui/components/EmojiViewV2.java, line(s) 3966,3970
im/rightkinghts/ui/components/GroupCreateCheckBox.java, line(s) 40,38,39
im/rightkinghts/ui/components/ScrollSlidingTextTabStrip.java, line(s) 60,115,58,113,61,116,59,114
im/rightkinghts/ui/components/Switch.java, line(s) 64,65,66,67
im/rightkinghts/ui/dialogs/AntiFraudAppDialog.java, line(s) 9
im/rightkinghts/ui/hui/contacts/CreateGroupingActivity.java, line(s) 541
im/rightkinghts/ui/hui/contacts/PhonebookUsersActivity.java, line(s) 183
im/rightkinghts/ui/hui/friendscircle_v1/view/CommFCArcView.java, line(s) 18,24,30
im/rightkinghts/ui/hui/friendscircle_v1/view/edittext/span/User.java, line(s) 152
im/rightkinghts/ui/hui/login/LoginContronllerActivity.java, line(s) 79
im/rightkinghts/ui/hui/login/LoginVerifyActivity.java, line(s) 30
im/rightkinghts/ui/hui/packet/SelecteContactsActivity.java, line(s) 163,167
im/rightkinghts/ui/hui/visualcall/RTCAuthInfo.java, line(s) 111,106
im/rightkinghts/ui/hviews/MrySwitch.java, line(s) 71,89,72,90,73,74,91,92
im/rightkinghts/ui/settings/AutoDownloadSettingActivity.java, line(s) 90,480,84,495,79,488
im/rightkinghts/ui/settings/DataAndStoreSettingActivity.java, line(s) 286,294,290
im/rightkinghts/ui/settings/ProxySettingActivity.java, line(s) 509,519,524,531,534
im/rightkinghts/ui/wallet/model/PayPasswordReqBean.java, line(s) 69,69

中危安全漏洞 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
com/alivc/rtc/device/UTUtdid.java, line(s) 16
com/alivc/rtc/device/utils/PhoneInfoUtils.java, line(s) 7
com/socks/library/klog/FileLog.java, line(s) 12
im/rightkinghts/ui/LaunchActivity.java, line(s) 125
im/rightkinghts/ui/hui/visualcall/VisualCallReceiveService.java, line(s) 27
im/rightkinghts/ui/utils/number/StringUtils.java, line(s) 4
im/rightkinghts/ui/utils/translate/ssrc/SSRC.java, line(s) 16

中危安全漏洞 不安全的Web视图实现。可能存在WebView任意代码执行漏洞

不安全的Web视图实现。可能存在WebView任意代码执行漏洞
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5

Files:
im/rightkinghts/messenger/utils/PlayerUtils.java, line(s) 1237,1244
im/rightkinghts/ui/ArticleViewer.java, line(s) 7210,7205
im/rightkinghts/ui/WebviewActivity.java, line(s) 280,267
im/rightkinghts/ui/components/EmbedBottomSheet.java, line(s) 653,221
im/rightkinghts/ui/components/WebPlayerView.java, line(s) 1210,1217

中危安全漏洞 SHA-1是已知存在哈希冲突的弱哈希

SHA-1是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/alivc/rtc/device/UTUtdid.java, line(s) 344
com/base/utils/MD5Util.java, line(s) 47
com/base/utils/SecurityUtils.java, line(s) 62
im/rightkinghts/messenger/Utilities.java, line(s) 226,240
im/rightkinghts/ui/PassportActivity.java, line(s) 2566

中危安全漏洞 IP地址泄露

IP地址泄露


Files:
com/base/module/dns/DnsModule.java, line(s) 85,74
com/base/utils/NetworkUtils.java, line(s) 58
com/danikula/videocache/HttpProxyCacheServer.java, line(s) 31
com/snail/antifake/deviceid/IpScanner.java, line(s) 117

中危安全漏洞 应用程序创建临时文件。敏感信息永远不应该被写进临时文件

应用程序创建临时文件。敏感信息永远不应该被写进临时文件


Files:
im/rightkinghts/ui/components/paint/Slice.java, line(s) 20
im/rightkinghts/ui/utils/translate/ssrc/SSRC.java, line(s) 826

中危安全漏洞 应用程序包含隐私跟踪程序

此应用程序有多个3隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。

中危安全漏洞 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
百度地图的=> "com.baidu.lbsapi.API_KEY" : "oYnHR3odlaw9KUleHaQP5BrTLivxSCz1"
谷歌地图的=> "com.google.android.maps.v2.API_KEY" : "AIzaSyA-t0jLPjUt2FxrA8VPK2EiYHcYcboIR6k"
"firebase_database_url" : "https://rightkinghts-48b0d.firebaseio.com"
"TypePrivate2" : "Pribadi"
"PayPasswordSetting" : "PayPasswordSetting"
"ToSetPayPassword" : "Atur"
"PasswordCode" : "Kode"
"TypePrivate" : "Private"
"TypePrivateGroup" : "Private"
"PaymentPasswordTitle" : "Password"
"yuncheng_app_key" : "-dSPyyHFK-C3oeMlwHTO+pKDObpgxP2MO7Uo2UCH0+AxbvSwOHSK26vswxbHqitmfpzvpr_umcseBVAt1Jhc+ZSpVK2u1Jycd5vGXSkkeksUjEvw7B1ab_L72k9kUie93wo9MKEFb_z5dDVJuy1dmCJ1lkTEoczXTFwV8KDvdhxGgMFuczwD-9Dky82dyNcpoA5r1MQjP9ySfIjUZBsaePOvidufUoObTop+UEXpSPUk0S9Qz8Pt8bxT4nwwFJr18bwcZoeGyMLOYYBtZsWjTSuoCM-evTn1HNr6AjGt9PsQ2REKz14oSNoo4JB7gRopFVzhEnZYwMTBKe3jbvAufn_d4Ur6uhiE34czv+fdJVeUHP"
"PayPasswordSetReminder" : "Tips"
"TypePrivate2" : "Private"
"key_walletDefaultBackground" : "walletDefaultBackground"
"Sessions" : "Sessions"
"UseProxySecret" : "Secret"
"PasswordCode" : "Code"
"key_windowBackgroundGray" : "windowBackgroundGray"
"PayPasswordSetReminder" : "Kiat"
"FindBackPassword" : "FindBack"
"UseProxySecret" : "Rahasia"
"PayPassword" : "PayPassword"
"FindBackPassword" : "FindBackPassword"
"PasscodePassword" : "Password"
"YourPasswordSuccess" : "Success!"
"Sessions" : "Sesi"
"PayPasswordSetting" : "PengaturanPayPassword"
"google_api_key" : "AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw"
"RestorePasswordNoEmailTitle" : "Maaf"
"TypePrivateGroup" : "Pribadi"
"google_app_id" : "1:194512522065:android:a3b6ee229cc1efe012e170"
"UseProxyPassword" : "Password"
"LoginPasswordReset" : "LoginPasswordReset"
"Username" : "Username"
"google_crash_reporting_api_key" : "AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw"
"baidu_map_key" : "oYnHR3odlaw9KUleHaQP5BrTLivxSCz1"
"UseProxyUsername" : "Username"
"PayPasswordReset" : "PayPasswordReset"
"pref_speakerphone_key" : "speakerphone_preference"
"YourPasswordSuccess" : "Sukses!"
"TypePrivate" : "Pribadi"
"LoginPassword" : "Password"
"UserNameOrPhoneNumberSearch" : "Username"
"key_windowBackgroundWhite" : "windowBackgroundWhite"
"RestorePasswordNoEmailTitle" : "Sorry"
QrMgt8GGYI6T52ZY5AnhtxkLzb8egpFn3j5JELI8H6wtACbUnZ5cc3aYTsTRbmkAkRJeYbtx92LPBWm7nBO9UIl7y5i5MQNmUZNf5QENurR5tGyo7yJ2G0MBjWvy6iAtlAbacKP0SwOUeUWx5dsBdyhxa7Id1APtybSdDgicBDuNjI0mlZFUzZSS9dmN8lBD0WTVOMz0pRZbR3cysomRXOO1ghqjJdTcyDIxzpNAEszN8RMGjrzyU7Hjbmwi6YNK
fb9f0bb7fdd0760c354cc3d80cecb1d9
f180c508-f49a-40bd-b8ac-50577ce9aff6
pE5eNoBQIFVcd9IEuyIhvopfgS1RSj5C
7ZWY64KY7J2YIO2MjOydvOydhCDshKDtg50=
2KfbjNqpINmB2KfYptmEINmF24zauiDYs9uSINin2YbYqtiu2KfYqCDaqdix24zaug==
9A04F079-9840-4286-AB92-E65BE0885F95
ABVGDE2JZIQKLMNOPRSTUFHC34WXY9678
C71CAEB9C6B1C9048E6C522F70F13F73980D40238E3E21C14934D037563D930F48198A0AA7C14058229493D22530F4DBFA336F6E0AC925139543AED44CCE7C3720FD51F69458705AC68CD4FE6B6B13ABDC9746512969328454F18FAF8C595F642477FE96BB2A941D5BCD1D4AC8CC49880708FA9B378E3C4F3A9060BEE67CF9A4A4A695811051907E162753B56B0F6B410DBA74D8A84B2A14B3144E0EF1284754FD17ED950D5965B4B9DD46582DB1178D169C6BC465B0D6FF9CA3928FEF5B9AE4E418FC15E83EBEA0F87FA9FF5EED70050DED2849F47BF959D956850CE929851F0D8115F635B105EE2E4E15D04B2454BF6F4FADF034B10403119CD8E3B92FCC5B
A2B55680-6F43-11E0-9A3F-0002A5D5C51B
c06c8400-8e06-11e0-9cb6-0002a5d5c51b
2LHYpyDYp9mG2KrYrtin2Kgg2qnZhtuM2K8g24zaqSDZgdin24zZhA==
vR6rzaB1ptTS06YJgMTGb1+yrEYqQfDT+q6nQoV+BU7A9NsDhyoVzd3ik7LlWrd7CrJPdmbRwa/XnM2XppdUig==
c4e431e16e2d152d1c9d7141c7cdf3de
e283aac0-7c0f-4f2e-bcf7-90acc19903ed
bb392ec0-8d4d-11e0-a896-0002a5d5c51b

安全提示信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
cn/dreamtobe/kpswitch/handler/KPSwitchRootLayoutHandler.java, line(s) 35,46,50,56,60
cn/dreamtobe/kpswitch/util/KeyboardUtil.java, line(s) 44,186,193,233,164,202,219
cn/dreamtobe/kpswitch/util/StatusBarHeightUtil.java, line(s) 21
cn/dreamtobe/kpswitch/util/ViewUtil.java, line(s) 17
com/alivc/component/capture/VideoPusher.java, line(s) 158,306,310,329,334,339,397,412,423,428,451,457,467,583,615,635,640,667,728,758,762,764,771,965,999,1052,369,388,392,649,815,878,925,983,1016,659
com/alivc/component/capture/VideoPusherJNI.java, line(s) 30,41,49,64,72,87,95,105,117,129,140,148,157,166,175,184,186,193,202,211,219,228,236,245,58,81,111,123
com/alivc/rtc/AliRtcEngine.java, line(s) 271,284,301,308
com/alivc/rtc/AliRtcEngineImpl.java, line(s) 1509,1579,1906,1944,2107,3085,304,329,613,874,899,1183,1323,1339,1356,1369,1404,1417,1437,1491,1497,1499,1503,1511,1526,1530,1534,1538,1556,1560,1581,1585,1596,1600,1608,1632,1645,1649,1707,1711,1715,1720,1745,1763,1770,1773,1777,1791,1795,1800,1804,1829,1834,1836,1841,1846,1848,1852,1854,1859,1861,1866,1873,1883,1894,1913,1955,2089,2127,2141,2155,2169,2530,2535,2580,2585,2590,2597,2612,2631,2637,2639,2782,2795,2801,72,74,81,83,96,98,104,106,111,116,144,146,156,159,180,182,199,201,213,215,238,240,262,264,274,276,284,312,314,327,347,351,353,361,363,370,372,378,380,386,393,399,420,422,428,454,456,462,467,474,476,478,480,482,484,490,492,494,500,503,505,507,509,511,513,559,561,611,625,627,633,635,641,643,649,651,657,659,678,714,716,726,729,750,752,769,771,783,785,808,810,832,834,844,846,854,882,884,897,917,921,923,931,933,940,942,948,950,956,963,969,990,992,998,1024,1026,1032,1037,1044,1046,1048,1050,1052,1054,1060,1062,1064,1070,1073,1075,1077,1079,1081,1083,1129,1131,1181,1195,1197,1203,1205,1211,1213,1219,1221,1227,1229,1265,1267,1292,1299,1345,1349,1354,1357,1362,1367,1373,1378,1380,1385,1391,1397,1402,1420,1424,1426,1479,1492,1519,1524,1542,1547,1550,1573,1594,1618,1624,1629,1638,1643,1654,1661,1665,1670,1674,1682,1687,1691,1700,1705,1756,1761,1784,1789,1817,1822,1826,1871,1877,1888,1902,1949,1966,1977,1982,2009,2018,2025,2027,2033,2038,2040,2046,2059,2065,2067,2074,2076,2080,2082,2087,2100,2105,2112,2114,2119,2121,2133,2135,2147,2149,2159,2161,2175,2180,2188,2197,2204,2206,2211,2215,2224,2226,2235,2237,2248,2255,2265,2280,2289,2294,2299,2301,2316,2347,2363,2394,2410,2424,2426,2433,2435,2441,2443,2454,2461,2469,2517,2605,2616,2642,2703,2705,2710,2732,2737,2743,2748,2754,2759,2765,2770,2776,2806,2814,2816,2824,2826,2834,2836,2844,2846,2854,2856,2864,2866,2874,2876,2884,2886,2894,2899,2907,2909,2917,2922,2930,2932,2940,2945,2953,2955,2963,2968,2976,2978,2986,2988,2996,2998,3006,3008,3016,3018,3026,3028,3038,3049,3053,3062,3066,3081,3133,3138,3146,3148,1418
com/alivc/rtc/device/DeviceInfo.java, line(s) 30,57,61
com/alivc/rtc/device/UTUtdid.java, line(s) 132,134,139,141,152,154,159,161,207,212,238,241,246,249
com/base/BaseActivity.java, line(s) 37
com/base/module/web/X5WebModule.java, line(s) 12
com/base/utils/LogUtils.java, line(s) 47,123,63,31,79,99
com/base/utils/NetworkUtils.java, line(s) 63,66,79,99
com/base/utils/PhotoUtils.java, line(s) 110,148,146,152
com/bjz/comm/net/factory/ApiFactory$1.java, line(s) 28,35
com/bjz/comm/net/factory/ApiGameFactory$1.java, line(s) 28,35
com/bjz/comm/net/mvp/presenter/FcCommonPresenter.java, line(s) 53
com/bjz/comm/net/premission/PermissionActivity.java, line(s) 43,321,333,348
com/bjz/comm/net/premission/PermissionManager.java, line(s) 33
com/bjz/comm/net/receiver/NetworkConnectChangedReceiver.java, line(s) 23,29,39
com/bjz/comm/net/utils/MD5Utils.java, line(s) 21,88,92,93
com/bjz/comm/net/utils/RxHelper$1.java, line(s) 29,33,44
com/bjz/comm/net/utils/RxHelper.java, line(s) 76,81,108
com/bjz/comm/net/utils/TokenLoader.java, line(s) 34,66,70
com/contrarywind/view/WheelView.java, line(s) 341
com/coremedia/iso/boxes/sampleentry/AudioSampleEntry.java, line(s) 192
com/litesuits/orm/LiteOrm.java, line(s) 79,81,85,115,310
com/litesuits/orm/db/TableManager.java, line(s) 91,132,123,171,249,90,95,96,101,102,119,121,131,138,139,159,160,180,181,182,187,188
com/litesuits/orm/db/assit/Querier.java, line(s) 12,18,21,11,17,20
com/litesuits/orm/db/assit/SQLStatement.java, line(s) 250,280,519,170,285,101,102,126,127,169,183,184,187,188,233,234,249,275,276,279,284,323,359,375,380,422,423,496,506,518,324,360,497,507
com/litesuits/orm/db/assit/Transaction.java, line(s) 15,21,22
com/litesuits/orm/db/utils/DataUtil.java, line(s) 109,110
com/litesuits/orm/log/OrmLog.java, line(s) 41,74,124,157,62,95,145,178,20,27,48,81,131,164,34,67,117,150,55,88,138,171
com/preview/PreviewDialogFragment.java, line(s) 161
com/serenegiant/usb/DeviceFilter.java, line(s) 73,75
com/serenegiant/usb/USBMonitor.java, line(s) 240,247,826,845,423,427,430,842,280,465
com/serenegiant/usb/UVCCamera.java, line(s) 1049,1055,1060,1066,483,1083
com/snail/antifake/deviceid/IpScanner.java, line(s) 47,92,126
com/socks/library/Util.java, line(s) 14,16
com/socks/library/klog/BaseLog.java, line(s) 28,37,31,25,34,40
com/socks/library/klog/FileLog.java, line(s) 18,21
com/socks/library/klog/JsonLog.java, line(s) 29
com/socks/library/klog/XmlLog.java, line(s) 23
com/tablayout/SlidingScaleTabLayout.java, line(s) 673
com/tablayout/transformer/TabScaleTransformer.java, line(s) 28
com/yhao/floatwindow/LogUtil.java, line(s) 16,12
com/zhy/http/okhttp/cookie/store/PersistentCookieStore.java, line(s) 142,155,158
com/zhy/http/okhttp/log/LoggerInterceptor.java, line(s) 41,44,45,46,48,51,54,57,59,70,71,72,74,78,80,82,85
com/zhy/http/okhttp/utils/L.java, line(s) 10
ezy/assist/compat/RomUtil.java, line(s) 149
ezy/assist/compat/SettingsCompat.java, line(s) 94,114,125
im/rightkinghts/keepalive/ChannelService.java, line(s) 55
im/rightkinghts/keepalive/CheckTopTask.java, line(s) 23,48
im/rightkinghts/keepalive/DaemonService.java, line(s) 137,64,94,108,118,140
im/rightkinghts/keepalive/MonitorReceiver.java, line(s) 11,16
im/rightkinghts/keepalive/OnePxActivity.java, line(s) 34,61,85
im/rightkinghts/keepalive/ScheduleService.java, line(s) 11,20
im/rightkinghts/keepalive/ScreenReceiver.java, line(s) 37
im/rightkinghts/messenger/AndroidUtilities$LinkMovementMethodMy.java, line(s) 19
im/rightkinghts/messenger/AndroidUtilities.java, line(s) 539,1223,1233,162,219,356,448,462,499,531,576,589,609,618,627,636,733,736,856,871,886,931,949,953,1020,1041,1139,1188,1210,1270,1333,1374,1386,1427,1588
im/rightkinghts/messenger/AnimatedFileDrawableStream.java, line(s) 56
im/rightkinghts/messenger/AppChooserTargetService.java, line(s) 54,96,178
im/rightkinghts/messenger/ApplicationLoader.java, line(s) 78,127,156,173,184,198,208,245,248,259,262,297,71,130,284,312,326,346,363,411
im/rightkinghts/messenger/ContactsController.java, line(s) 372,389,405,655,709,823,833,857,1008,1013,1043,1120,1137,1699,1856,511,537,779,1344,1353,1590,1599,1605,1623,1935
im/rightkinghts/messenger/ContactsSyncAdapterService.java, line(s) 49,30
im/rightkinghts/messenger/DispatchQueue.java, line(s) 26,35,47,61,80
im/rightkinghts/messenger/DownloadController.java, line(s) 859
im/rightkinghts/messenger/Emoji.java, line(s) 192,104,117,128,356,402,422,491,503,729,741
im/rightkinghts/messenger/FileLoadOperation.java, line(s) 597,793,864,1120,1227,1258,425,438,455,710,716,723,729,736,742,749,755,763,823,825,834,842
im/rightkinghts/messenger/FileLoader.java, line(s) 940,1397,1405,1413,1422
im/rightkinghts/messenger/FileLog.java, line(s) 234,259,101,127,152,177,284,309
im/rightkinghts/messenger/FileRefController.java, line(s) 124,617,952
im/rightkinghts/messenger/FileStreamLoadOperation.java, line(s) 132
im/rightkinghts/messenger/FileUploadOperation.java, line(s) 117,141,207,427,547,688
im/rightkinghts/messenger/GcmPushListenerService.java, line(s) 22,35,82,137
im/rightkinghts/messenger/ImageLoader.java, line(s) 1348,1418,1432,1444,1457,1470,1478,194,202,211,234,238,247,253,303,332,351,371,394,405,424,580,589,598,621,625,635,647,821,839,1187,1193,1408,1414,1436,1448,1461,1474,1482,1527,1532,1540,1548,2068,2080,2107,2272,2278,2388
im/rightkinghts/messenger/ImageReceiver.java, line(s) 513,602,649,681
im/rightkinghts/messenger/KeepAliveJob.java, line(s) 27,43,49,71,83
im/rightkinghts/messenger/LocaleController.java, line(s) 821,1956,2065,2102,288,294,575,714,761,769,775,781,899,928,983,1400,1476,1501,1523,1545,1579,1644,1739,1756,1780,2033,2853
im/rightkinghts/messenger/LocationController.java, line(s) 552,635,698
im/rightkinghts/messenger/MediaController$4.java, line(s) 63
im/rightkinghts/messenger/MediaController$5.java, line(s) 26
im/rightkinghts/messenger/MediaController$6.java, line(s) 26
im/rightkinghts/messenger/MediaController$StopMediaObserverRunnable.java, line(s) 25,33
im/rightkinghts/messenger/MediaController$VideoConvertRunnable.java, line(s) 31
im/rightkinghts/messenger/MediaController.java, line(s) 335,726,764,807,812,832,851,863,873,289,294,299,304,321,345,354,412,423,440,474,485,1082,1112,1227,1354,1369,1679,1685,1807,1829,1945,1954,2058,2138,2202,2230,2238,2261,2267,2275,2298,2304,2312,2330,2363,2370,2390,2396,2400,2405,2412,2553
im/rightkinghts/messenger/MediaDataController.java, line(s) 266,404,459,522,665,721,926,995,1033,1047,1257,1340,1576,1713,1900,1920,2029,2422,2680,2718,2800,2868,2902,2923,2954,3039,3157,3242,3273,3452,3527,3544,3619,3747,3823,3845,3971,4003,4079,4081,4315,4561,4644,4785,4827,4866,4905,4941,5010
im/rightkinghts/messenger/MessageObject.java, line(s) 258,2387,2432,2527,2533
im/rightkinghts/messenger/MessagesController.java, line(s) 2389,2394,2439,2450,2475,2482,2499,2511,3847,3856,5488,5795,5802,5808,5859,5892,5930,8010,8025,8074,8185,8194,8207,8269,8278,8290,8680,8698,8913,10123,1345,3283,3392,3419,3448,5207,5501,5911,6280,6701,7266,7291,8327,8455,8977,9098,9173,9655,10501,10810,10903,10906
im/rightkinghts/messenger/MessagesStorage.java, line(s) 3777,244,280,835,897,933,1039,1076,1119,1192,1286,1345,1357,1441,1480,1536,1576,1610,1612,1658,1716,1745,1843,1919,1964,1998,2080,2217,2293,2362,2422,2466,2468,2550,2630,2670,2700,2867,2922,2953,2976,3003,3032,3093,3180,3249,3388,3442,3519,3578,3642,3657,3704,3747,3788,3839,3901,3922,3958,3999,4065,4094,4166,4225,4271,4311,4417,4473,4494,4530,4651,4754,4795,4875,4909,4947,4969,4996,5013,5075,5086,5102,5111,5165,5205,5270,5373,5406,5525,5565,5594,5668,5707,5747,5805,5818,5895,5957,6029,6058,6090,6205,6258,6323,6363,6403,6636,6690,6767,6823,6866,6887,6908,6930,6950,6961,6976,6991,7019,7042,7076,7111,7145,7179,7216,7250
im/rightkinghts/messenger/MusicBrowserService.java, line(s) 208,300,337,386,515
im/rightkinghts/messenger/MusicPlayerService.java, line(s) 188,389
im/rightkinghts/messenger/NativeLoader.java, line(s) 46,76,82,88,94,99,106
im/rightkinghts/messenger/NotificationBadge.java, line(s) 181,458
im/rightkinghts/messenger/NotificationCenter.java, line(s) 953
im/rightkinghts/messenger/NotificationImageProvider.java, line(s) 107
im/rightkinghts/messenger/NotificationsController.java, line(s) 204,340,2121,179,184,192,215,252,286,307,1356,1370,1968,2045,2058,2073,2100,2104,2113,2127,2185,2217,2325,2359,2363,2372
im/rightkinghts/messenger/ScreenReceiver.java, line(s) 13,27
im/rightkinghts/messenger/SecretChatHelper.java, line(s) 582,1141,658,684,770,1073,1287,1465,1765,1778,1888,1917,1958,1974
im/rightkinghts/messenger/SendMessagesHelper$LocationProvider.java, line(s) 36,94,99,108
im/rightkinghts/messenger/SendMessagesHelper.java, line(s) 611,628,1088,1782,3386,3392,3821,3870,3897,4205,4208,4223,4231
im/rightkinghts/messenger/SharedConfig.java, line(s) 706,119,251,272,286,356,679
im/rightkinghts/messenger/SmsReceiver.java, line(s) 48
im/rightkinghts/messenger/UserConfig.java, line(s) 195
im/rightkinghts/messenger/Utilities.java, line(s) 70,230,246,275,288,299,311,330,347,379
im/rightkinghts/messenger/VideoEncodingService.java, line(s) 37,87,54
im/rightkinghts/messenger/WearDataLayerListenerService.java, line(s) 39,47,63,232,239,56,226,243,339
im/rightkinghts/messenger/XiaomiUtilities.java, line(s) 45
im/rightkinghts/messenger/browser/Browser.java, line(s) 84,99
im/rightkinghts/messenger/camera/CameraController.java, line(s) 163,190,510,527,546,304,320,325,376,398,424,436,468,500,553,582,631,659,662,679,685,706,729,743,795,800,806,811,819,842
im/rightkinghts/messenger/camera/CameraSession.java, line(s) 212,216,173,254,269,345,358,374,379,466
im/rightkinghts/messenger/secretmedia/ExtendedDefaultDataSource.java, line(s) 195
im/rightkinghts/messenger/support/JobIntentService.java, line(s) 128
im/rightkinghts/messenger/support/customtabs/CustomTabsSessionToken.java, line(s) 19,28,37,46
im/rightkinghts/messenger/support/customtabsclient/shared/CustomTabsHelper.java, line(s) 89
im/rightkinghts/messenger/support/fingerprint/FingerprintManagerCompatApi23.java, line(s) 21,30,39
im/rightkinghts/messenger/utils/PlayerUtils.java, line(s) 466,387,446,522,581,636,699,766,1186,1447,1519,1921,1933,1946,1960,1974,1988,2002
im/rightkinghts/messenger/utils/SelectorUtils.java, line(s) 91
im/rightkinghts/messenger/voip/AppConnectionService.java, line(s) 31,68,48,58,16,24
im/rightkinghts/messenger/voip/AudioRecordJNI.java, line(s) 248,66,79,95,114,137,180,203,239,109,211,63,76,92
im/rightkinghts/messenger/voip/AudioTrackJNI.java, line(s) 38,65,111,121,119,32
im/rightkinghts/messenger/voip/JNIUtilities.java, line(s) 80
im/rightkinghts/messenger/voip/VoIPBaseService.java, line(s) 591,684,741,843,885,892,898,1064,1262,1423,1435,1463,1475,1482,173,181,272,525,563,639,732,824,853,999,1015,1173,1340,1351
im/rightkinghts/messenger/voip/VoIPServerConfig.java, line(s) 19
im/rightkinghts/messenger/voip/VoIPService.java, line(s) 361,446,452,459,700,719,748,755,784,800,967,1084,1104,1260,91,280,337,359,393,416,465,517,574,584,692,724,884,1041,1098,1145,105,386,412,564,739,828,835,845,871,899
im/rightkinghts/phoneformat/PhoneFormat.java, line(s) 101,107,128,137,200,239
im/rightkinghts/sqlite/SQLiteCursor.java, line(s) 98,103
im/rightkinghts/sqlite/SQLiteDatabase.java, line(s) 60,77
im/rightkinghts/sqlite/SQLitePreparedStatement.java, line(s) 107,108
im/rightkinghts/tgnet/ConnectionsManager$DnsTxtLoadTask.java, line(s) 40,20
im/rightkinghts/tgnet/ConnectionsManager$FirebaseTask.java, line(s) 41,21
im/rightkinghts/tgnet/ConnectionsManager$ResolveHostByNameTask.java, line(s) 63,68,89,103,116
im/rightkinghts/tgnet/ConnectionsManager.java, line(s) 199,319,463,471,487,502,514,565,598,606,614,758,765,768,312,330,332,517,582,652,664,682,774,802
im/rightkinghts/tgnet/FCTokenRequestCallback.java, line(s) 44,64,65,118,124,130,138,142
im/rightkinghts/tgnet/NativeByteBuffer.java, line(s) 35,128,143,172,187,207,221,257,293,304,341,393,413,427,443,456,489,516,546,562
im/rightkinghts/tgnet/NetworkConfig.java, line(s) 45,52
im/rightkinghts/tgnet/SerializedData.java, line(s) 62,70,78,86,117,140,172,187,202,217,253,267,303,314,349,376,391,427,458,474,493,514
im/rightkinghts/tgnet/TLClassStore.java, line(s) 54
im/rightkinghts/tgnet/TLJsonResolve.java, line(s) 85,113
im/rightkinghts/translate/MD5.java, line(s) 34
im/rightkinghts/ui/ArticleViewer.java, line(s) 3739,4367,4445,4632,4806,4855,4876,5017,5027,5054,5067,7176,7186,7299,7320,7346,9715,10144,10546,10737,10809,10815,10843,10900
im/rightkinghts/ui/AudioSelectActivity.java, line(s) 283
im/rightkinghts/ui/CacheControlActivity.java, line(s) 229,406,428
im/rightkinghts/ui/CancelAccountDeletionActivity.java, line(s) 134,264,397,962,1080
im/rightkinghts/ui/ChangeBioActivity.java, line(s) 237,248
im/rightkinghts/ui/ChangePhoneActivity.java, line(s) 130,286,678,688,856,1480,1598
im/rightkinghts/ui/ChangePhoneNumberActivity.java, line(s) 184,194
im/rightkinghts/ui/ChangeSignActivity.java, line(s) 162,173
im/rightkinghts/ui/ChangeUsernameActivity.java, line(s) 88,106,494,509
im/rightkinghts/ui/ChannelAdminLogActivity.java, line(s) 973,1423,2496,2505,2514,2523,2532,2541,2550,2559
im/rightkinghts/ui/ChannelCreateActivity.java, line(s) 760,897,1023,1035
im/rightkinghts/ui/ChatActivity$51.java, line(s) 89
im/rightkinghts/ui/ChatActivity$52.java, line(s) 37
im/rightkinghts/ui/ChatActivity$69.java, line(s) 40,46
im/rightkinghts/ui/ChatActivity.java, line(s) 7231,7252,734,755,779,794,1092,1290,2821,3236,3427,4597,4653,4896,5716,6067,7315,8061,8100,8531,8843,9864,9901,9916,11198,11259,11585,11594,11603,11612,11621,11630,11639,11648
im/rightkinghts/ui/ChatEditActivity.java, line(s) 378
im/rightkinghts/ui/ChatEditTypeActivity.java, line(s) 389,403,430
im/rightkinghts/ui/ChatRightsEditActivity.java, line(s) 577,594
im/rightkinghts/ui/ChatUsersActivity.java, line(s) 2067
im/rightkinghts/ui/ContactAddActivity.java, line(s) 167
im/rightkinghts/ui/ContactsActivity.java, line(s) 499,600,677
im/rightkinghts/ui/ContentPreviewViewer.java, line(s) 691,738,773,794,806,896
im/rightkinghts/ui/CountrySelectActivity.java, line(s) 395,406
im/rightkinghts/ui/DialogsActivity.java, line(s) 1786,2608
im/rightkinghts/ui/DocumentSelectActivity.java, line(s) 88,132,434,614
im/rightkinghts/ui/ExternalActionActivity.java, line(s) 537,541,69,339,382
im/rightkinghts/ui/GroupCreateFinalActivity.java, line(s) 141
im/rightkinghts/ui/GroupInviteActivity.java, line(s) 133,148
im/rightkinghts/ui/GroupStickersActivity.java, line(s) 676
im/rightkinghts/ui/IdenticonActivity.java, line(s) 65
im/rightkinghts/ui/IndexActivity.java, line(s) 656,666,685,688
im/rightkinghts/ui/InviteContactsActivity.java, line(s) 552,596,761,777
im/rightkinghts/ui/LanguageSelectActivity.java, line(s) 243,254
im/rightkinghts/ui/LaunchActivity.java, line(s) 528,578,585,709,795,837,2179,2404,2840,2874,2952,2956,229,493,539,1185,1293,1301,1347,1459,1541,1559,1571,1587,1610,1660,1688,1800,1829,1839,2056,2172,2271,2279,2493,2502,2718,2896,3076,3144
im/rightkinghts/ui/LaunchAgDialogActivity.java, line(s) 38
im/rightkinghts/ui/LocationActivity.java, line(s) 210,264,721,892,1003,1048,1088,1100,1297,1370,1426,1442,1451
im/rightkinghts/ui/LoginActivity.java, line(s) 351,407,699,1080,1090,1273,1916,2019,3628
im/rightkinghts/ui/Media1Activity.java, line(s) 2186
im/rightkinghts/ui/MediaActivity.java, line(s) 2229
im/rightkinghts/ui/NewContactActivity.java, line(s) 164,497,511
im/rightkinghts/ui/NotificationsCustomSettingsActivity.java, line(s) 328
im/rightkinghts/ui/NotificationsSettingsActivity.java, line(s) 344
im/rightkinghts/ui/PasscodeActivity.java, line(s) 461,569
im/rightkinghts/ui/PassportActivity.java, line(s) 1032,2570,2993,3261,3354,4221,6236,6298,6476,6542,6681,7369,7472
im/rightkinghts/ui/PeopleNearbyActivity.java, line(s) 396,328,517
im/rightkinghts/ui/PhoneBookSelectActivity.java, line(s) 210
im/rightkinghts/ui/PhonebookShareActivity.java, line(s) 501,552,595
im/rightkinghts/ui/PhotoCropActivity.java, line(s) 347,410,334,339,353
im/rightkinghts/ui/PhotoViewer.java, line(s) 1195,4499,9002,9009,9017,9023,543,687,1749,1924,2153,2768,2781,3375,3428,3457,3515,3543,3943,3950,4116,4133,4272,4331,4339,4581,4588,6190,6932,7343,7380,7460,7670,7757,9029
im/rightkinghts/ui/PopupNotificationActivity.java, line(s) 497,1234
im/rightkinghts/ui/PrivacyControlActivity.java, line(s) 114,650
im/rightkinghts/ui/PrivacySettingsActivity.java, line(s) 375,439
im/rightkinghts/ui/ProfileActivity.java, line(s) 341,577,595,1511,1525,1537,1565,2622
im/rightkinghts/ui/ProfileNotificationsActivity.java, line(s) 457,482
im/rightkinghts/ui/SecretMediaViewer.java, line(s) 492,498,532,581,855,975,1180
im/rightkinghts/ui/SessionsActivity.java, line(s) 309,330
im/rightkinghts/ui/SettingsActivity.java, line(s) 2260
im/rightkinghts/ui/ShareActivity.java, line(s) 73,94
im/rightkinghts/ui/StickersActivity.java, line(s) 384,396,487
im/rightkinghts/ui/TestActivity.java, line(s) 32
im/rightkinghts/ui/ThemeActivity.java, line(s) 949,961,1037,1042,1078,1400,1403,1413,1440
im/rightkinghts/ui/ThemeSetUrlActivity.java, line(s) 101,119,417,432,620,631
im/rightkinghts/ui/TwoStepVerificationActivity.java, line(s) 162,926
im/rightkinghts/ui/VoIPActivity.java, line(s) 223
im/rightkinghts/ui/WallpaperActivity.java, line(s) 445,454,475,499,518,535
im/rightkinghts/ui/WebviewActivity.java, line(s) 85,182,296,307,484,501
im/rightkinghts/ui/actionbar/ActionBarLayout.java, line(s) 181,1470,1661,2268
im/rightkinghts/ui/actionbar/ActionBarPopupWindow$ActionBarPopupWindowLayout.java, line(s) 58
im/rightkinghts/ui/actionbar/ActionBarPopupWindow.java, line(s) 107,169
im/rightkinghts/ui/actionbar/AlertDialog.java, line(s) 477
im/rightkinghts/ui/actionbar/BaseFragment.java, line(s) 135,147,175,190,290,325,416,435,489,498
im/rightkinghts/ui/actionbar/BottomSheet$1.java, line(s) 26
im/rightkinghts/ui/actionbar/BottomSheet$5.java, line(s) 40
im/rightkinghts/ui/actionbar/BottomSheet$6.java, line(s) 35
im/rightkinghts/ui/actionbar/BottomSheet.java, line(s) 531
im/rightkinghts/ui/actionbar/DrawerLayoutContainer.java, line(s) 318
im/rightkinghts/ui/actionbar/Theme.java, line(s) 2989,3031,1160,1216,1224,2119,2183,2744,2751,2803,3290,3311,3324,3446,3458,4640,4647,4656,4663
im/rightkinghts/ui/actionbar/ThemeDescription.java, line(s) 705
im/rightkinghts/ui/actionbar/XAlertDialog.java, line(s) 939,992
im/rightkinghts/ui/adapters/BaseLocationAdapter.java, line(s) 57,79
im/rightkinghts/ui/adapters/ContactsAdapter.java, line(s) 98
im/rightkinghts/ui/adapters/DialogsAdapter.java, line(s) 261
im/rightkinghts/ui/adapters/DialogsSearchAdapter.java, line(s) 352,396,416
im/rightkinghts/ui/adapters/PhonebookSearchAdapter.java, line(s) 37,53
im/rightkinghts/ui/adapters/SearchAdapter.java, line(s) 82,102
im/rightkinghts/ui/adapters/SearchAdapterHelper.java, line(s) 345,469,471,492,555
im/rightkinghts/ui/bottom/BottomBarLayout.java, line(s) 158
im/rightkinghts/ui/cell/FmtDialogCell.java, line(s) 356
im/rightkinghts/ui/cells/AboutLinkCell.java, line(s) 120,130,147,195
im/rightkinghts/ui/cells/ArchiveHintCell.java, line(s) 49,53
im/rightkinghts/ui/cells/AudioPlayerCell.java, line(s) 67,75
im/rightkinghts/ui/cells/BotHelpCell.java, line(s) 96,129,139,156
im/rightkinghts/ui/cells/ChatActionCell.java, line(s) 301,306
im/rightkinghts/ui/cells/ChatMessageCell.java, line(s) 2222,2321,2356,3146,3807,3817,5449,2774
im/rightkinghts/ui/cells/DialogCell.java, line(s) 352
im/rightkinghts/ui/cells/DialogMeUrlCell.java, line(s) 114
im/rightkinghts/ui/cells/DrawerActionCell.java, line(s) 53
im/rightkinghts/ui/cells/DrawerProfileCell.java, line(s) 111,157
im/rightkinghts/ui/cells/PopMenuCell.java, line(s) 47
im/rightkinghts/ui/cells/SharedAudioCell.java, line(s) 76,81
im/rightkinghts/ui/cells/SharedLinkCell.java, line(s) 222,234
im/rightkinghts/ui/cells/ThemesHorizontalListCell.java, line(s) 160,169,175,262
im/rightkinghts/ui/components/AlertsCreator.java, line(s) 1012,1064,1079
im/rightkinghts/ui/components/AnimatedFileDrawable.java, line(s) 193,224
im/rightkinghts/ui/components/AudioPlayerAlert.java, line(s) 847,1281,1296
im/rightkinghts/ui/components/AvatarDrawable.java, line(s) 219
im/rightkinghts/ui/components/BlockingUpdateView.java, line(s) 219,241,245
im/rightkinghts/ui/components/ChatActivityEnterView$35.java, line(s) 52
im/rightkinghts/ui/components/ChatActivityEnterView$9.java, line(s) 53,90
im/rightkinghts/ui/components/ChatActivityEnterView.java, line(s) 1525,2474,2512,2680,2827,2842,2856,2870,2893,2903,2952
im/rightkinghts/ui/components/ChatAttachAlert$17.java, line(s) 143
im/rightkinghts/ui/components/ChatAvatarContainer.java, line(s) 280
im/rightkinghts/ui/components/ClippingImageView.java, line(s) 75,151
im/rightkinghts/ui/components/EditTextBoldCursor.java, line(s) 131,262,514,522
im/rightkinghts/ui/components/EditTextCaption.java, line(s) 319,341,399
im/rightkinghts/ui/components/EditTextEmoji.java, line(s) 90,491
im/rightkinghts/ui/components/EmbedBottomSheet.java, line(s) 199,302,316,342,367,413,488,495,674,683,701,811,830,906
im/rightkinghts/ui/components/EmojiView.java, line(s) 590,1447,3428
im/rightkinghts/ui/components/EmojiViewV2.java, line(s) 590,1446,3412
im/rightkinghts/ui/components/ForegroundDetector.java, line(s) 53,86,61,94
im/rightkinghts/ui/components/ImageUpdater.java, line(s) 251,279,302,324
im/rightkinghts/ui/components/InstantCameraView.java, line(s) 489,497,503,879,898,920,1054,1299,1322,1569,1618,1625,1629,1638,1650,1690,1770,2009,449,938,953,984,996,1062,1070,1080,1093,1104,1141,1163,1169,1175,1184,1236,1392,1397,1405,1666,1723,1735,1852,1861,1871,1879,1950,2082
im/rightkinghts/ui/components/LetterDrawable.java, line(s) 60
im/rightkinghts/ui/components/PasscodeView.java, line(s) 134,249,923,932,946,997,1025,1044
im/rightkinghts/ui/components/PhotoFilterView.java, line(s) 401,418,433,441,451,464,729,735,744,945
im/rightkinghts/ui/components/PhotoPaintView.java, line(s) 438,1263,1270,1297
im/rightkinghts/ui/components/PhotoViewerCaptionEnterView$1.java, line(s) 22
im/rightkinghts/ui/components/PhotoViewerCaptionEnterView$5.java, line(s) 114
im/rightkinghts/ui/components/PhotoViewerCaptionEnterView.java, line(s) 199,233,299,341,355,379,460,473
im/rightkinghts/ui/components/PipRoundVideoView.java, line(s) 255
im/rightkinghts/ui/components/PipVideoView.java, line(s) 406
im/rightkinghts/ui/components/RLottieDrawable.java, line(s) 215,339,415
im/rightkinghts/ui/components/RadioButton.java, line(s) 60,159
im/rightkinghts/ui/components/RecyclerListView$2.java, line(s) 26
im/rightkinghts/ui/components/RecyclerListView$RecyclerListViewItemClickListener.java, line(s) 169
im/rightkinghts/ui/components/RecyclerListView.java, line(s) 237,882,890
im/rightkinghts/ui/components/ShareAlert.java, line(s) 459
im/rightkinghts/ui/components/SpannableStringLight.java, line(s) 24,41,58
im/rightkinghts/ui/components/StaticLayoutEx.java, line(s) 58,122,155,161,172,177,182,216,249,257
im/rightkinghts/ui/components/StickersAlert.java, line(s) 102,778,813,891
im/rightkinghts/ui/components/TermsOfServiceView.java, line(s) 159
im/rightkinghts/ui/components/ThemeEditorView.java, line(s) 98,106,1157,1399,1604
im/rightkinghts/ui/components/TimerDrawable.java, line(s) 78
im/rightkinghts/ui/components/VideoTimelinePlayView.java, line(s) 287,344,372
im/rightkinghts/ui/components/VideoTimelineView.java, line(s) 229,286,314
im/rightkinghts/ui/components/WallpaperUpdater.java, line(s) 78,94,117,143,174,177,189,205
im/rightkinghts/ui/components/WebPlayerView.java, line(s) 439,360,419,495,554,609,672,739,1159,1420,1466,1822,1834,1847,1861,1875,1889,1903
im/rightkinghts/ui/components/compress/Luban.java, line(s) 86,85
im/rightkinghts/ui/components/paint/RenderView.java, line(s) 307,315,325,338,349,359,378,498
im/rightkinghts/ui/components/paint/Shader.java, line(s) 20,28,82,92
im/rightkinghts/ui/components/paint/Slice.java, line(s) 22,53
im/rightkinghts/ui/components/paint/Utils.java, line(s) 12
im/rightkinghts/ui/components/toast/ToastUtils.java, line(s) 78
im/rightkinghts/ui/components/voip/CallSwipeView.java, line(s) 86
im/rightkinghts/ui/components/voip/DarkTheme.java, line(s) 2380
im/rightkinghts/ui/components/voip/VoIPHelper.java, line(s) 152,568
im/rightkinghts/ui/dialogs/McShareDialog.java, line(s) 197
im/rightkinghts/ui/fragments/BaseFmts.java, line(s) 213,268,282,304
im/rightkinghts/ui/fragments/CallRecordsFragment.java, line(s) 591,194
im/rightkinghts/ui/fragments/ContactsFragment.java, line(s) 598
im/rightkinghts/ui/fragments/DialogsFragment.java, line(s) 480,495,1660
im/rightkinghts/ui/fragments/DiscoveryFragment.java, line(s) 140,288
im/rightkinghts/ui/fragments/MeFragmentV2.java, line(s) 487,979,1037,1052
im/rightkinghts/ui/fragments/TabWebFragment.java, line(s) 132
im/rightkinghts/ui/fragments/adapter/FmtContactsAdapter.java, line(s) 143
im/rightkinghts/ui/hui/CameraViewActivity.java, line(s) 1725
im/rightkinghts/ui/hui/CharacterParser.java, line(s) 28
im/rightkinghts/ui/hui/WebViewAppCompatActivity.java, line(s) 101,212
im/rightkinghts/ui/hui/adapter/AddNewCallAdapter.java, line(s) 78
im/rightkinghts/ui/hui/adapter/CreateGroupAdapter.java, line(s) 96
im/rightkinghts/ui/hui/adapter/CreateSecureAdapter.java, line(s) 82
im/rightkinghts/ui/hui/adapter/MyDialogsAdapter.java, line(s) 241
im/rightkinghts/ui/hui/adapter/NewChatAdapter.java, line(s) 86
im/rightkinghts/ui/hui/adapter/SelectContactsAdapter.java, line(s) 85
im/rightkinghts/ui/hui/adapter/StartChatAdapter.java, line(s) 87
im/rightkinghts/ui/hui/adapter/grouping/AddGroupingUserAdapter.java, line(s) 85
im/rightkinghts/ui/hui/adapter/pageAdapter/PageSelectionAdapter.java, line(s) 77
im/rightkinghts/ui/hui/adapter/pageAdapter/PageStickerAdapter.java, line(s) 107
im/rightkinghts/ui/hui/chats/CreateGroupFinalActivity.java, line(s) 154
im/rightkinghts/ui/hui/chats/GroupShareActivity.java, line(s) 211
im/rightkinghts/ui/hui/chats/MryDialogsActivity.java, line(s) 1696,2529
im/rightkinghts/ui/hui/chats/NewChatActivity.java, line(s) 395
im/rightkinghts/ui/hui/chats/ProfileGroupActivity.java, line(s) 360,833,851,1046,1596,1610,1622,1650,2773
im/rightkinghts/ui/hui/chats/StartChatActivity.java, line(s) 341
im/rightkinghts/ui/hui/contacts/AddContactsActivity.java, line(s) 190
im/rightkinghts/ui/hui/contacts/PhonebookUsersActivity.java, line(s) 488
im/rightkinghts/ui/hui/discovery/ActionIntroActivity.java, line(s) 380,426,461,506
im/rightkinghts/ui/hui/discovery/NearPersonAndGroupActivity.java, line(s) 480,484,489,492,499,552,416,639
im/rightkinghts/ui/hui/discovery/QrScanActivity.java, line(s) 316,342
im/rightkinghts/ui/hui/discoveryweb/DiscoveryJumpPausedFloatingView.java, line(s) 256,528
im/rightkinghts/ui/hui/discoveryweb/DiscoveryJumpToPage.java, line(s) 111,138,534,568,738
im/rightkinghts/ui/hui/friendscircle/fcHelper/OKHttpStreamFetcher.java, line(s) 43,42
im/rightkinghts/ui/hui/friendscircle/okhttphelper/AESHelper.java, line(s) 62,75
im/rightkinghts/ui/hui/friendscircle/okhttphelper/MD5Utils.java, line(s) 21,88,92,93
im/rightkinghts/ui/hui/friendscircle/okhttphelper/OkHttpStringCallBack.java, line(s) 69,61,70
im/rightkinghts/ui/hui/friendscircle_v1/adapter/FcDetailAdapter.java, line(s) 187
im/rightkinghts/ui/hui/friendscircle_v1/adapter/FcHomeAdapter.java, line(s) 179,690
im/rightkinghts/ui/hui/friendscircle_v1/adapter/UserFcListAdapter.java, line(s) 165
im/rightkinghts/ui/hui/friendscircle_v1/base/BaseFcActivity.java, line(s) 286,354,459,203,217,239,320,340,482
im/rightkinghts/ui/hui/friendscircle_v1/base/BaseFcFragment.java, line(s) 378,446,551,251,265,287,412,432,574
im/rightkinghts/ui/hui/friendscircle_v1/base/CommFcListActivity.java, line(s) 157
im/rightkinghts/ui/hui/friendscircle_v1/base/CommFcListFragment.java, line(s) 164,168,179
im/rightkinghts/ui/hui/friendscircle_v1/fragments/FcFollowFragment.java, line(s) 319,901
im/rightkinghts/ui/hui/friendscircle_v1/fragments/FcHomeFragment.java, line(s) 237,786,838
im/rightkinghts/ui/hui/friendscircle_v1/fragments/FcRecommendFragment.java, line(s) 232,760,812
im/rightkinghts/ui/hui/friendscircle_v1/helper/FcDBHelper.java, line(s) 150,156,165,167
im/rightkinghts/ui/hui/friendscircle_v1/player/logger/ExoPlayerLogger.java, line(s) 89,93,111,114,127,134,151,156,173,176,182,190,198,216,221,225,227,231,233,237,241,245,249,253,257,261,265,269,273,287,291,295,311,314,317,320,323,326,329,332,103,303
im/rightkinghts/ui/hui/friendscircle_v1/player/player/AbsBaseVideoPlayer.java, line(s) 36,47,54,63,70,78,90
im/rightkinghts/ui/hui/friendscircle_v1/player/player/VideoPlayerManager.java, line(s) 383
im/rightkinghts/ui/hui/friendscircle_v1/player/utils/Utils.java, line(s) 111,115
im/rightkinghts/ui/hui/friendscircle_v1/ui/FcPageDetailActivity.java, line(s) 148,192,324,343,847
im/rightkinghts/ui/hui/friendscircle_v1/ui/FcPageMineActivity.java, line(s) 953,1002
im/rightkinghts/ui/hui/friendscircle_v1/ui/FcPageOthersActivity.java, line(s) 1019
im/rightkinghts/ui/hui/friendscircle_v1/ui/FcPublishActivity.java, line(s) 742,991,1431,887,1434,1444
im/rightkinghts/ui/hui/friendscircle_v1/ui/FcTopicMainActivity.java, line(s) 833,882
im/rightkinghts/ui/hui/friendscircle_v1/ui/ImagePreSelectorActivity.java, line(s) 1587
im/rightkinghts/ui/hui/friendscircle_v1/ui/ImagePreviewActivity.java, line(s) 1320,8967,8974,8982,8988,542,740,1865,2488,2500,2789,2996,3702,3758,3787,3845,3873,4280,4287,4490,4512,4602,4658,4671,6252,6952,7325,7362,7620,7707,8994
im/rightkinghts/ui/hui/friendscircle_v1/ui/ImageSelectorActivity.java, line(s) 2059
im/rightkinghts/ui/hui/friendscircle_v1/utils/KeyboardUtils.java, line(s) 47,190,197,237,168,206,223
im/rightkinghts/ui/hui/friendscircle_v1/utils/StatusBarHeightUtil.java, line(s) 21
im/rightkinghts/ui/hui/friendscircle_v1/utils/ViewUtil.java, line(s) 17
im/rightkinghts/ui/hui/friendscircle_v1/view/FCIndexBar.java, line(s) 117
im/rightkinghts/ui/hui/friendscircle_v1/view/FcChildReplyListDialog.java, line(s) 204
im/rightkinghts/ui/hui/friendscircle_v1/view/FcDoReplyDialog.java, line(s) 187,379
im/rightkinghts/ui/hui/friendscircle_v1/view/flowLayout/TagAdapter.java, line(s) 84,88
im/rightkinghts/ui/hui/friendscircle_v1/view/flowLayout/TagFlowLayout.java, line(s) 121
im/rightkinghts/ui/hui/friendscircle_v1/view/panel/KPSwitchRootLayoutHandler.java, line(s) 35,46,50,56,60
im/rightkinghts/ui/hui/friendscircle_v1/view/richtext/TextCommonUtils.java, line(s) 246,274,280
im/rightkinghts/ui/hui/friendscircle_v1/view/toast/FcToastUtils.java, line(s) 83
im/rightkinghts/ui/hui/login/ChangePersonalInformationActivity.java, line(s) 536,513
im/rightkinghts/ui/hui/login/HloginActivity.java, line(s) 364,420,699,1140,1155,1396,2124,2245,4062
im/rightkinghts/ui/hui/login/LoginPasswordContronllerActivity.java, line(s) 182
im/rightkinghts/ui/hui/mine/AboutAppActivity.java, line(s) 203,288,339,354
im/rightkinghts/ui/hui/mine/DataUsageActivity.java, line(s) 348
im/rightkinghts/ui/hui/mine/MryLanguageSelectActivity.java, line(s) 263,274
im/rightkinghts/ui/hui/mine/MrySessionsActivity.java, line(s) 727,752
im/rightkinghts/ui/hui/mine/MryThemeActivity.java, line(s) 1005,1038,1050,1136,1141,1182,1514,1517,1527,1554
im/rightkinghts/ui/hui/mine/PrivacyAndSafeActivity.java, line(s) 278
im/rightkinghts/ui/hui/mine/QrCodeActivity.java, line(s) 348
im/rightkinghts/ui/hui/packet/RedpktGroupSendActivity.java, line(s) 777,1020,1193,1248,1263
im/rightkinghts/ui/hui/packet/RedpktSendActivity.java, line(s) 462,668,868,923,938
im/rightkinghts/ui/hui/packet/pop/RedPacketViewHolder.java, line(s) 232,237,242
im/rightkinghts/ui/hui/transfer/TransferSendActivity.java, line(s) 452,699,910,961,976
im/rightkinghts/ui/hui/transfer/TransferStatusActivity.java, line(s) 321,500
im/rightkinghts/ui/hui/views/SilderRelativeLayout.java, line(s) 94,104
im/rightkinghts/ui/hui/visualcall/AVideoCallInterface.java, line(s) 74,92,107,117,161,179,184,202
im/rightkinghts/ui/hui/visualcall/BaseCallActivity.java, line(s) 230,266,362,424,426,158,219,334
im/rightkinghts/ui/hui/visualcall/FlowService.java, line(s) 260,208
im/rightkinghts/ui/hui/visualcall/PermissionUtils.java, line(s) 66,71,89,93,113,116,136,155,166,203,217,225,77,230,52,60,62,176,178,181,215,82,172
im/rightkinghts/ui/hui/visualcall/RingUtils.java, line(s) 169,65
im/rightkinghts/ui/hui/visualcall/ThreadUtils.java, line(s) 53
im/rightkinghts/ui/hui/visualcall/VisualCallActivity.java, line(s) 311,315,379,410,467,713,819,910,932,959,964,1079,1106,1274,1306,1350,1352,1379,1414,1418,1444,1448,1457,1481,1485,1530,1761,654,1069,1504,793,797
im/rightkinghts/ui/hui/visualcall/VisualCallReceiveActivity.java, line(s) 467,507,589,628,756,862,1017,1046,1097,1101,1201
im/rightkinghts/ui/hui/visualcall/VisualCallReceiveService.java, line(s) 51
im/rightkinghts/ui/hviews/MryCheckBox.java, line(s) 96
im/rightkinghts/ui/hviews/MyScrollView.java, line(s) 480,546
im/rightkinghts/ui/hviews/PasswordEditText.java, line(s) 139,292
im/rightkinghts/ui/hviews/dialogs/XDialog.java, line(s) 673
im/rightkinghts/ui/hviews/dragView/DragCallBack.java, line(s) 235
im/rightkinghts/ui/hviews/dragView/DragHelperFrameLayout.java, line(s) 169
im/rightkinghts/ui/hviews/helper/MryDeviceHelper.java, line(s) 44,53
im/rightkinghts/ui/hviews/helper/MryDrawableHelper.java, line(s) 158
im/rightkinghts/ui/hviews/helper/MryNotchHelper.java, line(s) 48,64,67,368,370,372,45,61
im/rightkinghts/ui/hviews/page/PagerConfig.java, line(s) 43,37
im/rightkinghts/ui/hviews/page/PagerGridLayoutManager.java, line(s) 469,473,507,511
im/rightkinghts/ui/hviews/pop/BasePopup.java, line(s) 150,154
im/rightkinghts/ui/hviews/slidemenu/SwipeLayout.java, line(s) 775,780
im/rightkinghts/ui/hviews/swipelist/reservation/TopWrappedDividerItemDecoration.java, line(s) 28
im/rightkinghts/ui/load/animation/SpriteAnimatorBuilder.java, line(s) 146
im/rightkinghts/ui/newcall/NewCallActivity.java, line(s) 316
im/rightkinghts/ui/settings/CacheControlSettingActivity.java, line(s) 192
im/rightkinghts/ui/settings/NoticeAndSoundSettingActivity.java, line(s) 262,323,384
im/rightkinghts/ui/utils/AppUpdater.java, line(s) 76,138,151
im/rightkinghts/ui/utils/ChatActionBarHelper.java, line(s) 294
im/rightkinghts/ui/utils/DownloadUtils.java, line(s) 176,209
im/rightkinghts/ui/utils/OpenInstallUitl.java, line(s) 58,88
im/rightkinghts/ui/utils/QrCodeParseUtil.java, line(s) 138,153,198,235
im/rightkinghts/ui/utils/ThirdPartSdkInitUtil.java, line(s) 42,77,108,105
im/rightkinghts/ui/utils/number/MoneyUtil.java, line(s) 147
im/rightkinghts/ui/utils/picture/PictureUtil.java, line(s) 72
im/rightkinghts/ui/utils/translate/DecodeEngine.java, line(s) 114,118,134,141,169,173,267,289,297,315,323,378,382,417,445
im/rightkinghts/ui/utils/translate/ssrc/SSRC.java, line(s) 58,276,277,278,279,280,281,282,283,284,285,286,287,288,289,290,291,292,293,294,295,296,297,325,329,332,553,567,650,715,716,717,718,735,737,739,811,953,1142,1146,1190,1284,1285,1286,1287,1301,1303,1305,1354,1360
im/rightkinghts/ui/utils/translate/utils/AudioFileUtils.java, line(s) 32,35,56,111,113,134,150
im/rightkinghts/ui/wallet/WalletRechargeH5Activity.java, line(s) 119,198
im/rightkinghts/ui/wallet/WalletWithdrawActivity.java, line(s) 295,332,347
im/rightkinghts/ui/wallet/WalletWithdrawAddNewAccountActivity.java, line(s) 408,415,585,611,666
im/rightkinghts/ui/wallet/model/BankCardListResBean.java, line(s) 83
im/rightkinghts/ui/wallet/model/BillRecordDetailBean.java, line(s) 91
im/rightkinghts/ui/wallet/model/BillRecordResBillListBean.java, line(s) 213
im/rightkinghts/ui/wallet/model/WalletPaymentBankCardBean.java, line(s) 77,89
im/rightkinghts/ui/wallet/model/WalletWithdrawTemplateBean.java, line(s) 69
org/greenrobot/eventbus/Logger$SystemOutLogger.java, line(s) 7,11
org/greenrobot/eventbus/util/ErrorDialogConfig.java, line(s) 34
org/greenrobot/eventbus/util/ErrorDialogManager.java, line(s) 122
org/greenrobot/eventbus/util/ExceptionToResourceMapping.java, line(s) 25
org/webrtc/ali/AliHardwareAudioEncoder.java, line(s) 113,126,175,67
org/webrtc/ali/USBAudioDevice.java, line(s) 67
org/webrtc/alirtcInterface/ALI_RTC_INTERFACE_IMPL.java, line(s) 399,674,693,698,712,717,1160,288,293,302,341,346,351,356,361,366,371,376,381,386,334
org/webrtc/alirtcInterface/SophonEngine.java, line(s) 276
org/webrtc/alirtcInterface/SophonEngineImpl.java, line(s) 74,200,224,232,241,294,306,372,380,389,443,588,89,92,94,178,272,75,111,273,353,357,1066
org/webrtc/audio/AppRTCAudioManager.java, line(s) 257,271,304,346,389,398,94,99,109,112,178,190,201,213,242,254,260,269,292,296,318,328,332,349,391,500,501,531,551,557
org/webrtc/audio/AppRTCBluetoothManager.java, line(s) 61,64,72,78,94,109,113,121,123,127,132,137,142,159,190,191,193,199,214,219,228,234,240,248,255,260,264,266,298,301,303,310,316,322,331,341,344,355,178,183,221,225,118,161,165,174,348
org/webrtc/audio/AppRTCProximitySensor.java, line(s) 26,33,43,71,74,81,126,61
org/webrtc/sdk/SophonSurfaceView.java, line(s) 58,68,77,34
org/webrtc/utils/AppRTCUtils.java, line(s) 21
org/webrtc/utils/CpuMonitor.java, line(s) 103,114,121,128,167,240,181,186,188,303,338,365,371,374,377
org/webrtc/utils/MemoryMonitor.java, line(s) 33,40,63,69
org/webrtc/utils/NetworkMonitor.java, line(s) 49,55
pub/devrel/easypermissions/EasyPermissions.java, line(s) 131,133,27
pub/devrel/easypermissions/helper/ActivityPermissionHelper.java, line(s) 34
pub/devrel/easypermissions/helper/BaseSupportPermissionsHelper.java, line(s) 21

安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
com/base/module/log_dialog/LogDialog.java, line(s) 4,43
com/base/utils/AndroidUtils.java, line(s) 5,112
im/rightkinghts/messenger/AndroidUtilities.java, line(s) 8,1186
im/rightkinghts/ui/ChangeUsernameActivity.java, line(s) 4,85
im/rightkinghts/ui/ChannelCreateActivity.java, line(s) 8,757
im/rightkinghts/ui/ChatActivity.java, line(s) 11,8836
im/rightkinghts/ui/ChatEditTypeActivity.java, line(s) 4,386,400
im/rightkinghts/ui/GroupInviteActivity.java, line(s) 4,129
im/rightkinghts/ui/PhonebookShareActivity.java, line(s) 4,549,584
im/rightkinghts/ui/ProfileActivity.java, line(s) 11,1508,1533
im/rightkinghts/ui/StickersActivity.java, line(s) 4,392
im/rightkinghts/ui/ThemeSetUrlActivity.java, line(s) 4,98
im/rightkinghts/ui/components/EmbedBottomSheet.java, line(s) 9,809
im/rightkinghts/ui/components/ShareAlert.java, line(s) 7,452
im/rightkinghts/ui/dialogs/McShareDialog.java, line(s) 5,233
im/rightkinghts/ui/hui/chats/ProfileGroupActivity.java, line(s) 11,1593,1618
im/rightkinghts/ui/hui/discovery/QrScanResultActivity.java, line(s) 4,65
im/rightkinghts/ui/hui/packet/BillDetailsActivity.java, line(s) 4,311

安全提示信息 应用程序可以写入应用程序目录。敏感信息应加密

应用程序可以写入应用程序目录。敏感信息应加密


Files:
com/alivc/rtc/device/core/persistent/TransactionXMLFile.java, line(s) 8

安全提示信息 应用与Firebase数据库通信

该应用与位于 https://rightkinghts-48b0d.firebaseio.com 的 Firebase 数据库进行通信

已通过安全项 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
com/bjz/comm/net/factory/ApiFactory.java, line(s) 44,44
com/bjz/comm/net/factory/ApiGameFactory.java, line(s) 42,42
com/bjz/comm/net/factory/ApiHuanHuiFactory.java, line(s) 41,41
com/bjz/comm/net/factory/ApiMPFactory.java, line(s) 42,42
com/bjz/comm/net/factory/ApiTranslateAudioFactory.java, line(s) 40,40
com/zhy/http/okhttp/https/HttpsUtils.java, line(s) 110,174,42,109,135,173,98,108,108,172,172

已通过安全项 此应用程序可能具有Root检测功能

此应用程序可能具有Root检测功能
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
com/base/utils/DeviceUtils.java, line(s) 48

已通过安全项 Firebase远程配置已禁用

Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/194512522065/namespaces/firebase:fetch?key=AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw ) 已禁用。响应内容如下所示:

{
    "state": "NO_TEMPLATE"
}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (impyq.gz.bcebos.com) 通信。

{'ip': '121.228.183.252', 'country_short': 'CN', 'country_long': '中国', 'region': '江苏', 'city': '苏州', 'latitude': '31.311365', 'longitude': '120.617691'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (www.ntsc.ac.cn) 通信。

{'ip': '159.226.242.43', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (chatlink.mstatik.com) 通信。

{'ip': '159.226.242.43', 'country_short': 'CN', 'country_long': '中国', 'region': '江苏', 'city': '扬州', 'latitude': '32.397221', 'longitude': '119.435600'}

综合安全基线评分: ( ⁡⁡Tianqi⁡⁡ 2.7.0)