安全分数
安全分数 53/100
风险评级
等级
- A
- B
- C
- F
严重性分布 (%)
隐私风险
7
用户/设备跟踪器
调研结果
高危
3
中危
27
信息
2
安全
4
关注
1
高危 应用程序在加密算法中使用ECB模式。ECB模式是已知的弱模式,因为它对相同的明文块[UNK]产生相同的密文
应用程序在加密算法中使用ECB模式。ECB模式是已知的弱模式,因为它对相同的明文块[UNK]产生相同的密文 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-block-cipher-mode Files: com/tom_roush/pdfbox/pdmodel/encryption/StandardSecurityHandler.java, line(s) 65
高危 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/tom_roush/pdfbox/pdmodel/encryption/SecurityHandler.java, line(s) 165
高危 应用程序包含隐私跟踪程序
此应用程序有多个7隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。
中危 Activity (androidx.compose.ui.tooling.PreviewActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.AnalyticsBridgeMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.AnnouncementsMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.DayTradesMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.DepositsMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.HelpMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.LoginHistoryMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.SmartCashDashboardMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.TradingOperationMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.TransferFlowMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Activity (com.walmartlabs.ern.container.miniapps.WelcomeMiniappActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护, 但是应该检查权限的保护级别。
Permission: com.google.android.c2dm.permission.SEND [android:exported=true] 发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
中危 Service (androidx.work.impl.background.systemjob.SystemJobService) 受权限保护, 但是应该检查权限的保护级别。
Permission: android.permission.BIND_JOB_SERVICE [android:exported=true] 发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
中危 Broadcast Receiver (androidx.work.impl.diagnostics.DiagnosticsReceiver) 受权限保护, 但是应该检查权限的保护级别。
Permission: android.permission.DUMP [android:exported=true] 发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
中危 Activity (com.useinsider.insider.InsiderLoginActivity) 未被保护。
[android:exported=true] 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
中危 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护, 但是应该检查权限的保护级别。
Permission: android.permission.DUMP [android:exported=true] 发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
中危 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
文件可能包含硬编码的敏感信息,如用户名、密码、密钥等 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10 Files: com/gbm/app/GbmApp.java, line(s) 50 com/gbm/common/core/domain/userPreferences/KeyValue.java, line(s) 52 com/gbm/common/data/BuildConfig.java, line(s) 22 com/gbm/common/data/userPreferences/remote/KeyValueRequestImpl.java, line(s) 53 com/gbm/common/data/userPreferences/remote/KeyValueResponseImpl.java, line(s) 51 com/gbm/common/presentation/deletemeta/DeleteMetaNavigation.java, line(s) 13 com/gbm/common/presentation/editname/EditNameNavigation.java, line(s) 13 com/gbm/common/presentation/navigation/CommonDestinations.java, line(s) 74 com/gbm/common/presentation/navigation/bottomnav/Screen.java, line(s) 92 com/gbm/common/presentation/pdfviewer/PdfViewerKt.java, line(s) 97 com/gbm/common/presentation/pdfviewer/PdfViewerNavigation.java, line(s) 12,13,14 com/gbm/deposits/flow/presentation/navigation/DepositsFlowNavigation.java, line(s) 19 com/gbm/instrument/presentation/navigation/AboutDetailFundNavigation.java, line(s) 10 com/gbm/instrument/presentation/navigation/FactFundNavigation.java, line(s) 10 com/gbm/instrument/presentation/navigation/FundNavigation.java, line(s) 12 com/gbm/instrument/presentation/navigation/InstrumentNavigation.java, line(s) 12 com/gbm/linking/data/applink/AppLinkImpl.java, line(s) 12,13,14,15 com/gbm/market/common/core/domain/model/WatchlistItem.java, line(s) 19,18,20,21 com/gbm/market/operation/presentation/navigation/MarketOperationNavigation.java, line(s) 16 com/gbm/mfa/data/BuildConfig.java, line(s) 11 com/gbm/mfa/presentation/setup/MfaInviteActivationNavigation.java, line(s) 10 com/gbm/mfa/presentation/setup/MfaSetupResultNavigation.java, line(s) 13 com/gbm/movement/core/domain/catalogs/Transaction.java, line(s) 109 com/gbm/movement/core/domain/catalogs/TransactionOutputState.java, line(s) 114 com/gbm/movement/core/domain/detail/MovementDetail.java, line(s) 185,185 com/gbm/movement/core/domain/detail/MovementDetailOutputState.java, line(s) 129 com/gbm/movement/data/catalogs/TransactionRoute.java, line(s) 106 com/gbm/movement/data/catalogs/dto/TransactionResponseImpl.java, line(s) 113 com/gbm/movement/data/detail/MovementDetailResponseImpl.java, line(s) 197,197 com/gbm/movement/presentation/navigation/MovementDetailNavigation.java, line(s) 13 com/gbm/patron/data/BuildConfig.java, line(s) 19,20,25 com/gbm/patron/data/signin/dto/SignInRequestImpl.java, line(s) 102 com/gbm/patron/data/signup/dto/SignUpRequestImpl.java, line(s) 84 com/gbm/patron/data/updatepass/RestorePasswordRequestImpl.java, line(s) 72 com/gbm/patron/data/updatepass/UpdatePasswordRequestImpl.java, line(s) 71 com/gbm/patron/presentation/signin/SignInUiModel.java, line(s) 59 com/gbm/patron/presentation/signup/SignUpInputState.java, line(s) 114 com/gbm/patron/presentation/signup/SignUpNavigation.java, line(s) 13 com/gbm/patron/presentation/updatepass/RestorePasswordState.java, line(s) 75 com/gbm/patron/presentation/updatepass/UpdatePasswordNavigation.java, line(s) 13 com/gbm/patron/presentation/updatepass/UpdatePasswordState.java, line(s) 73 com/gbm/patron/presentation/utils/PatronEvents.java, line(s) 29 com/gbm/position/presentation/navigation/InstrumentPositionNavigation.java, line(s) 12 com/gbm/react/common/data/utils/CommonMiniAppUtils.java, line(s) 14 com/gbm/rollout/core/domain/usecase/RegisterPropertyUseCaseKt.java, line(s) 8 com/gbm/transfer/flow/presentation/navigation/TransferFlowNavigation.java, line(s) 19 com/gbm/upgrade/data/incode/session/InCodeSessionCore.java, line(s) 26 com/gbm/upgrade/presentation/upgrade/UpgradeStepsNavigation.java, line(s) 11 com/gbm/watchlist/domain/feature/MigrateWatchlistUseCaseImpl.java, line(s) 16,18,21 com/gbm/wealth/core/domain/advisor/question/AdvisorQuestion.java, line(s) 30,26,28,27,157 com/gbm/wealth/data/advisor/AdvisorResultRoute.java, line(s) 121 com/gbm/wealth/data/advisor/AdvisorRoute.java, line(s) 120 com/gbm/wealth/data/advisor/question/dto/AdvisorQuestionResponseImpl.java, line(s) 115 com/gbm/wealth/presentation/advisor/AdvisorNavigation.java, line(s) 13 com/gbm/wealth/presentation/advisor/AdvisorReProfileNavigation.java, line(s) 13 com/gbm/wealth/presentation/advisor/AdvisorResultNavigation.java, line(s) 13 com/gbm/wealth/presentation/advisor/QuestionOutputState.java, line(s) 130 com/gbm/wealth/presentation/advisor/WelcomeAdvisorNavigation.java, line(s) 12,11 com/gbm/wealth/presentation/dashboard/GoalsDashboardNavigation.java, line(s) 14 com/gbm/wealth/presentation/strategy/GoalDetailNavigation.java, line(s) 14 com/hbisoft/hbrecorder/Constants.java, line(s) 4,5,7,11,13,15,17 com/huawei/location/lite/common/agc/AGCManager.java, line(s) 11,15 com/huawei/location/lite/common/config/ConfigManager.java, line(s) 186 com/huawei/location/lite/common/util/filedownload/DownloadConstants.java, line(s) 8,9 com/tom_roush/pdfbox/pdmodel/interactive/annotation/PDAnnotationRubberStamp.java, line(s) 20 com/tom_roush/pdfbox/pdmodel/interactive/annotation/PDAnnotationText.java, line(s) 17 io/rollout/analytics/serialization/AnalyticsReportJsonSerializer.java, line(s) 23
中危 MD5是已知存在哈希冲突的弱哈希
MD5是已知存在哈希冲突的弱哈希 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/tom_roush/pdfbox/pdfwriter/COSWriter.java, line(s) 789 com/tom_roush/pdfbox/pdmodel/encryption/MessageDigests.java, line(s) 12 io/rollout/hashing/MD5.java, line(s) 12,23
中危 SHA-1是已知存在哈希冲突的弱哈希
SHA-1是已知存在哈希冲突的弱哈希 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/tom_roush/pdfbox/pdmodel/encryption/MessageDigests.java, line(s) 20
中危 应用程序创建临时文件。敏感信息永远不应该被写进临时文件
应用程序创建临时文件。敏感信息永远不应该被写进临时文件 Files: com/tom_roush/pdfbox/io/RandomAccessBufferedFileInputStream.java, line(s) 94 com/tom_roush/pdfbox/io/ScratchFile.java, line(s) 99 fr/greweb/reactnativeviewshot/RNViewShotModule.java, line(s) 143,145 org/junit/rules/TemporaryFolder.java, line(s) 41,79 org/mp4parser/boxes/iso14496/part12/MediaDataBox.java, line(s) 44
中危 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage Files: com/gbm/common/presentation/pdfviewer/PdfViewerKt.java, line(s) 379 com/gbm/web/snacks/common/presentation/utils/DownloaderUtils.java, line(s) 45 com/github/mikephil/charting/charts/Chart.java, line(s) 726,741 com/github/mikephil/charting/utils/FileUtils.java, line(s) 23,118 com/hbisoft/hbrecorder/HBRecorder.java, line(s) 240 com/hbisoft/hbrecorder/ScreenRecordService.java, line(s) 166 com/incode/welcome_sdk/commons/modules/IdDetectorModule.java, line(s) 82 com/incode/welcome_sdk/commons/utils/FileUtils.java, line(s) 77 com/incode/welcome_sdk/commons/utils/access$getThemeConfiguration$p.java, line(s) 51 com/incode/welcome_sdk/data/local/CameraFacing.java, line(s) 101,152 com/incode/welcome_sdk/dlc/CameraFacing.java, line(s) 280,306 com/medallia/digital/mobilesdk/l1.java, line(s) 23 com/rnfs/RNFSManager.java, line(s) 936,843,925,927,930
中危 应用程序使用不安全的随机数生成器
应用程序使用不安全的随机数生成器 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators Files: com/incode/welcome_sdk/commons/ui/DotAnimation.java, line(s) 15 com/medallia/digital/mobilesdk/k.java, line(s) 6 com/medallia/digital/mobilesdk/u6.java, line(s) 4 com/useinsider/insider/a0.java, line(s) 16 io/rollout/internal/q.java, line(s) 10
中危 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2 Files: com/medallia/digital/mobilesdk/d1.java, line(s) 3,4,119,131 com/medallia/digital/mobilesdk/i6.java, line(s) 6,120 com/mixpanel/android/mpmetrics/MPDbAdapter.java, line(s) 7,8,9,158,167,279,355 com/reactnativecommunity/asyncstorage/ReactDatabaseSupplier.java, line(s) 4,5,6,42
中危 可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息
可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-6 Files: com/medallia/digital/mobilesdk/MedalliaWebView.java, line(s) 261,259 com/medallia/digital/mobilesdk/h7.java, line(s) 257,255
中危 IP地址泄露
IP地址泄露 Files: com/huawei/location/router/BuildConfig.java, line(s) 9 com/huawei/wisesecurity/kfs/BuildConfig.java, line(s) 9 com/huawei/wisesecurity/ucs/common/BuildConfig.java, line(s) 8
中危 不安全的Web视图实现。可能存在WebView任意代码执行漏洞
不安全的Web视图实现。可能存在WebView任意代码执行漏洞 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5 Files: com/medallia/digital/mobilesdk/MedalliaWebView.java, line(s) 276,259
中危 此应用可能包含硬编码机密信息
从应用程序中识别出以下机密确保这些不是机密或私人信息 凭证信息=> "rox.apiKey" : "@string/rollout_key" "auth_app_link_authy" : "https://play.google.com/store/apps/details?id=com.authy.authy" "auth_app_package_authy" : "com.authy.authy" "com.google.firebase.crashlytics.mapping_file_id" : "00000000000000000000000000000000" "default_password_one" : "Password" "facebook_app_id" : "295999193357610" "facebook_client_token" : "023ae7cbe00b36ee30740cd080bb43b2" "google_api_key" : "AIzaSyCyH6TTyFtOZ-QsEgVTgb-Px_-7ak70CSU" "google_app_id" : "1:850485699609:android:d948eeec6e810b582ab688" "google_crash_reporting_api_key" : "AIzaSyCyH6TTyFtOZ-QsEgVTgb-Px_-7ak70CSU" "help_center_key" : "help_center_key" "insider_session_custom_start" : "/api/v3/session/start" "insider_session_custom_stop" : "/api/v3/session/stop" "insider_session_start" : "https://mobile.useinsider.com/api/v3/session/start" "insider_session_stop" : "https://mobile.useinsider.com/api/v3/session/stop" "library_roundedimageview_authorWebsite" : "https://github.com/vinc3m1" "password_dialog_tag" : "Seguridad" "rollout_key" : "63d97308d57a448237646bd1" "tax_documents_cache_key" : "tax_documents" edef8ba9-79d6-4ace-a3c8-27dcd51d21ed XK3VwBIDCibTJtek6TaafiDAXvAdVURWIPy eyJzdWIiOiJhcGlUb2tlblYyIiwiYXV0aFVybCI6Imh0dHBzOi8vZ2JtLm1kLWFwaXMubWVkYWxsaWEuY29tL21vYmlsZVNESy92MS9hY2Nlc3NUb2tlbiIsImVudmlyb25tZW50IjoiZGlnaXRhbC1jbG91ZC13ZXN0IiwiY3JlYXRlVGltZSI6MTYzNTE3Mzg5Mjg0NSwiZG9tYWluIjoiaHR0cHM6Ly9nYm0ubWQtYXBpcy5tZWRhbGxpYS5jb20vIiwiYXBpVG9rZW5WMlZlcnNpb24iOjIsInByb3BlcnR5SWQiOjE0NTc2Mn0 af00ffe52e8f71422165ad54f34ecd76 239CA10A1AFB3998BF91FA08A9F8C2FE73CB4A171703F7206AE5702A5F07E011 0924b35e-fc4e-47f9-a629-7fbcb8e633d9 ntTEswySdSdPz3KpuEeHIPhQp3vkANNeSCYemFOLrfZv5EJd7 9A04F079-9840-4286-AB92-E65BE0885F95 61fd762924b05d0019cfa8db eec93abb416cd00d3db6b932b7a9710e a67422af-8504-43df-9e63-7361eb0bd99e 3370fec94530814e4810fcb12b44c599 bbfe67a2-8481-4870-8853-7b5c7b9253cc 64ef690ea08946719761292b0aff928f 506d5ae2-a45b-498d-927d-12ac041d2591 4eb3138f4e59640e948b9c91a1929e13 df6b721c8b4d3b6eb44c861d4415007e5a35fc95 cc7c78e948089ced4a753e91ca9548f8 9b8f518b086098de3d77736f9458a3d2f6f95a37 2438bce1ddb7bd026d5ff89f598b3b5e5bb824b3 sha256/cGuxAXyFXFkWm61cF4HPWX8S0srS9j0aSqN0k4AP+4A= A2B55680-6F43-11E0-9A3F-0002A5D5C51B sGiv1GlNwVeTSjoglqDlsNde3CZibn7DkgMY62tRtcF8u7VX43YYFACUc4RWp4VFFFT QzIhw4ewzpr5TCsaf2pF70Kx0As8Z 85053bf24bba75239b16a601d9387e17 c56fb7d591ba6704df047fd98f535372fea00211 sha256/DXHPcgpOWkA82Sz+q6rbZuNq9TH4GMRmEEeeEETV+90= bbcc38c74221f40e7d4d2438dab7c61d cc2751449a350f668590264ed76692694a80308a 258EAFA5-E914-47DA-95CA-C5AB0DC85B11 b744e88bf5b1a800e3155af233dbdc51 a4b7452e2ed8f5f191058ca7bbfd26b0d3214bfc 9608869e-3d13-4b1d-b252-f38ca6b81ea1 61fd7739c617f40013487c16 8a3c4b262d721acd49a4bf97d5213199c86fa2b9 8iYhOFfkoA3cVZj2Pl51N21v7xvJDYG8TnPPhxdtMHWBj3e6hXDncIbhs 5ae80d98a14a4bcbaf76b191ee83cbdf ddba241c-7fe1-413b-b52f-7cffafa95631 97e7e70f4c0c4b4996d53b1de51b96cc 40af6442001c6a6bd610721bfbbcba87 201c9f7c5a3a4b3741239bcf64d9df78
信息 应用程序记录日志信息,不得记录敏感信息
应用程序记录日志信息,不得记录敏感信息 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs Files: cl/json/RNShareImpl.java, line(s) 235,239,256,261,274,288 cl/json/RNSharePathUtil.java, line(s) 54 cl/json/social/InstagramShare.java, line(s) 44,53 cl/json/social/SingleShareIntent.java, line(s) 30,33,42 com/ern/api/impl/EnNavigationApiController.java, line(s) 22 com/gbm/action/options/presentation/OptionsBottomSheetStateViewModel$showOptionBottomSheet$1.java, line(s) 56 com/gbm/app/GbmApp.java, line(s) 82,86 com/gbm/common/presentation/navigation/ImplicitNavigationViewModel.java, line(s) 79 com/gbm/my/instruments/presentation/feature/historical/PortfolioHistoricalViewModel$fetchPortfolioHistorical$1.java, line(s) 62 com/github/barteksc/pdfviewer/PDFView.java, line(s) 266,507,582 com/github/barteksc/pdfviewer/RenderingHandler.java, line(s) 75 com/github/barteksc/pdfviewer/link/DefaultLinkHandler.java, line(s) 36 com/github/mikephil/charting/charts/BarChart.java, line(s) 70 com/github/mikephil/charting/charts/BarLineChartBase.java, line(s) 269,280,295,301,460,464 com/github/mikephil/charting/charts/Chart.java, line(s) 374,188,206,350,851,855,859 com/github/mikephil/charting/charts/CombinedChart.java, line(s) 80 com/github/mikephil/charting/charts/HorizontalBarChart.java, line(s) 150,91,95 com/github/mikephil/charting/components/AxisBase.java, line(s) 157 com/github/mikephil/charting/data/ChartData.java, line(s) 263 com/github/mikephil/charting/data/CombinedData.java, line(s) 205,212,219 com/github/mikephil/charting/data/LineDataSet.java, line(s) 106,119 com/github/mikephil/charting/data/PieEntry.java, line(s) 62,68 com/github/mikephil/charting/listener/BarLineChartTouchListener.java, line(s) 324 com/github/mikephil/charting/renderer/CombinedChartRenderer.java, line(s) 106 com/github/mikephil/charting/renderer/ScatterChartRenderer.java, line(s) 58 com/github/mikephil/charting/utils/FileUtils.java, line(s) 45,69,95,109,123,134,150,169,182 com/github/mikephil/charting/utils/Utils.java, line(s) 52,71,80 com/hbisoft/hbrecorder/ScreenRecordService.java, line(s) 218 com/horcrux/svg/Brush.java, line(s) 140,150 com/horcrux/svg/ClipPathView.java, line(s) 33 com/horcrux/svg/ImageView.java, line(s) 139 com/horcrux/svg/LinearGradientView.java, line(s) 78 com/horcrux/svg/MaskView.java, line(s) 82 com/horcrux/svg/PatternView.java, line(s) 89 com/horcrux/svg/RadialGradientView.java, line(s) 92 com/horcrux/svg/UseView.java, line(s) 57,88,103 com/horcrux/svg/VirtualView.java, line(s) 374,305,339,343 com/huawei/location/FB.java, line(s) 156,161,406,172,179,499,502 com/huawei/location/Vw.java, line(s) 49,90,99,111,118,134,163,169,192,223,230,52,128,137,141,166,211,212,71 com/huawei/location/d2.java, line(s) 27 com/huawei/location/lite/common/log/logwrite/LogWrite.java, line(s) 86,91,99,109,132,139,146,242,261,272,310,323,339,63,71,89,122,265,294 com/huawei/location/lite/common/log/logwrite/LogWriteApi.java, line(s) 36 com/huawei/location/lite/common/log/logwrite/LogWriteManager.java, line(s) 36,54,59,89,91,93 com/huawei/riemann/common/api/location/SdmLocationClient.java, line(s) 31,44,57,66,90,95,103,126,134,140,166,174,179,184,84,117,164,182 com/huawei/riemann/gnsslocation/api/vdr/VdrLocationClient.java, line(s) 39,74,81,110,149,165,174,29,36,47,51,86,94,115,123,156,162,173,179,27,83,103,106,132,148,41,44,62 com/huawei/wisesecurity/kfs/ha/BIChecker.java, line(s) 39,82,85,88,95 com/huawei/wisesecurity/kfs/ha/HaReporter.java, line(s) 22,46,56,73,83,49,76 com/huawei/wisesecurity/kfs/interceptors/ReqHeaderInterceptor.java, line(s) 77 com/huawei/wisesecurity/kfs/util/KfsDeviceUtil.java, line(s) 70,26,28,31 com/huawei/wisesecurity/ucs/common/log/LogUcs.java, line(s) 28 com/huawei/wisesecurity/ucs/common/log/LogUcsDefault.java, line(s) 8,13,18,23 com/incode/recogkitandroid/FacePadKitAndroid.java, line(s) 66,74 com/incode/recogkitandroid/IdCaptureKitAndroid.java, line(s) 101,109 com/incode/recogkitandroid/IdFaceDetectorKit.java, line(s) 68,73 com/incode/recogkitandroid/ImageProcessingKit.java, line(s) 119,124 com/incode/recogkitandroid/MaskDetectorKitAndroid.java, line(s) 87,92 com/incode/recogkitandroid/RecogKitAndroid.java, line(s) 83,88 com/incode/recogkitandroid/SelfieFaceDetectorKit.java, line(s) 66,71 com/incode/welcome_sdk/IncodeWelcomeInitProvider.java, line(s) 133 com/incode/welcome_sdk/commons/modules/NetworkModule.java, line(s) 268,276 com/makeramen/roundedimageview/RoundedDrawable.java, line(s) 117 com/makeramen/roundedimageview/RoundedImageView.java, line(s) 268,308 com/medallia/digital/mobilesdk/a4.java, line(s) 87,97,91,95,102 com/medallia/digital/mobilesdk/p4.java, line(s) 170,175,182,186,202,212 com/medallia/digital/mobilesdk/q4.java, line(s) 880 com/mixpanel/android/mpmetrics/AnalyticsMessages.java, line(s) 397,237,376,419,441,446,448,276,280,410 com/mixpanel/android/mpmetrics/ConfigurationChecker.java, line(s) 24,17,23 com/mixpanel/android/mpmetrics/MPConfig.java, line(s) 104,67,73,268,127,76 com/mixpanel/android/mpmetrics/MPDbAdapter.java, line(s) 267,320,347,386,431,435,449,463,97,110 com/mixpanel/android/mpmetrics/MixpanelAPI.java, line(s) 1336,1338,1340,1342,1352,1355,1358,1361,1365,153,354,368,375,386,511,540,607,737,812,828,852,864,874,892,904,916,930,954,968,982,996,1021,1035,1106,1126,1138,1148,1166,1178,1192,1206,1220,1230,1288,1307,1328,660,725,345,443,517,546,584,593,802,805,834,880,1154 com/mixpanel/android/mpmetrics/PersistentIdentity.java, line(s) 77,101,115,139,172,175,324,326,338,341,369,372,405,408,441,448,456,480,482,489,499,501,519,521,531,533,541,544,559,561,438,493,95 com/mixpanel/android/mpmetrics/ResourceReader.java, line(s) 93,98,111,110 com/mixpanel/android/mpmetrics/SessionMetadata.java, line(s) 48 com/mixpanel/android/util/HttpService.java, line(s) 36,43,47,59 com/mixpanel/android/util/MPLog.java, line(s) 36,42,72,78,48,54,24,30,60,66 com/reactnativecommunity/asyncstorage/AsyncStorageModule.java, line(s) 155,194,208,222,240,245,250,285,290,310,338,352,366,380,391,396,412,430,460 com/reactnativecommunity/asyncstorage/ReactDatabaseSupplier.java, line(s) 91,94 com/shockwave/pdfium/PdfiumCore.java, line(s) 84,228,232,262,266 com/swmansion/gesturehandler/react/RNGestureHandlerRootHelper.java, line(s) 38,52 com/swmansion/gesturehandler/react/RNGestureHandlerRootView.java, line(s) 36 com/swmansion/reanimated/nodes/DebugNode.java, line(s) 24 com/th3rdwave/safeareacontext/SafeAreaView.java, line(s) 74 com/tom_roush/fontbox/cff/CFFParser.java, line(s) 254,262,866 com/tom_roush/fontbox/cff/Type1CharString.java, line(s) 224,230,244,249,279,295,305,317,323,329 com/tom_roush/fontbox/cff/Type1CharStringParser.java, line(s) 42,48,78 com/tom_roush/fontbox/cmap/CMap.java, line(s) 67,71 com/tom_roush/fontbox/ttf/CmapSubtable.java, line(s) 89,158,181,186,208,217,234,249,331,372,398 com/tom_roush/fontbox/ttf/GlyfCompositeDescript.java, line(s) 51,114,120,132,138,181 com/tom_roush/fontbox/ttf/GlyfSimpleDescript.java, line(s) 127 com/tom_roush/fontbox/ttf/GlyphRenderer.java, line(s) 96,103,110 com/tom_roush/fontbox/ttf/GlyphSubstitutionTable.java, line(s) 128,181,340,125,379 com/tom_roush/fontbox/ttf/KerningSubtable.java, line(s) 130,104,140,144,88,95 com/tom_roush/fontbox/ttf/KerningTable.java, line(s) 26 com/tom_roush/fontbox/ttf/OS2WindowsMetricsTable.java, line(s) 425,404,418 com/tom_roush/fontbox/ttf/OpenTypeScript.java, line(s) 49,55,63 com/tom_roush/fontbox/ttf/PostScriptTable.java, line(s) 100,105,63 com/tom_roush/fontbox/ttf/TTFParser.java, line(s) 64 com/tom_roush/fontbox/ttf/TTFSubsetter.java, line(s) 575 com/tom_roush/fontbox/type1/Type1Lexer.java, line(s) 93 com/tom_roush/fontbox/util/autodetect/FontFileFinder.java, line(s) 64,68 com/tom_roush/pdfbox/android/PDFBoxResourceLoader.java, line(s) 22 com/tom_roush/pdfbox/contentstream/PDFStreamEngine.java, line(s) 346,348,440,542,363,442,445,499 com/tom_roush/pdfbox/contentstream/operator/DrawObject.java, line(s) 34 com/tom_roush/pdfbox/contentstream/operator/graphics/ClosePath.java, line(s) 19 com/tom_roush/pdfbox/contentstream/operator/graphics/CurveTo.java, line(s) 35 com/tom_roush/pdfbox/contentstream/operator/graphics/CurveToReplicateInitialPoint.java, line(s) 33 com/tom_roush/pdfbox/contentstream/operator/graphics/DrawObject.java, line(s) 43 com/tom_roush/pdfbox/contentstream/operator/graphics/LineTo.java, line(s) 30 com/tom_roush/pdfbox/contentstream/operator/markedcontent/DrawObject.java, line(s) 36 com/tom_roush/pdfbox/contentstream/operator/state/SetGraphicsStateParameters.java, line(s) 30 com/tom_roush/pdfbox/contentstream/operator/state/SetLineDashPattern.java, line(s) 38 com/tom_roush/pdfbox/contentstream/operator/text/MoveText.java, line(s) 26 com/tom_roush/pdfbox/contentstream/operator/text/SetFontAndSize.java, line(s) 33 com/tom_roush/pdfbox/cos/COSDocument.java, line(s) 69,95,72,98,230,117 com/tom_roush/pdfbox/cos/COSStream.java, line(s) 50,203 com/tom_roush/pdfbox/cos/COSString.java, line(s) 63 com/tom_roush/pdfbox/filter/Filter.java, line(s) 46,56 com/tom_roush/pdfbox/filter/FlateFilter.java, line(s) 24,53 com/tom_roush/pdfbox/filter/LZWFilter.java, line(s) 77 com/tom_roush/pdfbox/filter/RunLengthDecodeFilter.java, line(s) 48 com/tom_roush/pdfbox/io/IOUtils.java, line(s) 58 com/tom_roush/pdfbox/io/RandomAccessInputStream.java, line(s) 39,54 com/tom_roush/pdfbox/io/ScratchFile.java, line(s) 116,117,122,129,67,104 com/tom_roush/pdfbox/io/ScratchFileBuffer.java, line(s) 294 com/tom_roush/pdfbox/multipdf/LayerUtility.java, line(s) 130 com/tom_roush/pdfbox/multipdf/PDFCloneUtility.java, line(s) 173 com/tom_roush/pdfbox/multipdf/PDFMergerUtility.java, line(s) 683,685,548,589,590,407,467,559,578,585 com/tom_roush/pdfbox/multipdf/PageExtractor.java, line(s) 35 com/tom_roush/pdfbox/multipdf/Splitter.java, line(s) 127,108,110 com/tom_roush/pdfbox/pdfparser/BaseParser.java, line(s) 103,107,117,248,112,147,165,170,174,358 com/tom_roush/pdfbox/pdfparser/COSParser.java, line(s) 209,308,322,417,641,660,696,725,743,1010,1127,1289,1304,424,636,644,395,452,470,496,499,580,587,734,1153,1238,1325,1332,1348,1369,1373 com/tom_roush/pdfbox/pdfparser/FDFParser.java, line(s) 44 com/tom_roush/pdfbox/pdfparser/PDFObjectStreamParser.java, line(s) 54 com/tom_roush/pdfbox/pdfparser/PDFParser.java, line(s) 49 com/tom_roush/pdfbox/pdfparser/PDFStreamParser.java, line(s) 100 com/tom_roush/pdfbox/pdfparser/XrefTrailerResolver.java, line(s) 82,89,101,110,126 com/tom_roush/pdfbox/pdfwriter/COSWriter.java, line(s) 179 com/tom_roush/pdfbox/pdmodel/PDAbstractContentStream.java, line(s) 98,705 com/tom_roush/pdfbox/pdmodel/PDDocument.java, line(s) 747,759,98,382,383,700 com/tom_roush/pdfbox/pdmodel/PDDocumentCatalog.java, line(s) 70,265 com/tom_roush/pdfbox/pdmodel/PDPage.java, line(s) 151,392 com/tom_roush/pdfbox/pdmodel/PDPageContentStream.java, line(s) 78,461,469,488,1133 com/tom_roush/pdfbox/pdmodel/PDPageTree.java, line(s) 113,127,92 com/tom_roush/pdfbox/pdmodel/common/PDNameTreeNode.java, line(s) 110,132,143 com/tom_roush/pdfbox/pdmodel/common/PDNumberTreeNode.java, line(s) 97,76,89 com/tom_roush/pdfbox/pdmodel/common/PDStream.java, line(s) 184 com/tom_roush/pdfbox/pdmodel/common/function/PDFunctionType0.java, line(s) 207 com/tom_roush/pdfbox/pdmodel/documentinterchange/logicalstructure/PDStructureTreeRoot.java, line(s) 89 com/tom_roush/pdfbox/pdmodel/documentinterchange/taggedpdf/StandardStructureTypes.java, line(s) 68,70 com/tom_roush/pdfbox/pdmodel/encryption/SecurityHandler.java, line(s) 153,239,284,227,228 com/tom_roush/pdfbox/pdmodel/encryption/StandardSecurityHandler.java, line(s) 69,73,78,546 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotation.java, line(s) 120,129,227 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationFreeText.java, line(s) 36 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationInk.java, line(s) 52 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationLink.java, line(s) 39 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationPolygon.java, line(s) 48 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationPolyline.java, line(s) 46 com/tom_roush/pdfbox/pdmodel/fdf/FDFAnnotationStamp.java, line(s) 39,47,52,65,68,78,84,94,104,108,112,115,118,121,124,127,129,135,142,158,174,176,179,182,185,188,191,202,213,215,217,220,222,225,228,231,234,55,58,70,86,147,150,194,236 com/tom_roush/pdfbox/pdmodel/fdf/FDFDictionary.java, line(s) 53,58,70,119,122 com/tom_roush/pdfbox/pdmodel/fixup/processor/AcroFormGenerateAppearancesProcessor.java, line(s) 20,24,25,27,28 com/tom_roush/pdfbox/pdmodel/fixup/processor/AcroFormOrphanWidgetsProcessor.java, line(s) 41,44,54,92,97,100,131,135,138,142 com/tom_roush/pdfbox/pdmodel/font/FileSystemFontProvider.java, line(s) 141,187,206,277,286,504,541,656,180,301,145,191,212,296,299,311,403,404,405,432,457,511,523,550,561,571,588,592,600,640,646,660 com/tom_roush/pdfbox/pdmodel/font/FontMapperImpl.java, line(s) 264,284,386,390,392 com/tom_roush/pdfbox/pdmodel/font/PDCIDFont.java, line(s) 66,72,84,89 com/tom_roush/pdfbox/pdmodel/font/PDCIDFontType2.java, line(s) 44,87,99,104 com/tom_roush/pdfbox/pdmodel/font/PDCIDFontType2Embedder.java, line(s) 189 com/tom_roush/pdfbox/pdmodel/font/PDFont.java, line(s) 123,316,112,120 com/tom_roush/pdfbox/pdmodel/font/PDFontFactory.java, line(s) 22,54 com/tom_roush/pdfbox/pdmodel/font/PDSimpleFont.java, line(s) 66,172,174 com/tom_roush/pdfbox/pdmodel/font/PDType0Font.java, line(s) 155,187,304,310 com/tom_roush/pdfbox/pdmodel/font/PDType1CFont.java, line(s) 165,193 com/tom_roush/pdfbox/pdmodel/font/PDType1Font.java, line(s) 107,146,172 com/tom_roush/pdfbox/pdmodel/font/PDType3CharProc.java, line(s) 53,54 com/tom_roush/pdfbox/pdmodel/font/PDType3Font.java, line(s) 70,220 com/tom_roush/pdfbox/pdmodel/font/encoding/GlyphList.java, line(s) 89,148,154,156,163,168 com/tom_roush/pdfbox/pdmodel/graphics/color/PDColor.java, line(s) 25,42 com/tom_roush/pdfbox/pdmodel/graphics/color/PDColorSpace.java, line(s) 58,68,90,94,98,102,106,110,114,119 com/tom_roush/pdfbox/pdmodel/graphics/color/PDDeviceGray.java, line(s) 46 com/tom_roush/pdfbox/pdmodel/graphics/color/PDDeviceRGB.java, line(s) 43 com/tom_roush/pdfbox/pdmodel/graphics/image/LosslessFactory.java, line(s) 41,45 com/tom_roush/pdfbox/pdmodel/graphics/image/PDImageXObject.java, line(s) 168,203,258,327,604 com/tom_roush/pdfbox/pdmodel/graphics/image/SampledImageReader.java, line(s) 59 com/tom_roush/pdfbox/pdmodel/graphics/shading/PDMeshBasedShadingType.java, line(s) 239,199,152 com/tom_roush/pdfbox/pdmodel/graphics/shading/PDShadingType4.java, line(s) 125,135,263,281,233 com/tom_roush/pdfbox/pdmodel/graphics/shading/PDTriangleBasedShadingType.java, line(s) 40,53,66,97,103 com/tom_roush/pdfbox/pdmodel/graphics/state/PDSoftMask.java, line(s) 28,34 com/tom_roush/pdfbox/pdmodel/interactive/annotation/PDAnnotation.java, line(s) 76,98,121 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDCaretAppearanceHandler.java, line(s) 63 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDCircleAppearanceHandler.java, line(s) 80 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDFileAttachmentAppearanceHandler.java, line(s) 45 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDFreeTextAppearanceHandler.java, line(s) 94,138 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDInkAppearanceHandler.java, line(s) 93 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDLineAppearanceHandler.java, line(s) 129,134 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDLinkAppearanceHandler.java, line(s) 96,63 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDPolygonAppearanceHandler.java, line(s) 100 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDPolylineAppearanceHandler.java, line(s) 161 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDSquareAppearanceHandler.java, line(s) 63 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDSquigglyAppearanceHandler.java, line(s) 154 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDStrikeoutAppearanceHandler.java, line(s) 109 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDTextAppearanceHandler.java, line(s) 114 com/tom_roush/pdfbox/pdmodel/interactive/annotation/handlers/PDUnderlineAppearanceHandler.java, line(s) 106 com/tom_roush/pdfbox/pdmodel/interactive/digitalsignature/visible/PDFTemplateCreator.java, line(s) 32,74 com/tom_roush/pdfbox/pdmodel/interactive/digitalsignature/visible/PDVisibleSigBuilder.java, line(s) 33,39,54,65,79,93,105,112,118,130,136,148,159,165,171,181,191,197,203,213,220,226,232,249,259,269,280,291,300 com/tom_roush/pdfbox/pdmodel/interactive/form/AppearanceGeneratorHelper.java, line(s) 84,296,145,88,104,112,268,269,270,271,276,496 com/tom_roush/pdfbox/pdmodel/interactive/form/PDAcroForm.java, line(s) 99,115,116,119,365 com/tom_roush/pdfbox/pdmodel/interactive/form/PDFieldTree.java, line(s) 65 com/tom_roush/pdfbox/pdmodel/interactive/form/PDNonTerminalField.java, line(s) 80 com/tom_roush/pdfbox/pdmodel/interactive/form/PDSignatureField.java, line(s) 111 com/tom_roush/pdfbox/rendering/CIDType0Glyph2D.java, line(s) 34,28 com/tom_roush/pdfbox/rendering/PageDrawer.java, line(s) 225,595,781,333,669 com/tom_roush/pdfbox/rendering/TTFGlyph2D.java, line(s) 64,71,73 com/tom_roush/pdfbox/rendering/Type1Glyph2D.java, line(s) 45,28 com/tom_roush/pdfbox/text/LegacyPDFStreamEngine.java, line(s) 153 com/tom_roush/pdfbox/text/TextPosition.java, line(s) 262 com/tom_roush/pdfbox/util/Hex.java, line(s) 96,100,104,108,112,116,120,125,128,131,134,137,101,105,109,113,117,121,155 com/useinsider/insider/DeleteGifReceiver.java, line(s) 33 com/useinsider/insider/DeleteInteractiveReceiver.java, line(s) 67 com/useinsider/insider/Insider.java, line(s) 468 com/useinsider/insider/l0.java, line(s) 229,233 com/walmartlabs/electrode/reactnative/bridge/helpers/Logger.java, line(s) 54,59,112,71,76,37,42,88,93,100,117 com/walmartlabs/ern/container/ElectrodeReactContainer.java, line(s) 142,250,254,144,79 fr/greweb/reactnativeviewshot/RNViewShotModule.java, line(s) 125,84 fr/greweb/reactnativeviewshot/ViewShot.java, line(s) 115,139,298 io/rollout/android/AndroidLogger.java, line(s) 21,28,48,53,35,42 io/rollout/roxx/ComparableVersion.java, line(s) 326,348 junit/runner/BaseTestRunner.java, line(s) 151 junit/runner/Version.java, line(s) 12 junit/textui/TestRunner.java, line(s) 88,112,137 org/koin/android/logger/AndroidLogger.java, line(s) 59,69,71,63,67 org/mp4parser/muxer/container/mp4/FragmentedMp4SampleList.java, line(s) 175 org/mp4parser/muxer/tracks/DTSTrackImpl.java, line(s) 319,468,507 org/mp4parser/muxer/tracks/encryption/CencDecryptingSampleList.java, line(s) 89 org/mp4parser/muxer/tracks/h263/H263TrackImpl.java, line(s) 103 org/mp4parser/muxer/tracks/h264/parsing/Debug.java, line(s) 24,27,35,38,45,47,55,58 org/mp4parser/muxer/tracks/h265/H265TrackImpl.java, line(s) 94,101,106,122,210,212,214 org/mp4parser/muxer/tracks/h265/SEIMessage.java, line(s) 17 timber/log/Timber.java, line(s) 521,539
信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard Files: com/gbm/deposits/flow/presentation/component/DepositsFlowViewKt.java, line(s) 4,31,32 com/reactnativecommunity/clipboard/ClipboardModule.java, line(s) 4,46 com/useinsider/insider/l0.java, line(s) 10,1518 io/rollout/android/client/TargetGroupPair.java, line(s) 6,49
安全 此应用程序可能具有Root检测功能
此应用程序可能具有Root检测功能 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1 Files: com/gbm/patron/presentation/signin/SignInViewKt$LoginContent$1.java, line(s) 43 com/gbm/patron/presentation/signin/SignInViewKt.java, line(s) 309 com/gbm/patron/presentation/signin/SignInViewModel.java, line(s) 156,176
安全 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4 Files: com/gbm/common/data/source/remote/RetrofitBase.java, line(s) 64,64,64,64,83 com/incode/welcome_sdk/commons/modules/NetworkModule.java, line(s) 204,204 com/incode/welcome_sdk/commons/utils/NetworkUtils.java, line(s) 129,126 com/incode/welcome_sdk/getCameraFacing.java, line(s) 78,78 com/rizzi/bouquet/network/RetrofitProviderKt.java, line(s) 13,14,13
安全 此应用程序使用Safety Net API。
此应用程序使用Safety Net API。 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#safetynet Files: com/gbm/patron/data/safety/GoogleSafetyMapper.java, line(s) 6 com/gbm/patron/data/safety/GoogleSafetyService.java, line(s) 11
安全 Firebase远程配置已禁用
Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/850485699609/namespaces/firebase:fetch?key=AIzaSyCyH6TTyFtOZ-QsEgVTgb-Px_-7ak70CSU ) 已禁用。响应内容如下所示: { "state": "NO_TEMPLATE" }
关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (appgallery.huawei.com) 通信。
{'ip': '49.4.34.28', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}