安全分析报告: n♆n v2.7.0

安全分数


安全分数 44/100

风险评级


等级

  1. A
  2. B
  3. C
  4. F

严重性分布 (%)


隐私风险

2

用户/设备跟踪器


调研结果

高危 10
中危 40
信息 3
安全 3
关注 4

高危 App 链接 assetlinks.json 文件未找到

[android:name=im.gukjhhafcz.ui.LaunchActivity][android:host=http://m12345.cc]
App Link 资产验证 URL (http://m12345.cc/.well-known/assetlinks.json) 未找到或配置不正确。(状态代码:None)。应用程序链接允许用户从 Web URL/电子邮件重定向到移动应用程序。如果此文件丢失或为 App Link 主机/域配置不正确,则恶意应用程序可以劫持此类 URL。这可能会导致网络钓鱼攻击,泄露 URI 中的敏感数据,例如 PII、OAuth 令牌、魔术链接/密码重置令牌等。您必须通过托管 assetlinks.json 文件并通过 Activity intent-filter 中的 [android:autoVerify=“true”] 启用验证来验证 App Link 网域。

高危 App 链接 assetlinks.json 文件未找到

[android:name=im.gukjhhafcz.ui.LaunchActivity][android:host=https://m12345.cc]
App Link 资产验证 URL (https://m12345.cc/.well-known/assetlinks.json) 未找到或配置不正确。(状态代码:None)。应用程序链接允许用户从 Web URL/电子邮件重定向到移动应用程序。如果此文件丢失或为 App Link 主机/域配置不正确,则恶意应用程序可以劫持此类 URL。这可能会导致网络钓鱼攻击,泄露 URI 中的敏感数据,例如 PII、OAuth 令牌、魔术链接/密码重置令牌等。您必须通过托管 assetlinks.json 文件并通过 Activity intent-filter 中的 [android:autoVerify=“true”] 启用验证来验证 App Link 网域。

高危 Activity (im.gukjhhafcz.ui.IntroActivity) 的启动模式不是standard模式

Activity 不应将启动模式属性设置为 "singleTask/singleInstance",因为这会使其成为根 Activity,并可能导致其他应用程序读取调用 Intent 的内容。因此,当 Intent 包含敏感信息时,需要使用 "standard" 启动模式属性。

高危 Activity (im.gukjhhafcz.messenger.OpenChatReceiver) 容易受到StrandHogg 2.0的攻击

已发现活动存在 StrandHogg 2.0 栈劫持漏洞的风险。漏洞利用时,其他应用程序可以将恶意活动放置在易受攻击的应用程序的活动栈顶部,从而使应用程序成为网络钓鱼攻击的易受攻击目标。可以通过将启动模式属性设置为“singleInstance”并设置空 taskAffinity (taskAffinity="") 来修复此漏洞。您还可以将应用的目标 SDK 版本 (28) 更新到 29 或更高版本以在平台级别修复此问题。

高危 Activity (im.gukjhhafcz.ui.PopupNotificationActivity) 的启动模式不是standard模式

Activity 不应将启动模式属性设置为 "singleTask/singleInstance",因为这会使其成为根 Activity,并可能导致其他应用程序读取调用 Intent 的内容。因此,当 Intent 包含敏感信息时,需要使用 "standard" 启动模式属性。

高危 Activity (im.gukjhhafcz.keepalive.OnePxActivity) 的启动模式不是standard模式

Activity 不应将启动模式属性设置为 "singleTask/singleInstance",因为这会使其成为根 Activity,并可能导致其他应用程序读取调用 Intent 的内容。因此,当 Intent 包含敏感信息时,需要使用 "standard" 启动模式属性。

高危 Activity (com.bjz.comm.net.premission.PermissionActivity) 的启动模式不是standard模式

Activity 不应将启动模式属性设置为 "singleTask/singleInstance",因为这会使其成为根 Activity,并可能导致其他应用程序读取调用 Intent 的内容。因此,当 Intent 包含敏感信息时,需要使用 "standard" 启动模式属性。

高危 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。

应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
im/gukjhhafcz/ui/hui/friendscircle/okhttphelper/AESHelper.java, line(s) 51
im/gukjhhafcz/ui/utils/AesUtils.java, line(s) 25,46,55
im/gukjhhafcz/ui/utils/ChiperUtils.java, line(s) 47,68,77

高危 启用了调试配置。生产版本不能是可调试的

启用了调试配置。生产版本不能是可调试的
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04c-Tampering-and-Reverse-Engineering.md#debugging-and-tracing

Files:
com/litesuits/orm/BuildConfig.java, line(s) 3,4

高危 如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击

如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-7

Files:
im/gukjhhafcz/ui/ArticleViewer.java, line(s) 6220,60,61
im/gukjhhafcz/ui/components/EmbedBottomSheet.java, line(s) 697,702,33,34

中危 应用程序已启用明文网络流量

[android:usesCleartextTraffic=true]
应用程序打算使用明文网络流量,例如明文HTTP,FTP协议,DownloadManager和MediaPlayer。针对API级别27或更低的应用程序,默认值为“true”。针对API级别28或更高的应用程序,默认值为“false”。避免使用明文流量的主要原因是缺乏机密性,真实性和防篡改保护;网络攻击者可以窃听传输的数据,并且可以在不被检测到的情况下修改它。

中危 Service (im.gukjhhafcz.messenger.GcmPushListenerService) 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危 Broadcast Receiver (com.google.android.gms.measurement.AppMeasurementReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 Activity (im.gukjhhafcz.ui.ShareActivity) 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危 Activity (im.gukjhhafcz.ui.ExternalActionActivity) 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危 Activity (im.gukjhhafcz.messenger.OpenChatReceiver) 未被保护。

[android:exported=true]
发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Activity设置了TaskAffinity属性

(im.gukjhhafcz.ui.VoIPPermissionActivity)
如果设置了 taskAffinity,其他应用程序可能会读取发送到属于另一个任务的 Activity 的 Intent。为了防止其他应用程序读取发送或接收的 Intent 中的敏感信息,请始终使用默认设置,将 affinity 保持为包名

中危 Activity设置了TaskAffinity属性

(im.gukjhhafcz.ui.VoIPFeedbackActivity)
如果设置了 taskAffinity,其他应用程序可能会读取发送到属于另一个任务的 Activity 的 Intent。为了防止其他应用程序读取发送或接收的 Intent 中的敏感信息,请始终使用默认设置,将 affinity 保持为包名

中危 Service (im.gukjhhafcz.messenger.AuthenticatorService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.messenger.ContactsSyncAdapterService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.messenger.AppChooserTargetService) 受权限保护, 但是应该检查权限的保护级别。

Permission: android.permission.BIND_CHOOSER_TARGET_SERVICE [android:exported=true]
发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 Service (im.gukjhhafcz.messenger.MusicPlayerService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.messenger.MusicBrowserService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.messenger.WearDataLayerListenerService) 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危 Service (im.gukjhhafcz.messenger.voip.AppConnectionService) 受权限保护, 但是应该检查权限的保护级别。

Permission: android.permission.BIND_TELECOM_CONNECTION_SERVICE [android:exported=true]
发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 Broadcast Receiver (im.gukjhhafcz.messenger.MusicPlayerReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 Broadcast Receiver (im.gukjhhafcz.messenger.voip.VoIPMediaButtonReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 Broadcast Receiver (im.gukjhhafcz.messenger.AppStartReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 Broadcast Receiver (im.gukjhhafcz.messenger.RefererReceiver) 受权限保护, 但是应该检查权限的保护级别。

Permission: android.permission.INSTALL_PACKAGES [android:exported=true]
发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 Content Provider (im.gukjhhafcz.messenger.voip.CallNotificationSoundProvider) 未被保护。

[android:exported=true]
发现 Content Provider与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.keepalive.ChannelService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.keepalive.DaemonService) 未被保护。

[android:exported=true]
发现 Service与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (im.gukjhhafcz.keepalive.ScheduleService) 受权限保护, 但是应该检查权限的保护级别。

Permission: android.permission.BIND_JOB_SERVICE [android:exported=true]
发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 Broadcast Receiver (im.gukjhhafcz.keepalive.MonitorReceiver) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 Broadcast Receiver (im.gukjhhafcz.keepalive.ScreenReceiver) 未被保护。

[android:exported=true]
发现 Broadcast Receiver与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。

中危 Service (com.blankj.utilcode.util.MessengerUtils$ServerService) 未被保护。

存在一个intent-filter。
发现 Service与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Service是显式导出的。

中危 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护, 但是应该检查权限的保护级别。

Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 Service (com.google.android.gms.auth.api.signin.RevocationBoundService) 受权限保护, 但是应该检查权限的保护级别。

Permission: com.google.android.gms.auth.api.signin.permission.REVOCATION_NOTIFICATION [android:exported=true]
发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

中危 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
com/bjz/comm/net/bean/AtUserBean.java, line(s) 60
com/bjz/comm/net/bean/FCEntitysRequest.java, line(s) 49
com/bjz/comm/net/bean/FCEntitysResponse.java, line(s) 126
com/bjz/comm/net/bean/FcUserInfoBean.java, line(s) 121
com/bjz/comm/net/bean/MiniGameBean.java, line(s) 113
com/bjz/comm/net/bean/ResponseAccessTokenBean.java, line(s) 60
com/litesuits/orm/db/assit/SQLBuilder.java, line(s) 62
com/litesuits/orm/db/model/EntityTable.java, line(s) 32
com/litesuits/orm/db/model/MapProperty.java, line(s) 7
com/zhy/http/okhttp/builder/PostFormBuilder.java, line(s) 48
im/gukjhhafcz/javaBean/ShareInstallConfigBean.java, line(s) 46
im/gukjhhafcz/ui/ArticleViewer.java, line(s) 3461
im/gukjhhafcz/ui/ChannelCreateActivity.java, line(s) 135
im/gukjhhafcz/ui/DataAutoDownloadActivity.java, line(s) 295,310,303
im/gukjhhafcz/ui/LaunchActivity.java, line(s) 1731
im/gukjhhafcz/ui/adapters/MentionsAdapter.java, line(s) 385
im/gukjhhafcz/ui/cells/TextInfoPrivacyCell.java, line(s) 28
im/gukjhhafcz/ui/components/CheckBoxBase.java, line(s) 62,60,61
im/gukjhhafcz/ui/components/ContextProgressView.java, line(s) 33,36,39,42,34,37,40,43
im/gukjhhafcz/ui/components/GroupCreateCheckBox.java, line(s) 40,38,39
im/gukjhhafcz/ui/components/ScrollSlidingTextTabStrip.java, line(s) 65,118,63,116,66,119,64,117
im/gukjhhafcz/ui/components/Switch.java, line(s) 68,69,70,71
im/gukjhhafcz/ui/hui/friendscircle_v1/view/CommFCArcView.java, line(s) 18,24,30
im/gukjhhafcz/ui/hui/friendscircle_v1/view/edittext/span/User.java, line(s) 152
im/gukjhhafcz/ui/hui/login/LoginContronllerActivity.java, line(s) 85
im/gukjhhafcz/ui/settings/AutoDownloadSettingActivity.java, line(s) 450,465,458

中危 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/bjz/comm/net/utils/MD5Utils.java, line(s) 17
com/danikula/videocache/ProxyCacheUtils.java, line(s) 73
com/litesuits/orm/db/assit/Encrypt.java, line(s) 35
im/gukjhhafcz/messenger/AndroidUtilities.java, line(s) 2157
im/gukjhhafcz/messenger/MessagesController.java, line(s) 1032
im/gukjhhafcz/messenger/Utilities.java, line(s) 363
im/gukjhhafcz/translate/MD5.java, line(s) 20,49
im/gukjhhafcz/ui/hui/friendscircle/okhttphelper/MD5Utils.java, line(s) 17
im/gukjhhafcz/ui/utils/ChiperUtils.java, line(s) 18

中危 可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息

可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-6

Files:
im/gukjhhafcz/ui/fragments/TabWebFragment.java, line(s) 95,88
im/gukjhhafcz/ui/hui/discoveryweb/DiscoveryJumpToPage.java, line(s) 268,261

中危 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
com/danikula/videocache/sourcestorage/DatabaseSourceInfoStorage.java, line(s) 6,7,28
com/litesuits/orm/db/assit/Querier.java, line(s) 4,14

中危 应用程序创建临时文件。敏感信息永远不应该被写进临时文件

应用程序创建临时文件。敏感信息永远不应该被写进临时文件


Files:
im/gukjhhafcz/ui/components/paint/Slice.java, line(s) 23

中危 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
com/socks/library/klog/FileLog.java, line(s) 10
im/gukjhhafcz/ui/utils/NameUtil.java, line(s) 3
im/gukjhhafcz/ui/utils/number/StringUtils.java, line(s) 4
im/gukjhhafcz/ui/utils/translate/ssrc/SSRC.java, line(s) 7

中危 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
com/danikula/videocache/StorageUtils.java, line(s) 23,40
im/gukjhhafcz/messenger/AndroidUtilities.java, line(s) 1430,865,1422,1423
im/gukjhhafcz/messenger/FileLog.java, line(s) 49,81,275
im/gukjhhafcz/messenger/ImageLoader.java, line(s) 1026,1027
im/gukjhhafcz/messenger/SharedConfig.java, line(s) 621
im/gukjhhafcz/messenger/voip/VoIPController.java, line(s) 266
im/gukjhhafcz/ui/DocumentSelectActivity.java, line(s) 475,568,568,568,571
im/gukjhhafcz/ui/components/voip/VoIPHelper.java, line(s) 476
im/gukjhhafcz/ui/dialogs/McShareDialog.java, line(s) 165
im/gukjhhafcz/ui/hui/chats/GroupShareActivity.java, line(s) 260
im/gukjhhafcz/ui/hui/login/LoginContronllerActivity.java, line(s) 934
im/gukjhhafcz/ui/hui/mine/QrCodeActivity.java, line(s) 367
im/gukjhhafcz/ui/hviews/helper/MryDisplayHelper.java, line(s) 225
im/gukjhhafcz/ui/utils/DownloadUtils.java, line(s) 146

中危 SHA-1是已知存在哈希冲突的弱哈希

SHA-1是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
im/gukjhhafcz/messenger/Utilities.java, line(s) 218,232
im/gukjhhafcz/ui/PassportActivity.java, line(s) 2132
im/gukjhhafcz/ui/utils/DeviceIdUtil.java, line(s) 82

中危 不安全的Web视图实现。可能存在WebView任意代码执行漏洞

不安全的Web视图实现。可能存在WebView任意代码执行漏洞
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5

Files:
im/gukjhhafcz/messenger/utils/PlayerUtils.java, line(s) 1138,1145
im/gukjhhafcz/ui/ArticleViewer.java, line(s) 6092,6087
im/gukjhhafcz/ui/WebviewActivity.java, line(s) 282,270
im/gukjhhafcz/ui/components/EmbedBottomSheet.java, line(s) 676,232
im/gukjhhafcz/ui/components/WebPlayerView.java, line(s) 1133,1140

中危 IP地址泄露

IP地址泄露


Files:
com/danikula/videocache/HttpProxyCacheServer.java, line(s) 32
im/gukjhhafcz/tgnet/NetworkConfig.java, line(s) 100,95,102

中危 应用程序包含隐私跟踪程序

此应用程序有多个2隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。

中危 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
openinstall统计的=> "com.openinstall.APP_KEY" : "rzrc91"
百度地图的=> "com.baidu.lbsapi.API_KEY" : "oYnHR3odlaw9KUleHaQP5BrTLivxSCz1"
谷歌地图的=> "com.google.android.maps.v2.API_KEY" : "AIzaSyA-t0jLPjUt2FxrA8VPK2EiYHcYcboIR6k"
"PayPasswordReset" : "PayPasswordReset"
"TypePrivateGroup" : "Private"
"FindBackPassword" : "FindBack"
"google_api_key" : "AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw"
"YourPasswordSuccess" : "Success!"
"PayPassword" : "PayPassword"
"LoginPasswordReset" : "LoginPasswordReset"
"LoginPassword" : "Password"
"TypePrivate" : "Private"
"key_windowBackgroundGray" : "windowBackgroundGray"
"RestorePasswordNoEmailTitle" : "Sorry"
"UseProxyPassword" : "Password"
"TypePrivate2" : "Private"
"UseProxyUsername" : "Username"
"UserNameOrPhoneNumberSearch" : "Username"
"key_windowBackgroundWhite" : "windowBackgroundWhite"
"Username" : "Username"
"PayPasswordSetReminder" : "Tips"
"PasscodePassword" : "Password"
"PayPasswordSetting" : "PayPasswordSetting"
"baidu_map_key" : "oYnHR3odlaw9KUleHaQP5BrTLivxSCz1"
"key_walletDefaultBackground" : "walletDefaultBackground"
"Sessions" : "Sessions"
"yuncheng_app_key" : "-dSPyyHFK-C3oeMlwHTO+pKDObpgxP2MO7Uo2UCH0+AxbvSwOHSK26vswxbHqitmfpzvpr_umcseBVAt1Jhc+ZSpVK2u1Jycd5vGXSkkeksUjEvw7B1ab_L72k9kUie93wo9MKEFb_z5dDVJuy1dmCJ1lkTEoczXTFwV8KDvdhxGgMFuczwD-9Dky82dyNcpoA5r1MQjP9ySfIjUZBsaePOvidufUoObTop+UEXpSPUk0S9Qz8Pt8bxT4nwwFJr18bwcZoeGyMLOYYBtZsWjTSuoCM-evTn1HNr6AjGt9PsQ2REKz14oSNoo4JB7gRopFVzhEnZYwMTBKe3jbvAufn_d4Ur6uhiE34czv+fdJVeUHP"
"PasswordCode" : "Code"
"firebase_database_url" : "https://gukjhhafcz-48b0d.firebaseio.com"
"PaymentPasswordTitle" : "Password"
"google_app_id" : "1:194512522065:android:a3b6ee229cc1efe012e170"
"google_crash_reporting_api_key" : "AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw"
"UseProxySecret" : "Secret"
C71CAEB9C6B1C9048E6C522F70F13F73980D40238E3E21C14934D037563D930F48198A0AA7C14058229493D22530F4DBFA336F6E0AC925139543AED44CCE7C3720FD51F69458705AC68CD4FE6B6B13ABDC9746512969328454F18FAF8C595F642477FE96BB2A941D5BCD1D4AC8CC49880708FA9B378E3C4F3A9060BEE67CF9A4A4A695811051907E162753B56B0F6B410DBA74D8A84B2A14B3144E0EF1284754FD17ED950D5965B4B9DD46582DB1178D169C6BC465B0D6FF9CA3928FEF5B9AE4E418FC15E83EBEA0F87FA9FF5EED70050DED2849F47BF959D956850CE929851F0D8115F635B105EE2E4E15D04B2454BF6F4FADF034B10403119CD8E3B92FCC5B
ABVGDE2JZIQKLMNOPRSTUFHC34WXY9678
9A04F079-9840-4286-AB92-E65BE0885F95
pE5eNoBQIFVcd9IEuyIhvopfgS1RSj5C
fb9f0bb7fdd0760c354cc3d80cecb1d9
f180c508-f49a-40bd-b8ac-50577ce9aff6
A2B55680-6F43-11E0-9A3F-0002A5D5C51B
e283aac0-7c0f-4f2e-bcf7-90acc19903ed

信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
cn/dreamtobe/kpswitch/handler/KPSwitchRootLayoutHandler.java, line(s) 34,45,49,55,59
cn/dreamtobe/kpswitch/util/KeyboardUtil.java, line(s) 42,176,183,219,155,191,207
cn/dreamtobe/kpswitch/util/StatusBarHeightUtil.java, line(s) 21
cn/dreamtobe/kpswitch/util/ViewUtil.java, line(s) 17
com/bjz/comm/net/factory/ApiFactory.java, line(s) 59,66
com/bjz/comm/net/factory/ApiGameFactory.java, line(s) 57,64
com/bjz/comm/net/mvp/presenter/FcCommonPresenter.java, line(s) 111
com/bjz/comm/net/premission/PermissionActivity.java, line(s) 51,319,331,345
com/bjz/comm/net/premission/PermissionManager.java, line(s) 33
com/bjz/comm/net/receiver/NetworkConnectChangedReceiver.java, line(s) 25,31,41
com/bjz/comm/net/utils/MD5Utils.java, line(s) 19,84,88,89
com/bjz/comm/net/utils/RxHelper.java, line(s) 94,99,120,124,135,178
com/bjz/comm/net/utils/TokenLoader.java, line(s) 48,80,84
com/contrarywind/view/WheelView.java, line(s) 342
com/coremedia/iso/boxes/sampleentry/AudioSampleEntry.java, line(s) 195
com/litesuits/orm/LiteOrm.java, line(s) 81,83,89,118,293
com/litesuits/orm/db/TableManager.java, line(s) 92,132,123,171,246,91,96,97,101,102,119,121,131,138,139,160,161,179,180,181,186,187
com/litesuits/orm/db/assit/Querier.java, line(s) 12,18,21,11,17,20
com/litesuits/orm/db/assit/SQLStatement.java, line(s) 195,228,473,139,233,95,96,129,130,133,134,138,178,179,194,223,224,227,232,271,307,324,329,377,378,452,461,472,272,308,453,462
com/litesuits/orm/db/assit/Transaction.java, line(s) 16,22,23
com/litesuits/orm/db/utils/DataUtil.java, line(s) 102,103
com/litesuits/orm/log/OrmLog.java, line(s) 41,74,124,157,62,95,145,178,20,27,48,81,131,164,34,67,117,150,55,88,138,171
com/preview/PreviewDialogFragment.java, line(s) 160
com/socks/library/Util.java, line(s) 13,15
com/socks/library/klog/BaseLog.java, line(s) 29,38,32,26,35,41
com/socks/library/klog/FileLog.java, line(s) 18,21
com/socks/library/klog/JsonLog.java, line(s) 22
com/socks/library/klog/XmlLog.java, line(s) 19
com/zhy/http/okhttp/cookie/store/PersistentCookieStore.java, line(s) 140,149,152
com/zhy/http/okhttp/log/LoggerInterceptor.java, line(s) 40,42,43,44,46,49,52,55,57,68,69,70,72,76,78,80,83
com/zhy/http/okhttp/utils/L.java, line(s) 10
im/gukjhhafcz/keepalive/ChannelService.java, line(s) 54
im/gukjhhafcz/keepalive/CheckTopTask.java, line(s) 23,47
im/gukjhhafcz/keepalive/DaemonService.java, line(s) 130,66,90,103,112,133
im/gukjhhafcz/keepalive/MonitorReceiver.java, line(s) 11,15
im/gukjhhafcz/keepalive/OnePxActivity.java, line(s) 34,63,87
im/gukjhhafcz/keepalive/ScheduleService.java, line(s) 11,19
im/gukjhhafcz/keepalive/ScreenReceiver.java, line(s) 37
im/gukjhhafcz/messenger/AndroidUtilities$LinkMovementMethodMy.java, line(s) 19
im/gukjhhafcz/messenger/AndroidUtilities.java, line(s) 794,1428,1439,221,276,407,502,516,541,550,698,761,786,827,839,858,867,877,886,970,973,1071,1087,1102,1143,1160,1164,1230,1251,1350,1394,1414,1474,1535,1593,1605,1646,1736
im/gukjhhafcz/messenger/AnimatedFileDrawableStream.java, line(s) 56
im/gukjhhafcz/messenger/AppChooserTargetService.java, line(s) 44,72
im/gukjhhafcz/messenger/ApplicationLoader.java, line(s) 71,112,140,156,166,175,184,214,217,223,226,252,64,115,238,266,279,298,311,355
im/gukjhhafcz/messenger/ContactsController.java, line(s) 349,361,372,596,649,746,755,779,895,900,921,987,1004,1458,1583,460,485,706,1155,1163,1357,1366,1372,1416,1654,2091,2122
im/gukjhhafcz/messenger/ContactsSyncAdapterService.java, line(s) 49,30
im/gukjhhafcz/messenger/DispatchQueue.java, line(s) 29,38,50,64,80
im/gukjhhafcz/messenger/DownloadController.java, line(s) 812
im/gukjhhafcz/messenger/Emoji.java, line(s) 187,91,104,114,489,501
im/gukjhhafcz/messenger/FileLoadOperation.java, line(s) 592,786,857,1136,1236,1261,423,436,453,704,710,717,723,730,736,743,749,757,817,819,828,835
im/gukjhhafcz/messenger/FileLoader.java, line(s) 710,1126,1134,1142,1151
im/gukjhhafcz/messenger/FileLog.java, line(s) 200,219,98,118,137,156,238,257
im/gukjhhafcz/messenger/FileRefController.java, line(s) 152,673
im/gukjhhafcz/messenger/FileStreamLoadOperation.java, line(s) 136
im/gukjhhafcz/messenger/FileUploadOperation.java, line(s) 116,140,206,402
im/gukjhhafcz/messenger/GcmPushListenerService.java, line(s) 23,31,68,106
im/gukjhhafcz/messenger/ImageLoader.java, line(s) 953,1023,1037,1049,1062,1075,1083,437,455,793,799,1013,1019,1041,1053,1066,1079,1087,1135,1143,1153,1669,1681,1704,1861,1867,1960
im/gukjhhafcz/messenger/ImageReceiver.java, line(s) 662,713,747,760
im/gukjhhafcz/messenger/KeepAliveJob.java, line(s) 28,44,50,72,84
im/gukjhhafcz/messenger/LocaleController.java, line(s) 740,2015,2109,2146,263,268,515,672,678,684,695,807,836,886,1474,1551,1576,1592,1611,1640,1683,1712,1805,1821,1845,2085,2867
im/gukjhhafcz/messenger/LocationController.java, line(s) 559,643,707
im/gukjhhafcz/messenger/MediaController$4.java, line(s) 66
im/gukjhhafcz/messenger/MediaController$5.java, line(s) 29
im/gukjhhafcz/messenger/MediaController$6.java, line(s) 29
im/gukjhhafcz/messenger/MediaController$StopMediaObserverRunnable.java, line(s) 25,33
im/gukjhhafcz/messenger/MediaController$VideoConvertRunnable.java, line(s) 30
im/gukjhhafcz/messenger/MediaController.java, line(s) 332,648,741,784,789,809,828,840,850,286,291,296,301,318,341,350,403,414,431,465,476,1041,1071,1180,1312,1327,1630,1636,1756,1777,1875,1884,1965,2035,2076,2084,2107,2110,2121,2143,2146,2157,2175,2307
im/gukjhhafcz/messenger/MediaDataController.java, line(s) 313,444,501,565,702,757,877,1137,1208,1431,1569,1764,1872,2446,2485,2633,2667,2693,2774,2894,2988,3026,3192,3234,3251,3493,3555,3940,4021,4164,4205,4241,4280,4347
im/gukjhhafcz/messenger/MessageObject.java, line(s) 262,2286,2371,2377
im/gukjhhafcz/messenger/MessagesController.java, line(s) 2212,2217,2253,2263,2288,2295,2312,2324,3418,3427,4676,6717,6727,6763,6865,6874,6887,6928,6937,6949,7228,7240,7426,1288,2893,3008,3041,3079,4692,5346,6115,6141,6992,7489,7609,7683,8104,8637,8909,8987,8992
im/gukjhhafcz/messenger/MessagesStorage.java, line(s) 354,385,486,528,567,710,768,811,928,1013,1054,1083,1155,1299,1336,1407,1554,1594,1610,1646,1666,1818,1877,1957,1993,2088,2103,2129,2144,2184,2236,2310,2338,2371,2473,2539,2574,2615,2628,2655,2668,2710,2793,2802,2856,2952,2976,3059,3093,3132,3158,3211,3302,3339,3461,3680,3771,3813,3834,3860,3881,3890,3907,3929,3948,3959,3973,3987,4014,4038,4062,4091,4120,4152,4181
im/gukjhhafcz/messenger/MusicBrowserService.java, line(s) 197,293,332,381,505
im/gukjhhafcz/messenger/MusicPlayerService.java, line(s) 189,371
im/gukjhhafcz/messenger/NotificationBadge.java, line(s) 180,449
im/gukjhhafcz/messenger/NotificationCenter.java, line(s) 915
im/gukjhhafcz/messenger/NotificationImageProvider.java, line(s) 105
im/gukjhhafcz/messenger/NotificationsController.java, line(s) 214,352,1471,190,195,202,225,266,300,319,1255,1269,1321,1397,1410,1423,1450,1454,1463,1477,1535,1567,1673,1707,1711,1720
im/gukjhhafcz/messenger/ScreenReceiver.java, line(s) 14,23
im/gukjhhafcz/messenger/SecretChatHelper.java, line(s) 585,658,681,766,949,1172,1193,1207,1316,1345,1389,1406
im/gukjhhafcz/messenger/SendMessagesHelper$LocationProvider.java, line(s) 48,94,99,108
im/gukjhhafcz/messenger/SendMessagesHelper.java, line(s) 3025,3046,3054,3060,524,541,941,1275,2640,2646
im/gukjhhafcz/messenger/SharedConfig.java, line(s) 672,122,254,276,290,345,643
im/gukjhhafcz/messenger/SmsReceiver.java, line(s) 47
im/gukjhhafcz/messenger/UserConfig.java, line(s) 191
im/gukjhhafcz/messenger/Utilities.java, line(s) 71,222,238,267,280,291,303,322,339,370
im/gukjhhafcz/messenger/VideoEditedInfo.java, line(s) 70
im/gukjhhafcz/messenger/VideoEncodingService.java, line(s) 36,85,53
im/gukjhhafcz/messenger/WearDataLayerListenerService.java, line(s) 43,51,67,206,213,60,200,217,301
im/gukjhhafcz/messenger/XiaomiUtilities.java, line(s) 41
im/gukjhhafcz/messenger/browser/Browser.java, line(s) 82,96
im/gukjhhafcz/messenger/camera/CameraController.java, line(s) 151,173,494,511,530,287,303,308,359,381,408,420,452,484,537,566,614,642,645,698,703,709,714,722,745
im/gukjhhafcz/messenger/camera/CameraSession.java, line(s) 167,183,188,267
im/gukjhhafcz/messenger/secretmedia/ExtendedDefaultDataSource.java, line(s) 194
im/gukjhhafcz/messenger/support/JobIntentService.java, line(s) 135
im/gukjhhafcz/messenger/support/customtabs/CustomTabsSessionToken.java, line(s) 19,28,37,46
im/gukjhhafcz/messenger/support/customtabsclient/shared/CustomTabsHelper.java, line(s) 84
im/gukjhhafcz/messenger/support/fingerprint/FingerprintManagerCompatApi23.java, line(s) 36,45,54
im/gukjhhafcz/messenger/utils/PlayerUtils.java, line(s) 454,377,434,506,565,617,677,748,1087,1349,1419
im/gukjhhafcz/messenger/utils/SelectorUtils.java, line(s) 86
im/gukjhhafcz/messenger/voip/AppConnectionService.java, line(s) 31,68,48,58,16,24
im/gukjhhafcz/messenger/voip/AudioRecordJNI.java, line(s) 239,64,77,93,112,135,176,200,230,108,208,61,74,90
im/gukjhhafcz/messenger/voip/AudioTrackJNI.java, line(s) 40,63,109,119,117,34
im/gukjhhafcz/messenger/voip/JNIUtilities.java, line(s) 90
im/gukjhhafcz/messenger/voip/VoIPBaseService.java, line(s) 583,672,727,826,864,871,877,1073,1231,1242,1270,1282,1289,163,171,269,517,554,630,718,807,836,933,950,986,1151,1162
im/gukjhhafcz/messenger/voip/VoIPServerConfig.java, line(s) 19
im/gukjhhafcz/messenger/voip/VoIPService.java, line(s) 355,438,444,451,685,704,837,954,973,1128,91,276,332,353,386,408,457,509,563,573,678,709,723,911,967,1014,105,379,404,553,739
im/gukjhhafcz/phoneformat/PhoneFormat.java, line(s) 115,121,143,150,160,170,233,267
im/gukjhhafcz/sqlite/SQLiteCursor.java, line(s) 98,103
im/gukjhhafcz/sqlite/SQLiteDatabase.java, line(s) 60,77
im/gukjhhafcz/sqlite/SQLitePreparedStatement.java, line(s) 107,108
im/gukjhhafcz/tgnet/ConnectionsManager$DnsTxtLoadTask.java, line(s) 36,21
im/gukjhhafcz/tgnet/ConnectionsManager$FirebaseTask.java, line(s) 37,22
im/gukjhhafcz/tgnet/ConnectionsManager.java, line(s) 198,273,317,440,448,464,479,486,516,540,548,556,680,686,689,286,288,308,321,323,489,529,584,596,609,695,719
im/gukjhhafcz/tgnet/FCTokenRequestCallback.java, line(s) 42,58,63,69,77,81,98,99
im/gukjhhafcz/tgnet/NativeByteBuffer.java, line(s) 39,132,147,173,188,208,219,255,291,302,339,389,407,423,437,450,486,516,551,567
im/gukjhhafcz/tgnet/NetworkConfig.java, line(s) 164,171,179,212,220,236,57,81
im/gukjhhafcz/tgnet/SerializedData.java, line(s) 71,79,87,95,126,149,178,193,208,223,259,270,306,317,352,379,394,435,469,485,502,522
im/gukjhhafcz/tgnet/TLClassStore.java, line(s) 52
im/gukjhhafcz/translate/MD5.java, line(s) 31
im/gukjhhafcz/ui/ArticleViewer.java, line(s) 3214,3919,4087,4136,4155,4293,4302,4329,4342,6068,6078,6181,6202,6226,8202,8610,9019,9212,9284,9290,9317,9365
im/gukjhhafcz/ui/AudioSelectActivity.java, line(s) 278
im/gukjhhafcz/ui/CacheControlActivity.java, line(s) 173,350,372
im/gukjhhafcz/ui/CancelAccountDeletionActivity.java, line(s) 132,254,383,940,1057
im/gukjhhafcz/ui/ChangeBioActivity.java, line(s) 227,238
im/gukjhhafcz/ui/ChangePhoneActivity.java, line(s) 122,270,520,1136,1253
im/gukjhhafcz/ui/ChangePhoneNumberActivity.java, line(s) 183,193
im/gukjhhafcz/ui/ChangeSignActivity.java, line(s) 158,169
im/gukjhhafcz/ui/ChangeUsernameActivity.java, line(s) 87,105,483,498
im/gukjhhafcz/ui/ChannelAdminLogActivity.java, line(s) 301,899,2024,2033,2042,2051,2060,2069,2078,2087,300,300,304
im/gukjhhafcz/ui/ChannelCreateActivity.java, line(s) 688,823,946,958
im/gukjhhafcz/ui/ChatActivity.java, line(s) 7666,7704,917,943,972,992,1289,1460,2322,2524,4133,4409,4496,6053,6719,8509,8540,8775,8941,8946,9866,9917,9932,11437,11496,11706,11715,11724,11733,11742,11751,11760,11769
im/gukjhhafcz/ui/ChatEditActivity.java, line(s) 792
im/gukjhhafcz/ui/ChatEditTypeActivity.java, line(s) 395,407,439
im/gukjhhafcz/ui/ChatRightsEditActivity.java, line(s) 597,624
im/gukjhhafcz/ui/ChatUsersActivity.java, line(s) 1713
im/gukjhhafcz/ui/ContactAddActivity.java, line(s) 179
im/gukjhhafcz/ui/ContactsActivity.java, line(s) 242,344,428
im/gukjhhafcz/ui/ContentPreviewViewer.java, line(s) 607,643,675,696,707,801
im/gukjhhafcz/ui/CountrySelectActivity.java, line(s) 397,408
im/gukjhhafcz/ui/DialogsActivity.java, line(s) 1537,2155
im/gukjhhafcz/ui/DocumentSelectActivity.java, line(s) 149,169,498,676
im/gukjhhafcz/ui/ExternalActionActivity.java, line(s) 577,581,82,382,428
im/gukjhhafcz/ui/GroupCreateFinalActivity.java, line(s) 150
im/gukjhhafcz/ui/GroupInviteActivity.java, line(s) 135,150
im/gukjhhafcz/ui/GroupStickersActivity.java, line(s) 707
im/gukjhhafcz/ui/IdenticonActivity.java, line(s) 70
im/gukjhhafcz/ui/IndexActivity.java, line(s) 670,699,702
im/gukjhhafcz/ui/InviteContactsActivity.java, line(s) 582,625,790,816
im/gukjhhafcz/ui/LanguageSelectActivity.java, line(s) 251,262
im/gukjhhafcz/ui/LaunchActivity.java, line(s) 501,547,556,581,622,666,1865,2091,2578,2606,2704,2708,212,471,517,951,998,1052,1134,1226,1243,1260,1281,1309,1365,1403,1507,1532,1542,1749,1858,1960,1967,2194,2205,2449,2636,2830,2891
im/gukjhhafcz/ui/LaunchAgDialogActivity.java, line(s) 37
im/gukjhhafcz/ui/LocationActivity.java, line(s) 213,266,781,964,1073,1123,1168,1179,1380,1462,1521,1537,1546
im/gukjhhafcz/ui/LoginActivity.java, line(s) 361,415,703,1127,1132,1315,1999,2121,3939
im/gukjhhafcz/ui/Media1Activity.java, line(s) 1807
im/gukjhhafcz/ui/MediaActivity.java, line(s) 1836
im/gukjhhafcz/ui/NewContactActivity.java, line(s) 178
im/gukjhhafcz/ui/NotificationsCustomSettingsActivity.java, line(s) 382
im/gukjhhafcz/ui/NotificationsSettingsActivity.java, line(s) 359
im/gukjhhafcz/ui/PasscodeActivity.java, line(s) 479,612
im/gukjhhafcz/ui/PassportActivity.java, line(s) 782,2136,2468,2762,2874,3592,5436,5499,5681,5752,5909,6638,6755
im/gukjhhafcz/ui/PeopleNearbyActivity.java, line(s) 424,354,554
im/gukjhhafcz/ui/PhoneBookSelectActivity.java, line(s) 211
im/gukjhhafcz/ui/PhonebookShareActivity.java, line(s) 512,563,605
im/gukjhhafcz/ui/PhotoCropActivity.java, line(s) 356,330,335
im/gukjhhafcz/ui/PhotoViewer.java, line(s) 1274,4083,7410,7417,7425,7431,438,768,1403,2017,2029,2339,2480,3060,3116,3144,3200,3227,3628,3635,3855,3876,3967,4027,4040,4912,5864,6154,6191,6272,6502,6593,7437
im/gukjhhafcz/ui/PopupNotificationActivity.java, line(s) 444,1056
im/gukjhhafcz/ui/PrivacyControlActivity.java, line(s) 112,678
im/gukjhhafcz/ui/PrivacySettingsActivity.java, line(s) 428,505
im/gukjhhafcz/ui/ProfileActivity.java, line(s) 348,803,824,1609,1623,1638,1662,2733
im/gukjhhafcz/ui/ProfileNotificationsActivity.java, line(s) 349,370
im/gukjhhafcz/ui/SecretMediaViewer.java, line(s) 529,535,577,615,882,1032,1262
im/gukjhhafcz/ui/SessionsActivity.java, line(s) 349,375
im/gukjhhafcz/ui/SettingsActivity.java, line(s) 2650
im/gukjhhafcz/ui/ShareActivity.java, line(s) 76,98
im/gukjhhafcz/ui/StickersActivity.java, line(s) 396,405,495
im/gukjhhafcz/ui/TestActivity.java, line(s) 32
im/gukjhhafcz/ui/ThemeActivity.java, line(s) 1014,1026,1108,1113,1154
im/gukjhhafcz/ui/ThemeSetUrlActivity.java, line(s) 108,126,443,454,675,686
im/gukjhhafcz/ui/TwoStepVerificationActivity.java, line(s) 171,1001
im/gukjhhafcz/ui/VoIPActivity.java, line(s) 222
im/gukjhhafcz/ui/WebviewActivity.java, line(s) 95,199,298,308,340,516,324,330
im/gukjhhafcz/ui/actionbar/ActionBarLayout.java, line(s) 183,1395,1587,2175
im/gukjhhafcz/ui/actionbar/ActionBarPopupWindow.java, line(s) 102,319,381
im/gukjhhafcz/ui/actionbar/AlertDialog.java, line(s) 801
im/gukjhhafcz/ui/actionbar/BaseFragment.java, line(s) 198,210,235,250,346,377,446,457,494,508
im/gukjhhafcz/ui/actionbar/BottomSheet.java, line(s) 567,964,1028,1046
im/gukjhhafcz/ui/actionbar/DrawerLayoutContainer.java, line(s) 324
im/gukjhhafcz/ui/actionbar/Theme.java, line(s) 1160,1216,1224,1718,1725,1777,2091,2111,2125,2219,2231,3420,3430,3445,3451
im/gukjhhafcz/ui/actionbar/ThemeDescription.java, line(s) 709
im/gukjhhafcz/ui/actionbar/XAlertDialog.java, line(s) 836,888
im/gukjhhafcz/ui/adapters/BaseLocationAdapter.java, line(s) 61,83
im/gukjhhafcz/ui/adapters/ContactsAdapter.java, line(s) 96
im/gukjhhafcz/ui/adapters/DialogsAdapter.java, line(s) 221
im/gukjhhafcz/ui/adapters/DialogsSearchAdapter.java, line(s) 361,402,422
im/gukjhhafcz/ui/adapters/PhonebookSearchAdapter.java, line(s) 47,63
im/gukjhhafcz/ui/adapters/SearchAdapter.java, line(s) 90,110,355
im/gukjhhafcz/ui/adapters/SearchAdapterHelper.java, line(s) 371,528
im/gukjhhafcz/ui/bottom/BottomBarLayout.java, line(s) 166
im/gukjhhafcz/ui/cell/FmtDialogCell.java, line(s) 360
im/gukjhhafcz/ui/cells/AboutLinkCell.java, line(s) 126
im/gukjhhafcz/ui/cells/ArchiveHintCell.java, line(s) 49,53
im/gukjhhafcz/ui/cells/AudioPlayerCell.java, line(s) 66,71
im/gukjhhafcz/ui/cells/BotHelpCell.java, line(s) 93
im/gukjhhafcz/ui/cells/ChatActionCell.java, line(s) 226,231
im/gukjhhafcz/ui/cells/ChatMessageCell.java, line(s) 2071,2168,2196,3765,3847,3971,3984,4306
im/gukjhhafcz/ui/cells/DialogCell.java, line(s) 356
im/gukjhhafcz/ui/cells/DialogMeUrlCell.java, line(s) 124
im/gukjhhafcz/ui/cells/DrawerActionCell.java, line(s) 53
im/gukjhhafcz/ui/cells/DrawerProfileCell.java, line(s) 110,160
im/gukjhhafcz/ui/cells/PopMenuCell.java, line(s) 46
im/gukjhhafcz/ui/cells/SharedAudioCell.java, line(s) 83,88
im/gukjhhafcz/ui/cells/SharedLinkCell.java, line(s) 233,244
im/gukjhhafcz/ui/cells/ThemesHorizontalListCell.java, line(s) 313,763,773,780,871
im/gukjhhafcz/ui/components/AlertsCreator.java, line(s) 943,995,1010
im/gukjhhafcz/ui/components/AnimatedFileDrawable.java, line(s) 194,225
im/gukjhhafcz/ui/components/AudioPlayerAlert.java, line(s) 1184,1199
im/gukjhhafcz/ui/components/AvatarDrawable.java, line(s) 240
im/gukjhhafcz/ui/components/BlockingUpdateView.java, line(s) 249,270,274
im/gukjhhafcz/ui/components/ChatActivityEnterView.java, line(s) 1608,1646,2525,3611,3657,3832,3981,3996,4010,4024,4047,4059,4107,4542
im/gukjhhafcz/ui/components/ChatAttachAlert.java, line(s) 1810
im/gukjhhafcz/ui/components/ChatAvatarContainer.java, line(s) 286
im/gukjhhafcz/ui/components/ClippingImageView.java, line(s) 75,153
im/gukjhhafcz/ui/components/EditTextBoldCursor.java, line(s) 185,322,571,579
im/gukjhhafcz/ui/components/EditTextCaption.java, line(s) 316,343,395
im/gukjhhafcz/ui/components/EditTextEmoji.java, line(s) 89,493
im/gukjhhafcz/ui/components/EmbedBottomSheet.java, line(s) 213,321,348,362,384,430,503,510,688,707,720,802,821,897
im/gukjhhafcz/ui/components/EmojiView.java, line(s) 588,1256,3195
im/gukjhhafcz/ui/components/EmojiViewV2.java, line(s) 588,1255,3179
im/gukjhhafcz/ui/components/ForegroundDetector.java, line(s) 73,105,80,112
im/gukjhhafcz/ui/components/ImageUpdater.java, line(s) 271,299,322,336
im/gukjhhafcz/ui/components/InstantCameraView.java, line(s) 485,501,507,864,883,905,1040,1284,1305,1552,1763,448,925,938,970,982,1048,1055,1064,1076,1087,1097,1127,1154,1159,1168,1218,1375,1380,1388,1602,1611,1621,1629,1720,1833
im/gukjhhafcz/ui/components/LetterDrawable.java, line(s) 78
im/gukjhhafcz/ui/components/PasscodeView.java, line(s) 142,259,926,936,952,1003,1032,1050
im/gukjhhafcz/ui/components/PhotoFilterView.java, line(s) 399,418,431,438,447,459,470,480,735,786,991
im/gukjhhafcz/ui/components/PhotoPaintView.java, line(s) 435,1255,1262,1285
im/gukjhhafcz/ui/components/PhotoViewerCaptionEnterView.java, line(s) 114,326,353,418,534,563,577,610,691,704
im/gukjhhafcz/ui/components/PipRoundVideoView.java, line(s) 256
im/gukjhhafcz/ui/components/PipVideoView.java, line(s) 407
im/gukjhhafcz/ui/components/RLottieDrawable.java, line(s) 222,346,423
im/gukjhhafcz/ui/components/RadioButton.java, line(s) 60,159
im/gukjhhafcz/ui/components/RecyclerListView.java, line(s) 606,805,818,1467,1473
im/gukjhhafcz/ui/components/ShareAlert.java, line(s) 823
im/gukjhhafcz/ui/components/SpannableStringLight.java, line(s) 24,41,58
im/gukjhhafcz/ui/components/StaticLayoutEx.java, line(s) 57,120,177
im/gukjhhafcz/ui/components/StickersAlert.java, line(s) 121,738,784
im/gukjhhafcz/ui/components/TermsOfServiceView.java, line(s) 168
im/gukjhhafcz/ui/components/ThemeEditorView.java, line(s) 94,102,1078,1293,1408
im/gukjhhafcz/ui/components/TimerDrawable.java, line(s) 92
im/gukjhhafcz/ui/components/VideoTimelinePlayView.java, line(s) 297,361,390
im/gukjhhafcz/ui/components/VideoTimelineView.java, line(s) 227,291,320
im/gukjhhafcz/ui/components/WallpaperUpdater.java, line(s) 105,108,131,157
im/gukjhhafcz/ui/components/WebPlayerView.java, line(s) 449,372,429,501,560,612,672,743,1082,1344,1392
im/gukjhhafcz/ui/components/compress/Checker.java, line(s) 54,74,80,105,113
im/gukjhhafcz/ui/components/compress/Luban.java, line(s) 87,86
im/gukjhhafcz/ui/components/paint/RenderView.java, line(s) 304,311,320,332,343,353,372,492
im/gukjhhafcz/ui/components/paint/Shader.java, line(s) 20,28,81,91
im/gukjhhafcz/ui/components/paint/Slice.java, line(s) 25,55,89
im/gukjhhafcz/ui/components/paint/Utils.java, line(s) 12
im/gukjhhafcz/ui/components/toast/ToastUtils.java, line(s) 76
im/gukjhhafcz/ui/components/voip/CallSwipeView.java, line(s) 93
im/gukjhhafcz/ui/components/voip/DarkTheme.java, line(s) 2376
im/gukjhhafcz/ui/components/voip/VoIPHelper.java, line(s) 152,558
im/gukjhhafcz/ui/dialogs/McShareDialog.java, line(s) 190
im/gukjhhafcz/ui/fragments/BaseFmts.java, line(s) 219,272,286,309
im/gukjhhafcz/ui/fragments/CallRecordsFragment.java, line(s) 575,192
im/gukjhhafcz/ui/fragments/ContactsFragment.java, line(s) 601
im/gukjhhafcz/ui/fragments/DialogsFragment.java, line(s) 424,440,1426
im/gukjhhafcz/ui/fragments/DiscoveryFragment.java, line(s) 143,293
im/gukjhhafcz/ui/fragments/MeFragmentV2.java, line(s) 465,884,942,957
im/gukjhhafcz/ui/fragments/TabWebFragment.java, line(s) 186,288,328,351,515,312,318
im/gukjhhafcz/ui/fragments/adapter/FmtContactsAdapter.java, line(s) 138
im/gukjhhafcz/ui/hui/CameraViewActivity.java, line(s) 1672
im/gukjhhafcz/ui/hui/CharacterParser.java, line(s) 38
im/gukjhhafcz/ui/hui/WebViewAppCompatActivity.java, line(s) 105,217
im/gukjhhafcz/ui/hui/adapter/AddNewCallAdapter.java, line(s) 77
im/gukjhhafcz/ui/hui/adapter/CreateGroupAdapter.java, line(s) 94
im/gukjhhafcz/ui/hui/adapter/CreateSecureAdapter.java, line(s) 80
im/gukjhhafcz/ui/hui/adapter/MyDialogsAdapter.java, line(s) 230
im/gukjhhafcz/ui/hui/adapter/NewChatAdapter.java, line(s) 85
im/gukjhhafcz/ui/hui/adapter/SelectContactsAdapter.java, line(s) 84
im/gukjhhafcz/ui/hui/adapter/StartChatAdapter.java, line(s) 85
im/gukjhhafcz/ui/hui/adapter/grouping/AddGroupingUserAdapter.java, line(s) 83
im/gukjhhafcz/ui/hui/adapter/pageAdapter/PageSelectionAdapter.java, line(s) 68
im/gukjhhafcz/ui/hui/adapter/pageAdapter/PageStickerAdapter.java, line(s) 119
im/gukjhhafcz/ui/hui/chats/CreateGroupFinalActivity.java, line(s) 163
im/gukjhhafcz/ui/hui/chats/GroupShareActivity.java, line(s) 207
im/gukjhhafcz/ui/hui/chats/MryDialogsActivity.java, line(s) 1458,2017
im/gukjhhafcz/ui/hui/chats/NewChatActivity.java, line(s) 384
im/gukjhhafcz/ui/hui/chats/ProfileGroupActivity.java, line(s) 358,811,832,1117,1570,1584,1599,1623,2681
im/gukjhhafcz/ui/hui/chats/StartChatActivity.java, line(s) 335
im/gukjhhafcz/ui/hui/contacts/AddContactsActivity.java, line(s) 193
im/gukjhhafcz/ui/hui/contacts/PhonebookUsersActivity.java, line(s) 503
im/gukjhhafcz/ui/hui/discovery/ActionIntroActivity.java, line(s) 393,438,475,522
im/gukjhhafcz/ui/hui/discovery/NearPersonAndGroupActivity.java, line(s) 469,473,478,481,486,538,406,626
im/gukjhhafcz/ui/hui/discovery/QrScanActivity.java, line(s) 309,334
im/gukjhhafcz/ui/hui/discoveryweb/DiscoveryJumpPausedFloatingView.java, line(s) 248,523
im/gukjhhafcz/ui/hui/discoveryweb/DiscoveryJumpToPage.java, line(s) 122,150,538,577,747,522,528
im/gukjhhafcz/ui/hui/friendscircle/fcHelper/OKHttpStreamFetcher.java, line(s) 41,40
im/gukjhhafcz/ui/hui/friendscircle/okhttphelper/AESHelper.java, line(s) 63,75
im/gukjhhafcz/ui/hui/friendscircle/okhttphelper/MD5Utils.java, line(s) 19,84,88,89
im/gukjhhafcz/ui/hui/friendscircle/okhttphelper/OkHttpStringCallBack.java, line(s) 72,64,73
im/gukjhhafcz/ui/hui/friendscircle_v1/adapter/FcDetailAdapter.java, line(s) 188
im/gukjhhafcz/ui/hui/friendscircle_v1/adapter/FcHomeAdapter.java, line(s) 183,676
im/gukjhhafcz/ui/hui/friendscircle_v1/adapter/UserFcListAdapter.java, line(s) 169
im/gukjhhafcz/ui/hui/friendscircle_v1/base/BaseFcActivity.java, line(s) 300,375,471,216,230,253,331,352,494
im/gukjhhafcz/ui/hui/friendscircle_v1/base/BaseFcFragment.java, line(s) 391,466,562,263,277,300,422,443,585
im/gukjhhafcz/ui/hui/friendscircle_v1/base/CommFcListActivity.java, line(s) 186
im/gukjhhafcz/ui/hui/friendscircle_v1/base/CommFcListFragment.java, line(s) 193,197,206
im/gukjhhafcz/ui/hui/friendscircle_v1/fragments/FcFollowFragment.java, line(s) 313,840
im/gukjhhafcz/ui/hui/friendscircle_v1/fragments/FcHomeFragment.java, line(s) 235,733,786
im/gukjhhafcz/ui/hui/friendscircle_v1/fragments/FcRecommendFragment.java, line(s) 229,709,762
im/gukjhhafcz/ui/hui/friendscircle_v1/helper/FcDBHelper.java, line(s) 148,153,162,164
im/gukjhhafcz/ui/hui/friendscircle_v1/player/logger/ExoPlayerLogger.java, line(s) 144,148,160,163,174,180,183,187,197,200,206,216,224,229,233,237,239,243,245,249,253,257,261,265,269,273,277,281,285,293,297,301,317,320,323,326,329,332,334,337,152,309
im/gukjhhafcz/ui/hui/friendscircle_v1/player/player/AbsBaseVideoPlayer.java, line(s) 36,47,56,63,70,78,90
im/gukjhhafcz/ui/hui/friendscircle_v1/player/player/VideoPlayerManager.java, line(s) 381
im/gukjhhafcz/ui/hui/friendscircle_v1/player/utils/Utils.java, line(s) 109,113
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/FcPageDetailActivity.java, line(s) 160,205,325,344,843
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/FcPageMineActivity.java, line(s) 901,951
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/FcPageOthersActivity.java, line(s) 953
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/FcPublishActivity.java, line(s) 728,965,1395,856,1398,1408
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/FcTopicMainActivity.java, line(s) 775,825
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/ImagePreSelectorActivity.java, line(s) 1522
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/ImagePreviewActivity.java, line(s) 1230,7162,7169,7177,7183,521,851,1359,1983,1995,2286,2425,3065,3119,3147,3203,3230,3631,3638,3842,3863,3954,4011,4024,4967,5698,5969,6006,6268,6354,7189
im/gukjhhafcz/ui/hui/friendscircle_v1/ui/ImageSelectorActivity.java, line(s) 1980
im/gukjhhafcz/ui/hui/friendscircle_v1/utils/KeyboardUtils.java, line(s) 44,179,186,222,158,194,210
im/gukjhhafcz/ui/hui/friendscircle_v1/utils/StatusBarHeightUtil.java, line(s) 21
im/gukjhhafcz/ui/hui/friendscircle_v1/utils/ViewUtil.java, line(s) 17
im/gukjhhafcz/ui/hui/friendscircle_v1/view/FCIndexBar.java, line(s) 117
im/gukjhhafcz/ui/hui/friendscircle_v1/view/FcChildReplyListDialog.java, line(s) 209
im/gukjhhafcz/ui/hui/friendscircle_v1/view/FcDoReplyDialog.java, line(s) 185,376
im/gukjhhafcz/ui/hui/friendscircle_v1/view/flowLayout/TagAdapter.java, line(s) 88,92
im/gukjhhafcz/ui/hui/friendscircle_v1/view/flowLayout/TagFlowLayout.java, line(s) 121
im/gukjhhafcz/ui/hui/friendscircle_v1/view/panel/KPSwitchRootLayoutHandler.java, line(s) 34,45,49,55,59
im/gukjhhafcz/ui/hui/friendscircle_v1/view/richtext/TextCommonUtils.java, line(s) 193,211,212
im/gukjhhafcz/ui/hui/friendscircle_v1/view/toast/FcToastUtils.java, line(s) 81
im/gukjhhafcz/ui/hui/login/ChangePersonalInformationActivity.java, line(s) 529,492
im/gukjhhafcz/ui/hui/login/HloginActivity.java, line(s) 357,411,681,1140,1150,1373,1883,2005,3818
im/gukjhhafcz/ui/hui/login/LoginContronllerActivity.java, line(s) 933,947,964,967,981,1280,921,924,1182,1228,1231,1232,1326
im/gukjhhafcz/ui/hui/login/LoginPasswordContronllerActivity.java, line(s) 185,349
im/gukjhhafcz/ui/hui/mine/AboutAppActivity.java, line(s) 196,285,336,351
im/gukjhhafcz/ui/hui/mine/DataUsageActivity.java, line(s) 349
im/gukjhhafcz/ui/hui/mine/MryLanguageSelectActivity.java, line(s) 256,267
im/gukjhhafcz/ui/hui/mine/MrySessionsActivity.java, line(s) 708,733
im/gukjhhafcz/ui/hui/mine/MryThemeActivity.java, line(s) 994,1025,1037,1119,1124,1165
im/gukjhhafcz/ui/hui/mine/PrivacyAndSafeActivity.java, line(s) 266
im/gukjhhafcz/ui/hui/mine/QrCodeActivity.java, line(s) 354
im/gukjhhafcz/ui/hui/packet/RedpktGroupSendActivity.java, line(s) 766,982,1147,1198,1213
im/gukjhhafcz/ui/hui/packet/RedpktSendActivity.java, line(s) 461,661,833,884,899
im/gukjhhafcz/ui/hui/packet/pop/RedPacketViewHolder.java, line(s) 221,226,231
im/gukjhhafcz/ui/hui/transfer/TransferSendActivity.java, line(s) 464,699,888,939,954
im/gukjhhafcz/ui/hui/transfer/TransferStatusActivity.java, line(s) 333,507
im/gukjhhafcz/ui/hui/views/SilderRelativeLayout.java, line(s) 90,100
im/gukjhhafcz/ui/hviews/MryCheckBox.java, line(s) 96
im/gukjhhafcz/ui/hviews/MyScrollView.java, line(s) 474,534
im/gukjhhafcz/ui/hviews/PasswordEditText.java, line(s) 152,309
im/gukjhhafcz/ui/hviews/dialogs/XDialog.java, line(s) 674
im/gukjhhafcz/ui/hviews/dragView/DragCallBack.java, line(s) 221
im/gukjhhafcz/ui/hviews/dragView/DragHelperFrameLayout.java, line(s) 167
im/gukjhhafcz/ui/hviews/helper/MryDeviceHelper.java, line(s) 48,76
im/gukjhhafcz/ui/hviews/helper/MryDrawableHelper.java, line(s) 157
im/gukjhhafcz/ui/hviews/helper/MryNotchHelper.java, line(s) 46,59,62,357,359,361,43,56
im/gukjhhafcz/ui/hviews/page/PagerConfig.java, line(s) 43,37
im/gukjhhafcz/ui/hviews/page/PagerGridLayoutManager.java, line(s) 430,434,466,470
im/gukjhhafcz/ui/hviews/pop/BasePopup.java, line(s) 150,156
im/gukjhhafcz/ui/hviews/slidemenu/SwipeLayout.java, line(s) 677,682
im/gukjhhafcz/ui/newcall/NewCallActivity.java, line(s) 319
im/gukjhhafcz/ui/settings/CacheControlSettingActivity.java, line(s) 129
im/gukjhhafcz/ui/settings/NoticeAndSoundSettingActivity.java, line(s) 259,316,373
im/gukjhhafcz/ui/utils/AppUpdater.java, line(s) 82,137,150
im/gukjhhafcz/ui/utils/ChatActionBarHelper.java, line(s) 290
im/gukjhhafcz/ui/utils/DownloadUtils.java, line(s) 181,214
im/gukjhhafcz/ui/utils/OpenInstallUitl.java, line(s) 56,86
im/gukjhhafcz/ui/utils/QrCodeParseUtil.java, line(s) 167,183,231,252,318
im/gukjhhafcz/ui/utils/ThirdPartSdkInitUtil.java, line(s) 41,63,93,90
im/gukjhhafcz/ui/utils/number/MoneyUtil.java, line(s) 147
im/gukjhhafcz/ui/utils/picture/PictureUtil.java, line(s) 83
im/gukjhhafcz/ui/utils/translate/DecodeEngine.java, line(s) 112,116,126,128,136,161,245,266,293,309,315,345,356,397,400,435,462
im/gukjhhafcz/ui/utils/translate/ssrc/SSRC.java, line(s) 50,270,271,272,273,274,275,276,277,278,279,280,281,282,283,284,285,286,287,288,289,290,291,319,323,326
im/gukjhhafcz/ui/utils/translate/utils/AudioFileUtils.java, line(s) 31,34,59,117,121,141,159
pub/devrel/easypermissions/EasyPermissions.java, line(s) 138,140,34
pub/devrel/easypermissions/helper/ActivityPermissionHelper.java, line(s) 36
pub/devrel/easypermissions/helper/BaseSupportPermissionsHelper.java, line(s) 20

信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
im/gukjhhafcz/messenger/AndroidUtilities.java, line(s) 8,1392
im/gukjhhafcz/ui/ChangeUsernameActivity.java, line(s) 4,84
im/gukjhhafcz/ui/ChannelCreateActivity.java, line(s) 8,685
im/gukjhhafcz/ui/ChatActivity.java, line(s) 10,8768
im/gukjhhafcz/ui/ChatEditTypeActivity.java, line(s) 4,392,404
im/gukjhhafcz/ui/GroupInviteActivity.java, line(s) 4,131
im/gukjhhafcz/ui/PhonebookShareActivity.java, line(s) 4,560,594
im/gukjhhafcz/ui/ProfileActivity.java, line(s) 11,1606,1635
im/gukjhhafcz/ui/StickersActivity.java, line(s) 4,402
im/gukjhhafcz/ui/ThemeSetUrlActivity.java, line(s) 4,105
im/gukjhhafcz/ui/components/EmbedBottomSheet.java, line(s) 9,800
im/gukjhhafcz/ui/components/ShareAlert.java, line(s) 8,816
im/gukjhhafcz/ui/dialogs/McShareDialog.java, line(s) 5,223
im/gukjhhafcz/ui/hui/chats/ProfileGroupActivity.java, line(s) 11,1567,1596
im/gukjhhafcz/ui/hui/discovery/QrScanResultActivity.java, line(s) 4,60
im/gukjhhafcz/ui/hui/packet/BillDetailsActivity.java, line(s) 4,317

信息 应用与Firebase数据库通信

该应用与位于 https://gukjhhafcz-48b0d.firebaseio.com 的 Firebase 数据库进行通信

安全 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
com/bjz/comm/net/factory/ApiFactory.java, line(s) 50,50
com/bjz/comm/net/factory/ApiGameFactory.java, line(s) 48,48
com/bjz/comm/net/factory/ApiMPFactory.java, line(s) 46,46
com/bjz/comm/net/factory/ApiTranslateAudioFactory.java, line(s) 40,40
com/zhy/http/okhttp/https/HttpsUtils.java, line(s) 107,171,42,106,127,170,95,105,105,169,169

安全 此应用程序可能具有Root检测功能

此应用程序可能具有Root检测功能
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
im/gukjhhafcz/ui/utils/SimulatorUtil.java, line(s) 18

安全 Firebase远程配置已禁用

Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/194512522065/namespaces/firebase:fetch?key=AIzaSyC6uk1nvjb5BYzqEzgaWy_iTryf5373Nyw ) 已禁用。响应内容如下所示:

{
    "state": "NO_TEMPLATE"
}

关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (impyq.gz.bcebos.com) 通信。

{'ip': '121.228.183.252', 'country_short': 'CN', 'country_long': '中国', 'region': '江苏', 'city': '苏州', 'latitude': '31.311365', 'longitude': '120.617691'}

关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (www.ntsc.ac.cn) 通信。

{'ip': '159.226.242.43', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (m12345.cc) 通信。

{'ip': '221.228.32.13', 'country_short': 'CN', 'country_long': '中国', 'region': '江苏', 'city': '无锡', 'latitude': '31.569349', 'longitude': '120.288788'}

关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (translations.m12345.cc) 通信。

{'ip': '221.228.32.13', 'country_short': 'CN', 'country_long': '中国', 'region': '江苏', 'city': '无锡', 'latitude': '31.569349', 'longitude': '120.288788'}

安全评分: ( n♆n 2.7.0)