导航菜单

应用安全检测报告

应用安全检测报告,支持文件搜索、内容检索和AI代码分析

移动应用安全检测报告

应用图标

G Buddy Stylfit v1.3.5

Android APK fb11209e...
51
安全评分

安全基线评分

51/100

低风险

综合风险等级

风险等级评定
  1. A
  2. B
  3. C
  4. F

应用存在一定安全风险,建议优化

漏洞与安全项分布

2 高危
29 中危
2 信息
2 安全

隐私风险评估

0
第三方跟踪器

隐私安全
未检测到第三方跟踪器


检测结果分布

高危安全漏洞 2
中危安全漏洞 29
安全提示信息 2
已通过安全项 2
重点安全关注 11

高危安全漏洞 该文件是World Writable。任何应用程序都可以写入文件

该文件是World Writable。任何应用程序都可以写入文件
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#testing-local-storage-for-sensitive-data-mstg-storage-1-and-mstg-storage-2

Files:
solid/ren/skinlibrary/utils/SkinPreferencesUtils.java, line(s) 24

高危安全漏洞 启用了调试配置。生产版本不能是可调试的

启用了调试配置。生产版本不能是可调试的
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04c-Tampering-and-Reverse-Engineering.md#debugging-and-tracing

Files:
com/nostra13/universalimageloader/BuildConfig.java, line(s) 3,4

中危安全漏洞 应用已启用明文网络流量

[android:usesCleartextTraffic=true]
应用允许明文网络流量(如 HTTP、FTP 协议、DownloadManager、MediaPlayer 等)。API 级别 27 及以下默认启用,28 及以上默认禁用。明文流量缺乏机密性、完整性和真实性保护,攻击者可窃听或篡改传输数据。建议关闭明文流量,仅使用加密协议。

中危安全漏洞 应用数据允许备份

[android:allowBackup=true]
该标志允许通过 adb 工具备份应用数据。启用 USB 调试的用户可直接复制应用数据,存在数据泄露风险。

中危安全漏洞 Activity (com.veepoo.hband.activity.TestActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.veepoo.hband.activity.connected.oad.DfuService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.veepoo.hband.ble.BluetoothService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.veepoo.hband.ble.NotificationCollectorMonitorService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.veepoo.hband.activity.MusicOpraterService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.amap.api.location.APSService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.veepoo.hband.phone.MessageNotifyCollectService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_NOTIFICATION_LISTENER_SERVICE [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (com.veepoo.hband.phone.TimeChangedReceiver) 未受保护。

[android:exported=true]
检测到  Broadcast Receiver 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.google.android.gms.auth.api.signin.RevocationBoundService) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.gms.auth.api.signin.permission.REVOCATION_NOTIFICATION [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (no.nordicsemi.android.support.v18.scanner.PendingIntentReceiver) 未受保护。

[android:exported=true]
检测到  Broadcast Receiver 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (androidx.work.impl.background.systemjob.SystemJobService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_JOB_SERVICE [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (androidx.work.impl.diagnostics.DiagnosticsReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity (com.mob.id.MobIDSYActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.mob.guard.MobTranPullLockActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.mob.MobACService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.mob.id.MobIDActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.mob.id.MobIDService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.mob.guard.MobTranPullUpActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.mob.guard.MobGuardPullUpService) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 IP地址泄露

IP地址泄露


Files:
com/veepoo/hband/activity/MainActivity.java, line(s) 1097,971
com/veepoo/hband/activity/connected/BleConnectSuccess.java, line(s) 501,726,773,801
com/veepoo/hband/activity/connected/backdoor/SportModeTestUtil.java, line(s) 44
com/veepoo/hband/activity/connected/oad/BluetrumOTAActivity.java, line(s) 391,332
com/veepoo/hband/activity/connected/oad/JLOTAActivity.java, line(s) 378,320
com/veepoo/hband/activity/connected/oad/OadNoricActivity.java, line(s) 429,738,373
com/veepoo/hband/activity/connected/setting/ServerDialNewActivity.java, line(s) 472
com/veepoo/hband/activity/connected/setting/ServerJLDialNewActivity.java, line(s) 503
com/veepoo/hband/activity/connected/setting/UpdateJLWatchUiActivity.java, line(s) 366
com/veepoo/hband/activity/connected/setting/UpdateWatchUiActivity.java, line(s) 479
com/veepoo/hband/ble/BluetoothService.java, line(s) 1649,1650
com/veepoo/hband/ble/readmanager/BatterManagerHandler.java, line(s) 68
com/veepoo/hband/util/AfterGetDeviceNumber.java, line(s) 106

中危安全漏洞 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
com/jieli/jl_bt_ota/tool/SnGenerator.java, line(s) 7
com/jieli/jl_rcsp/tool/SnGenerator.java, line(s) 8
com/veepoo/hband/activity/history/BloodCompositionHistoryActivity.java, line(s) 53
com/veepoo/hband/activity/history/RateHistoryActivity.java, line(s) 61
com/veepoo/hband/ble/bluetrum/dial/VPRGBQuadCluster.java, line(s) 6
com/veepoo/hband/j_l/dial/fattask/FatFileTestTask.java, line(s) 23
com/veepoo/hband/sql/SqlHelperUtil.java, line(s) 71
com/veepoo/hband/util/BaseUtil.java, line(s) 40
com/veepoo/hband/view/LorenzChartView.java, line(s) 17
com/veepoo/hband/view/MarqueeText.java, line(s) 7
com/veepoo/hband/view/VPRefreshFooter.java, line(s) 16

中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
com/github/mikephil/charting/charts/Chart.java, line(s) 739,754
com/github/mikephil/charting/utils/FileUtils.java, line(s) 23,118
com/jieli/jl_bt_ota/util/FileUtil.java, line(s) 25,24
com/jieli/jl_bt_ota/util/JL_Log.java, line(s) 272
com/jieli/jl_rcsp/util/JL_Log.java, line(s) 302
com/nostra13/universalimageloader/utils/StorageUtils.java, line(s) 16,33,33,38
com/veepoo/hband/activity/connected/backdoor/ShowBackActivity.java, line(s) 1234
com/veepoo/hband/activity/connected/camera/ShowPictureActivity.java, line(s) 47
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_172320_Activity.java, line(s) 814,826,949
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_200320_Activity.java, line(s) 813,825,948
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240240_Activity.java, line(s) 899,911,1034
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240280_Activity.java, line(s) 862,874,997
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240284_Activity.java, line(s) 854,866,989
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240286_Activity.java, line(s) 854,866,989
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240292_Activity.java, line(s) 859,871,994
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240296_Activity.java, line(s) 853,865,988
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240Round_Activity.java, line(s) 926,938,1073
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320380_Activity.java, line(s) 931,943,1066
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320386_Activity.java, line(s) 931,943,1066
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320Round_Activity.java, line(s) 913,925,1060
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_360Round_Activity.java, line(s) 929,941,1076
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_368448_Activity.java, line(s) 931,943,1066
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_390450_Activity.java, line(s) 910,922,1045
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_390Round_Activity.java, line(s) 913,925,1060
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_410502_Activity.java, line(s) 931,943,1066
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_412Round_Activity.java, line(s) 926,938,1073
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_416Round_Activity.java, line(s) 918,930,1065
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_466Round_Activity.java, line(s) 922,934,1069
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_480Round_Activity.java, line(s) 922,934,1069
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_240296_Activity.java, line(s) 893,905,1028
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_360RoundActivity.java, line(s) 924,936,1071
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_466RoundActivity.java, line(s) 922,934,1069
com/veepoo/hband/activity/connected/setting/EditWatchUi_135240Activity.java, line(s) 922,934,1064
com/veepoo/hband/activity/connected/setting/EditWatchUi_167240Activity.java, line(s) 923,935,1065
com/veepoo/hband/activity/connected/setting/EditWatchUi_172320Activity.java, line(s) 922,934,1064
com/veepoo/hband/activity/connected/setting/EditWatchUi_200320Activity.java, line(s) 909,921,1051
com/veepoo/hband/activity/connected/setting/EditWatchUi_240240Activity.java, line(s) 975,987,1106
com/veepoo/hband/activity/connected/setting/EditWatchUi_240280Activity.java, line(s) 954,966,1089
com/veepoo/hband/activity/connected/setting/EditWatchUi_240284Activity.java, line(s) 952,964,1087
com/veepoo/hband/activity/connected/setting/EditWatchUi_240286Activity.java, line(s) 951,963,1086
com/veepoo/hband/activity/connected/setting/EditWatchUi_240295Activity.java, line(s) 948,960,1083
com/veepoo/hband/activity/connected/setting/EditWatchUi_240RoundActivity.java, line(s) 929,941
com/veepoo/hband/activity/connected/setting/EditWatchUi_320380Activity.java, line(s) 945,957,1080
com/veepoo/hband/activity/connected/setting/EditWatchUi_360RoundActivity.java, line(s) 904,916,1051
com/veepoo/hband/activity/connected/setting/EditWatchUi_80160Activity.java, line(s) 924,936,1066
com/veepoo/hband/activity/setting/ProfileActivity.java, line(s) 905,915
com/veepoo/hband/j_l/dial/AppUtil.java, line(s) 28
com/veepoo/hband/j_l/ota/JLOTAManager.java, line(s) 118
com/veepoo/hband/phone/CrashHandler.java, line(s) 61
com/veepoo/hband/util/CropPhotoUtils.java, line(s) 88,149,145
com/veepoo/hband/util/FileUtilQ.java, line(s) 79,86,57,60
com/veepoo/hband/util/HBFileSystem.java, line(s) 155
com/veepoo/hband/util/ImageUtil.java, line(s) 56
com/veepoo/hband/util/PickPhotoUtil.java, line(s) 124
com/veepoo/hband/util/PictureSelectorManager.java, line(s) 367
com/veepoo/hband/util/log/HBLogger.java, line(s) 72,80,81
com/yalantis/ucrop/util/FileUtils.java, line(s) 156
solid/ren/skinlibrary/utils/SkinFileUtils.java, line(s) 48
top/zibin/luban/LubanUtils.java, line(s) 28,30

中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
com/chauthai/swipereveallayout/ViewBinderHelper.java, line(s) 14
com/jieli/jl_bt_ota/model/response/TargetInfoResponse.java, line(s) 362
com/jieli/jl_rcsp/model/response/TargetInfoResponse.java, line(s) 517
com/jieli/jl_rcsp/tool/SyncMessageTask.java, line(s) 162
com/veepoo/hband/activity/MainActivity.java, line(s) 158
com/veepoo/hband/activity/connected/setting/ScreenStyleActivity.java, line(s) 421
com/veepoo/hband/activity/history/HRVHistoryActivity.java, line(s) 556
com/veepoo/hband/activity/history/HRVHistoryNewActivity.java, line(s) 652,723
com/veepoo/hband/activity/history/HRVLorenzHeatViewHistoryActivity.java, line(s) 717
com/veepoo/hband/config/SputilVari.java, line(s) 213,24,146
com/veepoo/hband/httputil/HttpUtil.java, line(s) 47,48
com/veepoo/hband/httputil/bean/TUserBean.java, line(s) 275
com/veepoo/hband/modle/UserBean.java, line(s) 352
no/nordicsemi/android/log/LogContract.java, line(s) 25
rx/internal/schedulers/NewThreadWorker.java, line(s) 27,36

中危安全漏洞 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
cn/smssdk/net/login/e.java, line(s) 14
com/bluetrum/fota/manager/OtaDataProvider.java, line(s) 121
com/qweather/sdk/c/e.java, line(s) 26
com/veepoo/hband/util/MD5.java, line(s) 31,48

中危安全漏洞 应用程序创建临时文件。敏感信息永远不应该被写进临时文件

应用程序创建临时文件。敏感信息永远不应该被写进临时文件


Files:
com/nanchen/compresshelper/FileUtil.java, line(s) 87

中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
com/activeandroid/ActiveAndroid.java, line(s) 4,58,59,62,63
com/activeandroid/DatabaseHelper.java, line(s) 4,5,6,82,93,107,171,188

中危安全漏洞 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
凭证信息=> "com.google.android.geo.API_KEY" : "AIzaSyAi22x0XWdQDtaMki56V5ZloppFtb5myDM"
MobTech(袤博科技) 推送SDK的=> "Mob-AppSecret" : "03cef82611e0e4e76f4bbf5199059610"
MobTech(袤博科技) 推送SDK的=> "Mob-AppKey" : "16bc301b7f767"
高德地图的=> "com.amap.api.v2.apikey" : "71683245b2749f982e41f057925b1991"
"bp_setting_content_private" : "Persoonlijk"
"smssdk_authorize_dialog_reject" : "Disagree"
"bp_setting_content_private" : "Personal"
"hekey" : "HE2008170933081858"
"smssdk_authorize_dialog_accept" : "Agree"
"bp_setting_content_private" : "Osobisty"
"hepwd" : "f368cdcdb9184a35a5b3eab96c62cc7a"
"bp_setting_content_private" : "Pessoal"
"login_fail_wrong_pwd" : "Salasanavirhe"
"bp_setting_content_private" : "Pribadi"
"bp_setting_content_private" : "Personlig"
"ssdk_instapaper_pwd" : "Password"
"bp_setting_content_private" : "Privado"
"bp_setting_content_private" : "personalizzata"
"bp_setting_content_private" : "Peribadi"
"ssdk_weibo_oauth_regiseter" : "Authorization"
"login_fail_wrong_pwd" : "Adgangskodefejl"
"bp_setting_content_private" : "Osobno"
1234515BA676E63852BD3BF0FB8FFAC9
575b6626-fa06-4591-832d-338abd0a988f
5c5b6626-aa06-4591-932d-338abd0a988f
8EC90002-F315-4F60-9FB8-838830DAEA50
1ef570e1013109c50df8f8c2015faed71e4cf7c53ca9195a99c574ca046aeefdf70bc5fd69f04b0eadf63398698f776cf1ef0db5134efddc3aa4825b69aee94b55356a15d2a50a325ef7bd2d9efe15f3ac5d2303e0bdf5147b3d0fb5fa4fd1d5ea07fe1b45912ff9d7fe472136ff49cb1176f039219bc737ec7ccad132a5ce57
a6ed0702-d344-460a-8075-b9e8ec90d71b
00001530-1212-EFDE-1523-785FEABCD123
a6ed0402-d344-460a-8075-b9e8ec90d71b
A6ED0401-D344-460A-8075-B9E8EC90D71B
a6ed0703-d344-460a-8075-b9e8ec90d71b
8EC90001-F315-4F60-9FB8-838830DAEA50
fa3acdf1b118fc26668bf72a70d60aa024a2667254c5f0bb8f082bc384b38a4e6d3d1b672467a19793c8f770c63f48b409e87f5787371789af40b95eae9867b9
a6ed0401-d344-460a-8075-b9e8ec90d71b
a6ed0404-d344-460a-8075-b9e8ec90d71b
a6ed0701-d344-460a-8075-b9e8ec90d71b
a6ed0403-d344-460a-8075-b9e8ec90d71b

安全提示信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
cat/ereza/customactivityoncrash/CustomActivityOnCrash.java, line(s) 59,64,67,75,115,123,200,211,338,351,369,99,198
cn/smssdk/net/b.java, line(s) 294
cn/smssdk/utils/DHelper.java, line(s) 99
cn/smssdk/utils/SMSLog.java, line(s) 11
com/activeandroid/ActiveAndroid.java, line(s) 35
com/activeandroid/Cache.java, line(s) 24,33,40,51
com/activeandroid/Configuration.java, line(s) 212,228
com/activeandroid/DatabaseHelper.java, line(s) 76,141,158,161,83,128,131
com/activeandroid/Model.java, line(s) 96,98,191,193,195,52
com/activeandroid/ModelInfo.java, line(s) 41,79,81,138,140,142,44
com/activeandroid/TableInfo.java, line(s) 67
com/activeandroid/query/From.java, line(s) 214,215
com/activeandroid/util/IOUtils.java, line(s) 15,26
com/activeandroid/util/Log.java, line(s) 52,59,66,73,136,143,150,157,80,87,94,101,24,31,38,45,164,108,115,122,129
com/activeandroid/util/ReflectionUtils.java, line(s) 33
com/activeandroid/util/SQLiteUtils.java, line(s) 239,263
com/github/mikephil/charting/charts/BarChart.java, line(s) 69
com/github/mikephil/charting/charts/BarLineChartBase.java, line(s) 544,599,619,252,263,278,284,450,454
com/github/mikephil/charting/charts/Chart.java, line(s) 379,879,195,213,355,860,865
com/github/mikephil/charting/charts/CombinedChart.java, line(s) 77
com/github/mikephil/charting/charts/HorizontalBarChart.java, line(s) 150,91,95
com/github/mikephil/charting/components/AxisBase.java, line(s) 156
com/github/mikephil/charting/data/ChartData.java, line(s) 263
com/github/mikephil/charting/data/CombinedData.java, line(s) 195,202,209
com/github/mikephil/charting/data/LineDataSet.java, line(s) 100,113
com/github/mikephil/charting/data/PieEntry.java, line(s) 61,67
com/github/mikephil/charting/listener/BarLineChartTouchListener.java, line(s) 302
com/github/mikephil/charting/renderer/ScatterChartRenderer.java, line(s) 52
com/github/mikephil/charting/utils/FileUtils.java, line(s) 45,69,95,109,123,134,150,169,182
com/github/mikephil/charting/utils/Utils.java, line(s) 51,70,79
com/goodix/ble/libble/v2/impl/BleCharacteristicX.java, line(s) 103,108
com/goodix/ble/libble/v2/impl/BleGattX.java, line(s) 1050
com/goodix/ble/libble/v2/impl/BleRemoteDevice.java, line(s) 578,591
com/goodix/ble/libble/v2/impl/BleServiceX.java, line(s) 80,85
com/goodix/ble/libcomx/file/RotateFileOutputStream.java, line(s) 104,114
com/goodix/ble/libcomx/trx/TrxChain.java, line(s) 159,163
com/hp/hpl/sparta/DefaultLog.java, line(s) 9,14,19
com/hp/hpl/sparta/ParseCharStream.java, line(s) 130,655
com/hp/hpl/sparta/ParseException.java, line(s) 31
com/jieli/bmp_convert/BmpConvert.java, line(s) 51,97,118,121,129
com/jieli/jl_bt_ota/impl/BluetoothBase.java, line(s) 95,247,261,56
com/jieli/jl_bt_ota/impl/BluetoothBreProfiles.java, line(s) 185,189,204,208,251,256,277,282,308,312,317,370,377,392,76,82,89,99,116,126,159,162,169,174,194,198,213,217,264,269,271,290,295,298,304,325,335
com/jieli/jl_bt_ota/impl/BluetoothDiscovery.java, line(s) 189,173,177,181,185,239,243,247,278,282,310,314,206,227,257,405,219,225,251,265,288,321,352,356
com/jieli/jl_bt_ota/impl/BluetoothOTAManager.java, line(s) 181,204,510,521,580,664,682,812,946,976,1143,1200,1213,1218,1220,1259,1379,1391,1425,1454,501,578,605,759,765,769,773,777,1140,1268,1451,1493,118,132,292,315,336,443,446,454,512,516,537,741,826,831,877,915,918,955,960,1000,1123,1205,1211,1225,1229,1243,1302,1332,1347,1361,102,105,113,147,157,171,200,229,529,570,631,639,782,838,844,920,1370,1472
com/jieli/jl_bt_ota/impl/RcspAuth.java, line(s) 245,382,236,348,353,206
com/jieli/jl_bt_ota/model/cmdHandler/RcspCmdHandler.java, line(s) 34
com/jieli/jl_bt_ota/tool/DataHandler.java, line(s) 112,148,152,294,125,208,299,435,437,463,481,483,509,685,90,98,138,201,206,226,308,316,142,385,401,410,413,566,577
com/jieli/jl_bt_ota/tool/DataHandlerModify.java, line(s) 221,246,138,133,149,39,174,193,227
com/jieli/jl_bt_ota/tool/DeviceReConnectManager.java, line(s) 83,92,97,108,138,143,166,198,212,320,359,374,404,111,129,226,228,236,289,293,312,328,333,336,355,364,380,384,406,409,53,62,101,270,275,281,298
com/jieli/jl_bt_ota/tool/ParseHelper.java, line(s) 131,328,58,275,66,177,202,339,72,336
com/jieli/jl_bt_ota/tool/RcspParser.java, line(s) 62,129,76,88,84
com/jieli/jl_bt_ota/util/BluetoothUtil.java, line(s) 139,158,324,411,57,59,82,84
com/jieli/jl_bt_ota/util/FileUtil.java, line(s) 149,158,167,395,403,417,425,433
com/jieli/jl_bt_ota/util/JL_Log.java, line(s) 128,162,102,174,190,227,152
com/jieli/jl_bt_ota/util/ParseDataUtil.java, line(s) 98
com/jieli/jl_fatfs/FatFileSystem.java, line(s) 206,339,345,357,364,475,482,488,496,502,735,910,152,175,597,917,419,761,789,108,120,156,168,199,212,268,298,308,622,644,659,722,727,853
com/jieli/jl_fatfs/tool/PackResFormat.java, line(s) 59,53,56,61
com/jieli/jl_fatfs/utils/ZipUtil.java, line(s) 107,110
com/jieli/jl_filebrowse/FileBrowseManager.java, line(s) 104,333,389,400,505,729,210,337,296,311,592,350,661
com/jieli/jl_filebrowse/FileBrowseUtil.java, line(s) 38,89,101
com/jieli/jl_filebrowse/util/DeviceChoseUtil.java, line(s) 25,44
com/jieli/jl_rcsp/impl/DataTransferOpImpl.java, line(s) 64,312,314
com/jieli/jl_rcsp/impl/NfcOpImpl.java, line(s) 54,71,81,106,326,367,151,157,166,331
com/jieli/jl_rcsp/impl/OnFileBrowseCallbackImpl.java, line(s) 273
com/jieli/jl_rcsp/impl/RTCOpImpl.java, line(s) 147,149,106,280
com/jieli/jl_rcsp/impl/RcspAuth.java, line(s) 184,331,241,246,316
com/jieli/jl_rcsp/impl/RcspOpImpl.java, line(s) 352,367,373,386,419,149,160,230,153
com/jieli/jl_rcsp/impl/RecordOpImpl.java, line(s) 212,230,235,244
com/jieli/jl_rcsp/impl/WatchOpImpl.java, line(s) 463,467,538,153,170,513,102,118,309,349,491,495,550
com/jieli/jl_rcsp/model/cmdHandler/DeviceExtendParamCmdHandler.java, line(s) 23
com/jieli/jl_rcsp/model/cmdHandler/HealthSettingCmdHandler.java, line(s) 27,39
com/jieli/jl_rcsp/model/cmdHandler/NFCOperationCmdHandler.java, line(s) 137
com/jieli/jl_rcsp/model/cmdHandler/RcspCmdHandler.java, line(s) 34
com/jieli/jl_rcsp/model/cmdHandler/SmallFileTransferCmdHandler.java, line(s) 25,32
com/jieli/jl_rcsp/model/cmdHandler/SportsInfoStatusCmdHandler.java, line(s) 50,62
com/jieli/jl_rcsp/model/command/file_op/LargeFileTransferGetNameCmd.java, line(s) 39,45,51,71,77
com/jieli/jl_rcsp/model/device/NfcMsg.java, line(s) 31
com/jieli/jl_rcsp/model/device/health/AirPressure.java, line(s) 26
com/jieli/jl_rcsp/model/device/health/Altitude.java, line(s) 26
com/jieli/jl_rcsp/model/device/health/ExerciseRecoveryTime.java, line(s) 18
com/jieli/jl_rcsp/model/device/health/HeartRate.java, line(s) 27
com/jieli/jl_rcsp/model/device/health/MaxOxygenUptake.java, line(s) 16
com/jieli/jl_rcsp/model/device/health/OxygenSaturation.java, line(s) 27
com/jieli/jl_rcsp/model/device/health/PressureDetection.java, line(s) 16
com/jieli/jl_rcsp/model/device/health/SportsSteps.java, line(s) 25
com/jieli/jl_rcsp/model/device/health/TrainingLoad.java, line(s) 16
com/jieli/jl_rcsp/model/parameter/ModifyNfcMsgParam.java, line(s) 37
com/jieli/jl_rcsp/task/GetFileTask.java, line(s) 250,268,97,189,301
com/jieli/jl_rcsp/task/TaskBase.java, line(s) 96
com/jieli/jl_rcsp/task/TransferTask.java, line(s) 194,261,442,507,579,599,174,587,251,391,528,534,325,627
com/jieli/jl_rcsp/task/contacts/ReadContactsBySmallFileTask.java, line(s) 45
com/jieli/jl_rcsp/task/contacts/ReadContactsTask.java, line(s) 52,61
com/jieli/jl_rcsp/task/contacts/UpdateContactsBySmallFileTask.java, line(s) 51,54,115,120,123,126,46
com/jieli/jl_rcsp/task/format/FormatCmdTask.java, line(s) 41
com/jieli/jl_rcsp/task/format/FormatTask.java, line(s) 58,44,68
com/jieli/jl_rcsp/task/logcat/ReadLogcatTask.java, line(s) 95,216,87,127,150,207,239,251
com/jieli/jl_rcsp/task/nfc/NfcSyncTask.java, line(s) 143,148,157,172,76,103,106,125,134
com/jieli/jl_rcsp/task/smallfile/AddFileTask.java, line(s) 136,138,95
com/jieli/jl_rcsp/task/smallfile/DeleteFileTask.java, line(s) 49
com/jieli/jl_rcsp/task/smallfile/QueryFileTask.java, line(s) 69
com/jieli/jl_rcsp/task/smallfile/ReadFileTask.java, line(s) 82
com/jieli/jl_rcsp/tool/CustomRcspActionCallback.java, line(s) 65
com/jieli/jl_rcsp/tool/HealthDataParseHelper.java, line(s) 65,85,99,104
com/jieli/jl_rcsp/tool/RcspDataHandler.java, line(s) 138,144,155,167,173,261,336,411,487,490,496,598,680,448,68,161,361,365
com/jieli/jl_rcsp/tool/SyncMessageTask.java, line(s) 162,371,128,360,291,274
com/jieli/jl_rcsp/tool/UpdateResourceTask.java, line(s) 51,56,342,353,442,453,61,114,176,346,361,373,465,140,151,207
com/jieli/jl_rcsp/tool/UpdateResourceThread.java, line(s) 528,530,230,242,244,267,284,543,154,193,215,220,225,250,254,257,262,314,329,340,278,280,390,480
com/jieli/jl_rcsp/tool/WatchCallbackManager.java, line(s) 184
com/jieli/jl_rcsp/tool/datahandles/BasePacketParse.java, line(s) 62,129,76,88,84
com/jieli/jl_rcsp/tool/datahandles/DataHandlerModify.java, line(s) 95,241,255,84,79,44,188,205
com/jieli/jl_rcsp/tool/datahandles/DataHandlerOld.java, line(s) 155,159,164,169,217,323,419,805,63,132,206,255,333,465,467,487,505,507,533,702,101,145,175,249,267,342,350,404,434,253,149,177,439,573,584
com/jieli/jl_rcsp/tool/datahandles/ParseHelper.java, line(s) 115,140
com/jieli/jl_rcsp/tool/filebrowse/FileBrowseOperatorImpl.java, line(s) 47,96
com/jieli/jl_rcsp/tool/filebrowse/LrcReadOperatorImpl.java, line(s) 42
com/jieli/jl_rcsp/util/CrashHandler.java, line(s) 137,61,101,117,140
com/jieli/jl_rcsp/util/JL_Log.java, line(s) 125,126,129,173,175,129,185,187,103,129,212,214,240,242,251,253
com/jieli/jl_rcsp/util/TestLog.java, line(s) 5
com/jieli/jl_rcsp/util/WatchFileUtil.java, line(s) 52
com/jieli/jl_rcsp/watch/WatchBase.java, line(s) 325,110
com/jieli/jl_rcsp/watch/WatchProgressHandler.java, line(s) 162,178,180,184,92,99,175
com/jieli/jl_rcsp/watch/fatfs/FatFsBluetoothImp.java, line(s) 65,82,103,165,181,256,272,355,369,388,411,225,227,306,118,205,216,286,374,68,96,136,251,316,351,380,392,406,413
com/jieli/jl_rcsp/watch/fatfs/FatFsWatch.java, line(s) 352,368,272,387,199,276,303,374,397,62,195,247,269,408
com/jieli/jl_rcsp/watch/rcsp/RcspWatch.java, line(s) 220,401,407,413,422,431,778,784,793,798,95,451,465,655,722,750,102,370,375,382,444,678,732,753
com/nanchen/compresshelper/FileUtil.java, line(s) 73,76
com/orhanobut/logger/AndroidLogAdapter.java, line(s) 11,16,26,31,21,36
com/veepoo/hband/HBandApplication.java, line(s) 189,191,192
com/veepoo/hband/ProcessObserver.java, line(s) 26,31,33
com/veepoo/hband/activity/MainActivity.java, line(s) 2345,2347,2415,2437
com/veepoo/hband/activity/ThreadTest.java, line(s) 23,26,34,48,50,52,59,62,67
com/veepoo/hband/activity/connected/backdoor/JLOTATestActivity.java, line(s) 391,409,359,382
com/veepoo/hband/activity/connected/backdoor/ShowBackActivity.java, line(s) 491,1167,250
com/veepoo/hband/activity/connected/backdoor/ShowLogActivity.java, line(s) 143,144
com/veepoo/hband/activity/connected/camera/CameraSurfaceView.java, line(s) 27,32,37
com/veepoo/hband/activity/connected/camera/DisplayUtil.java, line(s) 25
com/veepoo/hband/activity/connected/oad/BluetrumOTAActivity.java, line(s) 298
com/veepoo/hband/activity/connected/oad/JLOTAActivity.java, line(s) 696,714,665,687,286
com/veepoo/hband/activity/connected/oad/OadNoricActivity.java, line(s) 810,331
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_172320_Activity.java, line(s) 705,706,753,754
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_200320_Activity.java, line(s) 704,705,752,753
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240240_Activity.java, line(s) 790,791,838,839
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240280_Activity.java, line(s) 753,754,801,802
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240284_Activity.java, line(s) 745,746,793,794
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240286_Activity.java, line(s) 745,746,793,794
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240292_Activity.java, line(s) 750,751,798,799
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240296_Activity.java, line(s) 744,745,792,793
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_240Round_Activity.java, line(s) 816,817,864,865
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320380_Activity.java, line(s) 822,823,870,871
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320386_Activity.java, line(s) 822,823,870,871
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_320Round_Activity.java, line(s) 803,804,851,852
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_360Round_Activity.java, line(s) 819,820,867,868
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_368448_Activity.java, line(s) 822,823,870,871
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_390Round_Activity.java, line(s) 803,804,851,852
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_410502_Activity.java, line(s) 822,823,870,871
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_412Round_Activity.java, line(s) 816,817,864,865
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_416Round_Activity.java, line(s) 808,809,856,857
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_466Round_Activity.java, line(s) 812,813,860,861
com/veepoo/hband/activity/connected/setting/EditWatchUiJL_480Round_Activity.java, line(s) 812,813,860,861
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_240296_Activity.java, line(s) 831,832,855,856
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_360RoundActivity.java, line(s) 862,863,886,887
com/veepoo/hband/activity/connected/setting/EditWatchUiZK_466RoundActivity.java, line(s) 860,861,884,885
com/veepoo/hband/activity/connected/setting/EditWatchUi_135240Activity.java, line(s) 861,862,884,885
com/veepoo/hband/activity/connected/setting/EditWatchUi_167240Activity.java, line(s) 862,863,885,886
com/veepoo/hband/activity/connected/setting/EditWatchUi_172320Activity.java, line(s) 861,862,884,885
com/veepoo/hband/activity/connected/setting/EditWatchUi_200320Activity.java, line(s) 848,849,871,872
com/veepoo/hband/activity/connected/setting/EditWatchUi_240240Activity.java, line(s) 913,914,937,938
com/veepoo/hband/activity/connected/setting/EditWatchUi_240280Activity.java, line(s) 893,894,916,917
com/veepoo/hband/activity/connected/setting/EditWatchUi_240284Activity.java, line(s) 891,892,914,915
com/veepoo/hband/activity/connected/setting/EditWatchUi_240286Activity.java, line(s) 890,891,913,914
com/veepoo/hband/activity/connected/setting/EditWatchUi_240295Activity.java, line(s) 886,887,910,911
com/veepoo/hband/activity/connected/setting/EditWatchUi_240RoundActivity.java, line(s) 866,867,891,892
com/veepoo/hband/activity/connected/setting/EditWatchUi_320380Activity.java, line(s) 883,884,907,908
com/veepoo/hband/activity/connected/setting/EditWatchUi_360RoundActivity.java, line(s) 842,843,866,867
com/veepoo/hband/activity/connected/setting/EditWatchUi_80160Activity.java, line(s) 863,864,886,887
com/veepoo/hband/activity/desingguide/GuideScanListActivity.java, line(s) 483,486,556,650,661,683,747,754
com/veepoo/hband/activity/desingguide/NotifySettingActivity.java, line(s) 476,524
com/veepoo/hband/activity/desingguide/PermissionActivity.java, line(s) 157,330,332,336,351,353,357,373,375,379,395,397,401,416,434,436,440,456,458,462,492,505,507,514,522,529,539,543,546,550,553,557,560,564,567,571,574,578,581,588,596,610,617,621,623,625,634,641,645,649,653,657,663,673,674,675,676,677
com/veepoo/hband/activity/desingguide/ScanPermissionActivity.java, line(s) 285,401,404
com/veepoo/hband/activity/fragment/HomeFragment.java, line(s) 1191
com/veepoo/hband/activity/gps/GoogleMapActivity.java, line(s) 232
com/veepoo/hband/activity/gps/util/UploadUtil.java, line(s) 63,64,73
com/veepoo/hband/activity/history/SleepV1HistroyActivity.java, line(s) 448,451,467
com/veepoo/hband/activity/music/MusicActivityDemo.java, line(s) 237,240,243
com/veepoo/hband/activity/setting/MessageSettingHelpActivity.java, line(s) 190,191,193,194
com/veepoo/hband/activity/setting/WhiteListHelpActivity.java, line(s) 312,313,315,316
com/veepoo/hband/adapter/BleScanViewAdapter.java, line(s) 95
com/veepoo/hband/adapter/CustomLogAdapter.java, line(s) 9,14,24,29,19,34
com/veepoo/hband/adapter/HistoryHRVBaseAdapter.java, line(s) 124
com/veepoo/hband/adapter/HistorySpo2hBaseAdapter.java, line(s) 100
com/veepoo/hband/adapter/PermissionCheckAdapter.java, line(s) 109
com/veepoo/hband/adapter/RecleViewBaseAdapter.java, line(s) 324,364,383,418,436
com/veepoo/hband/adapter/RecleViewBaseAdapterPWSetting.java, line(s) 326,357,378,413,431
com/veepoo/hband/adapter/RecleViewBaseAdapterSetting.java, line(s) 331,361,382,417,435
com/veepoo/hband/adapter/WomanSettingAdapter.java, line(s) 295,325,346,381,399
com/veepoo/hband/ble/BleScanActivity.java, line(s) 643,650,659
com/veepoo/hband/ble/BluetoothService.java, line(s) 2834,2964,2969,2974,2986,1360,1587
com/veepoo/hband/ble/bluetrum/dial/ZKImageConvertHelper.java, line(s) 26,28
com/veepoo/hband/ble/send/BleDataSendManager.java, line(s) 311,315
com/veepoo/hband/httputil/GoogleFitSyncSessionTest.java, line(s) 196,199,210
com/veepoo/hband/httputil/GoogleFitSyncUtil.java, line(s) 385,388,399
com/veepoo/hband/j_l/dial/AbstractTestTask.java, line(s) 12
com/veepoo/hband/j_l/dial/AppUtil.java, line(s) 46
com/veepoo/hband/j_l/dial/WatchManager.java, line(s) 235,279,309,315,326,380,390,398,454,318,371,388,393,311,334,405,521,526,544,549,552
com/veepoo/hband/j_l/dial/fattask/FatFileTestTask.java, line(s) 47,58,152,145,149
com/veepoo/hband/j_l/ota/BLEScanner.java, line(s) 107
com/veepoo/hband/j_l/ota/JLOTAManager.java, line(s) 256
com/veepoo/hband/j_l/send/SendBleDataThread.java, line(s) 37,121,134,154,183,116
com/veepoo/hband/phone/CrashHandler.java, line(s) 116,76,110,118,124,150,243,176
com/veepoo/hband/phone/MessageNotifyCollectService.java, line(s) 538
com/veepoo/hband/sql/SqlHelperUtil.java, line(s) 272
com/veepoo/hband/util/ConnectTestManager.java, line(s) 115,197,198,205,206,207,210,212
com/veepoo/hband/util/FileUtilQ.java, line(s) 266,268,210
com/veepoo/hband/util/GPSConverterUtils.java, line(s) 22,37,43,58
com/veepoo/hband/util/IMMLeaks.java, line(s) 93,129
com/veepoo/hband/util/LorenzReferUtil.java, line(s) 229
com/veepoo/hband/util/MD5.java, line(s) 14
com/veepoo/hband/util/PictureSelectorManager.java, line(s) 447,454,457,461,469,476,487,491,152,153,154,155,156,157,158,159,160,161,162,163,164,165,169,183,184
com/veepoo/hband/util/PngToBmpUtil.java, line(s) 281,282
com/veepoo/hband/util/RepoCutUtil.java, line(s) 62,63,64,65,66,116,117,118,133,138,159
com/veepoo/hband/util/RepoCutUtilG01.java, line(s) 66,67,68,69,70,120,121,122,137,142,163
com/veepoo/hband/util/WeatherUtilSDK.java, line(s) 658,659,660,661,471,475,552,557,573,584,589,601,606,608,662,664,666,668,1055,1109,364,396,399,403,406
com/veepoo/hband/view/EcgHeartDetailView.java, line(s) 316
com/veepoo/hband/view/EcgHeartRealthView.java, line(s) 163,175,191
com/veepoo/hband/view/EcgRepoCutView.java, line(s) 283
com/veepoo/hband/view/EcgRepoView.java, line(s) 271
com/veepoo/hband/view/PrecisionSleepView.java, line(s) 244,245,246
com/veepoo/hband/view/PttEcgView.java, line(s) 103,104,133,139,144,152,245,248
com/veepoo/hband/view/ScrollEndView.java, line(s) 92,126,131,143
com/veepoo/hband/view/SleepCustomView.java, line(s) 153,199,214
com/wx/wheelview/util/WheelUtils.java, line(s) 18
com/yalantis/ucrop/UCropActivity.java, line(s) 178
com/yalantis/ucrop/task/BitmapCropTask.java, line(s) 169,182,209,132
com/yalantis/ucrop/task/BitmapLoadTask.java, line(s) 132,152,93,96,138,145
com/yalantis/ucrop/util/BitmapLoadUtils.java, line(s) 189,53,132,134,168
com/yalantis/ucrop/util/EglUtils.java, line(s) 27
com/yalantis/ucrop/util/FileUtils.java, line(s) 164
com/yalantis/ucrop/util/ImageHeaderParser.java, line(s) 57,64,75,83,115,125,137,151,165,171,175,180,186,190,281,287,300,307,314,327,340,347,354,56,63,74,82,114,124,136,150,164,170,174,179,185,189
com/yalantis/ucrop/view/TransformImageView.java, line(s) 276,293,169,83
no/nordicsemi/android/dfu/BaseDfuImpl.java, line(s) 477,481,492,348,375,486
no/nordicsemi/android/dfu/DfuBaseService.java, line(s) 705,709,720,714
no/nordicsemi/android/dfu/internal/ArchiveInputStream.java, line(s) 74,106,111
rx/internal/util/IndexedRingBuffer.java, line(s) 35
rx/internal/util/RxRingBuffer.java, line(s) 29
rx/plugins/RxJavaHooks.java, line(s) 204
solid/ren/skinlibrary/base/SkinBaseFragmentActivity.java, line(s) 75,116
solid/ren/skinlibrary/utils/SkinL.java, line(s) 23,11,17
top/zibin/luban/Checker.java, line(s) 62,82,88,113,121
top/zibin/luban/Luban.java, line(s) 92,91
top/zibin/luban/LubanUtils.java, line(s) 64
top/zibin/luban/io/LruArrayPool.java, line(s) 86,124,87,125

安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
cat/ereza/customactivityoncrash/activity/DefaultErrorActivity.java, line(s) 4,84

已通过安全项 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
com/veepoo/hband/adapter/AuthImageDownloader.java, line(s) 84,63
com/veepoo/hband/httputil/CHttpUtilCommon.java, line(s) 180,54,87,118
com/veepoo/hband/httputil/HttpGoogleUtil.java, line(s) 25,25
com/veepoo/hband/httputil/HttpUtil.java, line(s) 54,102,106,54,102,106
com/veepoo/hband/httputil/HttpUtilInnerOad.java, line(s) 28,28

已通过安全项 此应用程序没有隐私跟踪程序

此应用程序不包括任何用户或设备跟踪器。在静态分析期间没有找到任何跟踪器。

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (identify.verify.mob.com) 通信。

{'ip': '103.143.17.148', 'country_short': 'CN', 'country_long': '中国', 'region': '河北', 'city': '石家庄', 'latitude': '38.041599', 'longitude': '114.478081'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (domain-publish-devapi.qweather.net) 通信。

{'ip': '180.188.26.28', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (init.sms.mob.com) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '河北', 'city': '石家庄', 'latitude': '38.041599', 'longitude': '114.478081'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (datasetapi-413-aa3b3.qweather.net) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (www.mob.com) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '浙江', 'city': '台州', 'latitude': '28.666668', 'longitude': '121.349998'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (geoapi-413-aa3b3.qweather.net) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (api-413-aa3b3.qweather.net) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (devapi-413-aa3b3.qweather.net) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (auth-413-aa3b3.qweather.net) 通信。

{'ip': '47.95.178.71', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (www.vphband.com) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '广东', 'city': '深圳', 'latitude': '22.545673', 'longitude': '114.068108'}

重点安全关注 应用程序可能与位于OFAC制裁国家 (中国) 的服务器 (domain-publish-api.qweather.net) 通信。

{'ip': '39.105.162.191', 'country_short': 'CN', 'country_long': '中国', 'region': '北京', 'city': '北京', 'latitude': '39.907501', 'longitude': '116.397102'}

综合安全基线评分总结

应用图标

G Buddy Stylfit v1.3.5

Android APK
51
综合安全评分
中风险