安全分析报告: 모바일『부❀고』 v8.5.2

安全分数


安全分数 62/100

风险评级


等级

  1. A
  2. B
  3. C
  4. F

严重性分布 (%)


隐私风险

0

用户/设备跟踪器


调研结果

高危 0
中危 9
信息 1
安全 2
关注 0

中危 应用程序数据存在被泄露的风险

未设置[android:allowBackup]标志
这个标志 [android:allowBackup]应该设置为false。默认情况下它被设置为true,允许任何人通过adb备份你的应用程序数据。它允许已经启用了USB调试的用户从设备上复制应用程序数据。

中危 Activity () 未被保护。

存在一个intent-filter。
发现 Activity与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity是显式导出的。

中危 Activity-Alias () 未被保护。

存在一个intent-filter。
发现 Activity-Alias与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Activity-Alias是显式导出的。

中危 Broadcast Receiver (swefk.wepgfoversd.frdlv.AAkeepaliveZZ.receiver.AABootCompletedReceiverZZ) 未被保护。

存在一个intent-filter。
发现 Broadcast Receiver与设备上的其他应用程序共享,因此让它可以被设备上的任何其他应用程序访问。intent-filter的存在表明这个Broadcast Receiver是显式导出的。

中危 高优先级的Intent (2147483647) - {1} 个命中

[android:priority]
通过设置一个比另一个Intent更高的优先级,应用程序有效地覆盖了其他请求。

中危 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
swefk/wepgfoversd/frdlv/AAmqttZZ/AAConfigUtilsZZ.java, line(s) 7
swefk/wepgfoversd/frdlv/AAutilsZZ/AAConfigurationsZZ.java, line(s) 11,8

中危 IP地址泄露

IP地址泄露


Files:
swefk/wepgfoversd/frdlv/AAutilsZZ/AAConfigurationsZZ.java, line(s) 10

中危 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
swefk/wepgfoversd/frdlv/AAutilsZZ/AAFileUtilsZZ.java, line(s) 265

中危 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
fXB5bHZ7en12en17bGhkCVxHTFFZTEpdTE0JTFtbRlsJSkZNTBMJDE0
fWV6dm1hbHZtenp2fmB9YXZobHp2GxwfdmpranZ6YWg
W0xaWUZHWkwJQFoJR0ZdCUxFQE5AS0VMCU9GWwlICUtGTVAJSEdNCURcWl0JR0ZdCUtMCUpFRlpMTQ
SEdNW0ZATQdaTF1dQEdOWgd7bHh8bHp9dmBuZ2Z7bHZraH19bHtwdmZ5fWBkYHNofWBmZ3o
BlpdRltITkwGTERcRUhdTE0GGQZneWJgB1NAWQ
bFFZTEpdTE0Ja2xuYGd2aHt7aHAJS1xdCV5IWgk
SkBZQUxbelxAXUwJFBQJenpldmd8ZWV2fmB9YXZnfGVldmd8ZWU
fWV6dm1hbHZ7emh2fmB9YXZobHp2GBsRdmpranZ6YWg
CUBaCUdGXQlICV9IRUBNCU1GXEtFTAlfSEVcTAlIWglZTFsJY3pmZwlaWUxKQE9ASkhdQEZHBwl9RglGX0xbW0BNTAldQUBaCUtMQUhfQEZbBQlcWkwJblpGR2tcQEVNTFsHWkxbQEhFQFNMellMSkBIRW9FRkhdQEdOeUZAR11
bFFZTEpdTE0JDhNaXUhdXFoOCUFMSE1MWwlHRl0JWVtMWkxHXQ
ZkJhXV1ZCX5AR01GXgl8WU1IXUwJDFoJWl1bTEhECQxN
fXB5bHZ6bH19YGdueglFTEdOXUEJDAwJHwkIFAkZEwkMWg
fXB5bHZ5e2Bme2B9cAlaXVtMSERgTQkUFAkZ
fWV6dmxqbWF2e3podn5gfWF2aGx6dhscH3ZuamR2emFoGhEd
fWV6dm1hbHZtenp2fmB9YXZobHp2Gxwfdm5qZHZ6YWgaER0
fUFAWglaQUZcRU0JR0xfTFsJQUhZWUxHCAl7TFlGW10JSFoJSAlLXE4JXkBdQQldQUwJT1xFRQlaXUhKQl1bSEpMBw
fWV6dm1hdkhHRkd2fmB9YXZobHp2GBsRdm5qZHZ6YWgbHB8
WlxLWkpbQEtMaEVFfUZZQEpaCU9IQEVcW0wICWxRSkxZXUBGRxMJ
SEdNW0ZATQdZW0ZfQE1MWwdMUV1bSAdoeXl2eWhqYmhubA
eXtmfWZqZmV2bHt7ZnsTCW9laG52amZkeXtsenpsbQleQF1BRlxdCXpsfX1gZ256dmpmZHl7bHp6dm1ofWg
CU1ATUcOXQlKRUZaTAlAXVoJS0hKQkBHTglaXVtMSEQHCWtITQlAR11MW0pMWV1GWxY
fEdMUVlMSl1MTQlNTE9IXEVdCV1bXFpdCURIR0hOTFtaEw
TUhFX0BCB1pQWl1MRAdqRUZaTG5cSFtN
fWV6dm1hbHZ7emh2fmB9YXZobHp2GBsRdmpranZ6YWgbHB8
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2GBsRdm5qZHZ6YWgbHB8
akZcRU1HDl0JTUxKRk1MCV1BTAlbTFpZRkdaTAlLRk1QEglKQUhbWkxdCUBaCUVAQkxFUAlESEVPRltETE0H
W0hee0xaWUZHWkwJRFxaXQlLTAlaXEpKTFpaT1xFCVtMWllGR1pM
bFFZTEpdTE0JSAlNRlxLRUwJS1xdCV5IWgk
AXJIBFNoBHMZBBAECAoNDA8OAwIHd3ZJUlVUV3QCAAYBckgEU2gEcxkEEAQICg0MDw4DAgd3dklSVVRXdAIA
fWV6dmJ7axx2bHF5Znt9dn5gfWF2e2oddh0ZdnphaA
aGV5ZwlKSEVFS0hKQglNW0ZZWUxNEwlhfX15BhsJQFoJTUBaSEtFTE0HCWBaCUhFWUcES0ZGXQlGRwldQUwJS0ZGXQlKRUhaWglZSF1BFg
fWV6dm1hbHZtenp2fmB9YXZqaGRsZWVgaHYbHB92amtqdnphaA
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2GxwfdmpranZ6YWgaER0
SkZEB0hHTVtGQE0HRltOB0pGR1pKW1BZXQd6emV5SFtIRExdTFtaYERZRQ
bltIX0BdUAd7YG5hfQlGWwluW0hfQF1QB2dmdm57aH9gfXA
BwlpY1pGR2hNSFldTFsJX0hFXEwJRFxaXQlLTAlICX1QWUxoTUhZXUxbBQl9UFlMaE1IWV1MW29ISl1GW1AFCWNaRkd6TFtASEVAU0xbCUZbCWNaRkdtTFpMW0BIRUBTTFsH
aHlgCU1MSkVIW0hdQEZHWglEXFpdCUtMCUBHXUxbT0hKTFoH
elxLWkpbQEtMCU9IQEVcW0wJCAldRllASglAWgkTCQ
EnVaAwEWEwFySARTaARzGQQQBAgKDQwPDgMCB3d2SVJVVFd0AgAUARYTAXJIBFNoBHMZBBAECAoNDA8OAwIHd3ZJUlVUV3QCAFULAXJ3C3QDAAsAABY
CX1GCVpMTAleQUxbTAldQUBaCV5IWglIRUVGSkhdTE0FCVpMXQldQUwJZkJhXV1ZakVATEddCUVGTk5MWwlFTF9MRQldRglvYGdsEwllRk5OTFsHTkxdZUZOTkxbAWZCYV1dWWpFQExHXQdKRUhaWgdOTF1nSERMAQAAB1pMXWVMX0xFAWVMX0xFB29gZ2wAEg
enpldnt6aHZscXlme312fmB9YXZ7ah12HRl2ZG0c
fWV6dm1hbHZtenp2fmB9YXZobHp2GBsRdmpranZ6YWg
fWV6dmxqbWFsdmxqbXpodn5gfWF2aGx6dhscH3Zqa2p2emFoGhEd
CQgLCg0PDgEABQYTEhUUFxZpcnR1d0lSVVRX
eXtmfWZqZmV2bHt7ZnsJWUhNTUBHTgkMWgkXCVtMREhAR0BHTglFTEdOXUEJDFo
CQsOExIVFBdpcnR3SVJUVQZ1FgoPCA0BAAVX
fEdIS0VMCV1GCU9AR00JSEpKTFldSEtFTAlZW0ZdRkpGRVoHCUBab0hFRUtISkIU
enpldm1hbHZ7emh2bHF5Znt9dn5gfWF2bWx6HRl2amtqdnphaA
aF1dTERZXUxNCV1GCVpMW0BIRUBTTAlDSF9IB0VIR04HakVIWloTCQ
fWV6dm1hbHZ7emh2fmB9YXZobHp2GBsRdm5qZHZ6YWgbHB8
YV1dWRtqRkdHTEpdQEZHB2VAWl1MR0xbCU9IQEVcW0wJT0ZbCQ
I0hHTQlaXEcHREBaSgd8R1pIT0wJR0ZdCU9GXEdNByNsQF1BTFsJXltAXUwJSAlKXFpdRkQJXVBZTAlITUhZXUxbBQlGWwlESEJMCU9ATEVNWglISkpMWlpAS0VMBQlGWwlAR0pFXE1MCVpcRwdEQFpKB3xHWkhPTAc
akxbXUBPQEpIXUwJWUBHR0BHTglPSEBFXFtMCA
fEdMUVlMSl1MTQlbTFpZRkdaTAlKRk1MCU9GWwlqZmdnbGp9Ewk
CUdGXQlfTFtAT0BMTRMjCQkJCUpMW11AT0BKSF1MEwk
fXB5bHZ5YGduCUVMR05dQQkIFAkREwkMWg
cnVcGRkZGQR1XBkZGG91XBkZHm8EdVwZGRBvdVlSQ0hfSH5BQF1MWllISkxUdA
dwEYGXUHdU1SGAUaVHUHdU1SGAUaVHUHdU1SGAUaVABVARgeG3UHAQEYch8EEHQAVQEbdU0AVQEachkYdAAAdQd1TVIYBRpUdQd1TVIYBRpUAFUBGBAbdQcYHxF1B3VNUhgFGlR1B3VNUhgFGlQADQ
eXtmfWZqZmV2bHt7ZnsTCX1weWx2bWh9aAlaXVtMSERgTQkUFAkZ
YUxITUxbCURIWQlKRkddSEBHTE0JR1xFRQlfSEVcTAlPRlsJQkxQCQ4
fWV6dmJ7axx2bHF5Znt9dn5gfWF2e2oddh0ZdmRtHA
aEtaXVtISl0JSkVIWloJSkhHDl0JS0wJQEdaXUhHXUBIXUxNCAlqRUhaWglHSERMEwk
eUhbSERMXUxbCUBaCUdGXQlPRltESF1dTE0JSkZbW0xKXUVQEwkL
QV1dWVoTBgZeXl4HSkVGXE1PRUhbTAdKRkQG
bFFZTEpdTE0JRkdMCWN6ZmcJTEVMRExHXQlLXF0JXkhaCQ
R0YJfWV6CV9MW1pARkdaCU9GWwlKRUxIW11MUV0JSkZHR0xKXUBGR1o
R0YJfWV6CUxRXUxHWkBGR1oJT0ZbCUpFTEhbXUxRXQlKRkdHTEpdQEZHWg
SEdNW0ZATQdZTFtEQFpaQEZHB3tsaG12eWFmZ2x2en1ofWw
fFpMCWNaRkd7TEhNTFsHWkxdZUxHQExHXQFdW1xMAAldRglISkpMWV0JREhFT0ZbRExNCWN6Zmc
XkBHTUZeekBTTGBHSltMRExHXQkUFAkZCVVVCV5AR01GXnpAU0xgR0pbTERMR10JFwkZUR5PT09PT09PZRMJDFo
fWV6dmxqbWFsdmxqbXpodn5gfWF2aGx6dhgbEXZuamR2emFoGxwf
f0xbWkBGR0xNeUhbSkxFCUxHSkZcR11MW0xNCWdGelxKQWRMXUFGTWxRSkxZXUBGRw
RltOB0xKRUBZWkwHQ0xdXVAHSEVZRwdoZXlnDWpFQExHXXlbRl9ATUxb
fXB5bHZ5e2Bme2B9cAlFTEdOXUETCQxNCQgUCRw
fWV6dm1hbHZ7emh2fmB9YXZqaGRsZWVgaHYYGxF2amtqdnphaA
R0YJSkBZQUxbCVpcQF1MWglPRlsJSkVMSFtdTFFdCUpGR0dMSl1ARkda
fWV6CV1cR0dMRQlLXE9PTFtMTQldRkYJREhHUAlLUF1MWgg
e0xaXEVdCURcWl0JS0wJWUhbSERMXUxbQFNMTQlIWgl7TFpcRV0Vb0ZGFwlGWwl7TFpcRV0VFglMUV1MR01aCW9GRhc
b0hARUxNCV1GCU9AR00JSAldW1xaXUxNCUpMW10JXUFIXQlaQE5HTE0J
YEdKRkRAR04JTUhdSAldUFlMCUxRSkxZXUBGRwUJQF0JRFxaXQlLTAl6XVtAR04FCW9ARUwFCXxbQAlGWwlrQF1ESFk
EglMUUFIXFpdTE0JWVtGUVAJSkZHT0BOXFtIXUBGR1oTCQ
ZkdFUAlGR0wJYX19eQlETF1BRk0JQFoJSEVFRl5MTQcJb0ZcR00TCQxaCUhHTQkMWgc
bnpmZwkBGwcRBx8ACUpIR0dGXQlBSEdNRUwJ
SEdNW0ZATQdaXFlZRltdB18dB0ZaB2B7TFpcRV17TEpMQF9MWw
b3toZGx2emBzbHZse3tmewlISkIJT1tIREwJWkFGXEVNCUtMCUxEWV1QCA
bFFZTEpdTE0JbGdtdmh7e2hwCUtcXQleSFoJ
akhHR0ZdCVtMSE0JW0heCVtMWllGR1pMCUtGTVAJRk8JSAlKRkdfTFtdTE0JS0ZNUAc
akhFRQlbTF1cW0cJXVBZTAlEXFpdCUtMCVlIW0hETF1MW0BTTE0JSFoJakhFRRVvRkYXCUZbCWpIRUUVFglMUV1MR01aCW9GRhc
RUZKSEVFUARAR0BdQEhdTE0JWl1bTEhEWglaQUZcRU1HDl0JQUhfTAlBTEhNTFtaCVBMXQ
bVtIXkxbZUhQRlxdCURcWl0JS0wJRExIWlxbTE0JXkBdQQlkTEhaXFtMellMSgdscWhqfWVwBw
CUdGXQlfTFtAT0BMTQkBR0YJSkxbXUBPQEpIXUxaAA
CQFdRglbTEhNCUpGTUwJWUZAR10JWVtMT0BRTE0JGVE
Z1xETFtASglfSEVcTFoJRFxaXQlLTAlPQEdAXUwFCUtcXQleSFoJ
aFxdRn1IWkIJW1xHR0BHTgkHBwcJT0hARVxbTAlKRlxHXQ
CUBaCUdGXQlICVpFQE1AR04JTVtIXkxb
YEdfSEVATQlIXV1MRFldCV1GCUtAR00JSEcJQEdaXUhHSkwJRk8J
enpldm1hdkhHRkd2bHF5Znt9dn5gfWF2bWx6HRl2amtqdnphaA
fUFAWglKRkddSEBHTFsJTUZMWglHRl0JWlxZWUZbXQlbTF1IQEdAR04JZEhZB2xHXVtQCUZLQ0xKXVo
SFlZRUBKSF1ARkcGUQReXl4ET0ZbRARcW0VMR0pGTUxN
bFFZTEpdTE0JSEVdTFtHSF1AR04JQUxITUxbCUdIRExaCUhHTQlfSEVcTFo
eXtmfWZqZmV2bHt7ZnsJemx9fWBnbnp2bGdoa2Vsdnl8emEJCBQJGQlGWwkY
b0BMRU0JREhZCUpGR11IQEdMTQlHXEVFCV9IRVxMCU9GWwlCTFAJDg
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2GBsRdmpranZ6YWgbHB8
SEdNW0ZATQdZTFtEQFpaQEZHB357YH1sdmxxfWx7Z2hldnp9Zntobmw
fWV6dmJ7axx2bHF5Znt9dn5gfWF2bWx6dmpranYdGXZkbRw
XEdIS0VMCV1GCU5MXQlAWlpcTFoJSEdNCVpATkdIXVxbTA
enpldnt6aHZscXlme312fmB9YXZtbHodGXZqa2p2emFo
bGxsBQlNTQlkZGQJUFBQUAlhYRNERBNaWgkObmR9Dg
bFFZTEpdTE0JSAl6bH19YGdueglPW0hETAlLXF0JXkhaCQxa
eUVIUExbZFxaQEp6TFtfQEpMBAQEBBdGR2pbTEhdTAXMqLXPhIvPtaTMo4g
SEdNW0ZATQdZTFtEQFpaQEZHB3tsaG12eWFmZ2x2Z3xka2x7eg
eUVIUExbZFxaQEp6TFtfQEpMzLmGzKOBzLmnzKaZz7uEz72XwLaazZC5
CVtMXVxbR0xNCUgJW0xaWUZHWkwJXkBdQQlHRglLRk1Q
CVtMXVxbRwldUFlMCURcWl0JS0wJWUhbSERMXUxbQFNMTQlIWgk
fWV6dmxqbWF2bGptemh2fmB9YXZ7ah12GBsRdnphaA
SEdNW0ZATQdZTFtEQFpaQEZHB3tsaG12bHF9bHtnaGV2en1me2hubA
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2Gxwfdm5qZHZ6YWgaER0
W0hee0xaWUZHWkwJWkFGXEVNCUdGXQlLTAlaXEpKTFpaT1xFCVtMWllGR1pM
blpGRwlKRlxFTUcOXQlERk1AT1AJT0BMRU1aCU9GWwk
fWV6dm1hdkhHRkd2fmB9YXZobHp2Gxwfdm5qZHZ6YWgaER0
fWV6dm1hbHZ7emh2fmB9YXZobHp2GxwfdmpranZ6YWg
fXB5bHZ7en12en17bGhkCVpdW0xIRGBNCRQUCRk
fWV6dm1hbHZ7emh2fmB9YXZqaGRsZWVgaHYbHB92amtqdnphaA
Y3pmZwlPRltLQE1aCWdIZwlIR00JQEdPQEdAXUBMWhMJ
eXtmfWZqZmV2bHt7ZnsTCX1weWx2YWxobWx7eglaXVtMSERgTQkUFAkZ
b3toZGx2emBzbHZse3tmewlFTEdOXUEJFwkMTRMJDE0
UgtAR1pdW1xKXQsTGBAQBQtNTFpKCxMLXkBFRQsFC01IXUgLE0dcRUVU
eFxMW1AJREhZCUpGR11IQEdMTQlHXEVFCV9IRVxMCU9GWwlCTFAJDg
akZcRU0JR0ZdCUVGSkhdTAl7TFpZRkdaTGtGTVAJSkZHX0xbXUxbCU9GWwk
bFFZTEpdTE0JbGdtdmZrY2xqfQlLXF0JXkhaCQ
Y3pmZwlNRkpcRExHXQleSFoJR0ZdCU9cRUVQCUpGR1pcRExNBw
YGdtZn52fHltaH1sCUVMR05dQQkIFB0TCQxa
eXtmfWZqZmV2bHt7ZnsJW0xaWUZHWkwJREhFT0ZbRExNEwlEQFFMTQlKSFpMCUdIREwTCQ
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2GBsRdmpranZ6YWg
RltOB0xKRUBZWkwHQ0xdXVAHSEVZRwdoZXlnDXlbRl9ATUxb
IwkJeUBHR0xNCUpMW11AT0BKSF1MWglPRlsJ
bFFZTEpdTE0JSAlaXVtAR04JS1xdCV5IWgk
fXB5bHZ7en12en17bGhkCUVMR05dQRMJDE0JCBQJHQ
a1tGQkxHCVpQWl1MRAlLTEFIX0BGXFsJT0ZbCU1HWglFRkZCXFkJRk8J
f0xbWkBGR0xNeUhbSkxFCUxHSkZcR11MW0xNCWpFSFpaZ0Zdb0ZcR01sUUpMWV1ARkc
akxbXUBPQEpIXUwJWUBHR0BHTglbTFhcQFtMWglxHBkQCUpMW11AT0BKSF1MWg
aF0JRUxIWl0JRkdMCUpAWUFMWwlaXEBdTAlAWglbTFhcQFtMTQ
fEdMUVlMSl1MTQlKQUhbCQwKGR1RCUhdCQxNCUBHCQxaCV9IRVxMEwkMWg
SEdNW0ZATQdaTEpcW0BdUAdnTF1eRltCekxKXFtAXVB5RkVASlA
AXZNSF1ICWVgYmwJDgwHQkxQDglmewl2TUhdSAllYGJsCQ4MB01MWw4A
SEdNW0ZATQdZW0ZfQE1MWwd9TEVMWUFGR1AHaGp9YGZndmphaGdubHZtbG9ofGV9
fWV6dm1hbHZ7emh2fmB9YXZobHp2GxwfdmpranZ6YWgbHB8
aFxdRn1IWkIJW1xHR0BHTgkHBwcJQFp7TE5AWl1MW0xNCQ
CV5IWglFTEhCTE0HCW1ATQlQRlwJT0ZbTkxdCV1GCUpFRlpMCUgJW0xaWUZHWkwJS0ZNUBY
aF1dTERZXUxNCV1GCU1MWkxbQEhFQFNMCUgJQ0hfSAdFSEdOB2pFSFpaBwlvRltORl0JXUYJW0xOQFpdTFsJSAldUFlMCUhNSFldTFsW
fWV6dm1hdkhHRkd2fmB9YXZobHp2GBsRdmpranZ6YWg
SEdNW0ZATQdZTFtEQFpaQEZHB357YH1sdmpmZ31oan16
SEdNW0ZATQdZTFtEQFpaQEZHB3tsaG12amZnfWhqfXo
eXtmfWZqZmV2bHt7ZnsJemx9fWBnbnp2ZGhxdm97aGRsdnpgc2wTCQxa
e0xKTEBfTE0JYX19eXZ5e2ZxcHZofH1hCQEdGR4ACUpGTUwJXkFARUwJR0ZdCVxaQEdOCVlbRlFQ
akhHR0ZdCVpdW0xIRAlICVtMWFxMWl0JS0ZNUAleQF1BRlxdCUpBXEdCTE0JTEdKRk1AR04JRlsJSAlCR0ZeRwlKRkddTEddCUVMR05dQQg
f0xbWkBGR0xNeUhbSkxFCUxHSkZcR11MW0xNCWBFRUxOSEVoSkpMWlpsUUpMWV1ARkc
fWV6dmxqbWF2bGptemh2fmB9YXZobHp2GxwfdmpranZ6YWg
RltOB0xKRUBZWkwHQ0xdXVAHSEVZRwdoZXlnDXpMW19MW3lbRl9ATUxb
fWV6dm1hbHZ7emh2fmB9YXZobHp2Gxwfdm5qZHZ6YWgaER0
XUxFTFlBRkdQdlpcS1pKW0BZXUBGR3ZaTFtfQEpM
akFARU0JTVtIXkxbCUFIWglIS1pGRVxdTAlOW0hfQF1QCQ
bFFZTEpdTE0Ja2xuYGd2ZmtjbGp9CUtcXQleSFoJ
fXB5bHZ6bH19YGdueglaXVtMSERgTQkIFAkZ
fWV6dm1hbHZtenp2fmB9YXZqaGRsZWVgaHYYGxF2amtqdnphaA
e0xaWUZHWkwJRFxaXQlLTAlZSFtIRExdTFtAU0xNCUhaCXtMWllGR1pMFW9GRhcJRlsJe0xaWUZHWkwVFglMUV1MR01aCW9GRhc
fXB5bHZqZmd9YGd8aH1gZmcJWl1bTEhEYE0JSkFIR05MTQ
SEdNW0ZATQdAR11MR10HSEpdQEZHB2tmZn12amZkeWVsfWxt
f0xbWkBGR0xNeUhbSkxFCUxHSkZcR11MW0xNCWBHX0ZKSF1ARkd9SFtOTF1sUUpMWV1ARkc
fWV6dm1hbHZtenp2fmB9YXZobHp2GBsRdm5qZHZ6YWgbHB8
W0xERl1MRVAEQEdAXUBIXUxNCVpdW0xIRFoJWkFGXEVNCUFIX0wJQUxITUxbWg
fHtlCVhcTFtQCVpdW0BHTgkLDFoLCURcWl0JR0ZdCUFIX0wJW0xZRUhKTAlLRUZKQgcJb0ZbCU1QR0hEQEoJWFxMW1AJWUhbSERMXUxbWglcWkwJaXhcTFtQBw
RltOB0hZSEpBTAdBSFtERkdQB1FHTF0HWVtGX0BNTFsHQ1paTAd6emV5SFtIRExdTFtaYERZRQ
fWV6dm1hdkhHRkd2fmB9YXZobHp2GxwfdmpranZ6YWgbHB8
aFxNQEZoXV1bQEtcXUxaakZEWUhdEwlIXE1ARkhdXVtAS1xdTFoU
Y1pGR35bQF1MWwlAWglKRUZaTE0H
eUVIUExbZFxaQEp6TFtfQEpMBAQEBBdGR2pbTEhdTAXMuYbMo4HPtaTMo4g
aFpaTFtdQEZHbFtbRlsJAW56ZmcJGwcRBx8AEwk
fEdaSF1AWk9ASEtFTAl7TFhcTFpdCQFGR0VQBEBPBEpISkFMTQA
T0BHTX1bXFpdaEdKQUZba1BgWlpcTFtoR016QE5HSF1cW0w
fWV6dmxqbWFsdmxqbXpodn5gfWF2aGx6dhscH3Zqa2p2emFo
fWV6dmxqbWF2bGptemh2fmB9YXZnfGVldnphaA
enpldm1hbHZ7emh2fmB9YXYabWx6dmxtbHZqa2p2emFo
Bwl7TE5AWl1MW0BHTglIRwlgR1pdSEdKTGpbTEhdRlsJXkBdQQluWkZHCU9GWwldQUBaCV1QWUwJREhQCU9AUQldQUBaCVlbRktFTEQH
fWV6dmxqbWF2e3podn5gfWF2Gm1senZsbWx2amtqdnphaA
fWV6dm1hbHZtenp2fmB9YXZobHp2GxwfdmpranZ6YWgbHB8
bFFZTEpdTE0JSAlqRUhaWgUJeUhbSERMXUxbQFNMTX1QWUwFCUZbCW5MR0xbQEpoW1tIUH1QWUwFCUtcXQkV
eXtmfWZqZmV2bHt7ZnsTCX1weWx2eXx6YXZ5e2ZkYHpsCVpdW0xIRGBNCRQUCRk
CU1GTFoJR0ZdCUFIX0wJSAlfSEVATQlFSFBGXF12TltIX0BdUAkECURcWl0JS0wJbltIX0BdUAdlbG99BQk
enpldm1hdkhHRkd2fmB9YXYabWx6dmxtbHZqa2p2emFo
fWV6dmxqbWF2e3podn5gfWF2aGx6dhscH3Zqa2p2emFoGhEd
fWV6dm1hdkhHRkd2fmB9YXZobHp2GBsRdmpranZ6YWgbHB8
bFFZTEpdTE0JSAlKRkdHTEpdQEZHCUFMSE1MWwlLXF0JXkhaCQxa
fWV6dmxqbWF2e3podn5gfWF2aGx6dhgbEXZqa2p2emFoGxwf
SEdNW0ZATQdaTF1dQEdOWgdoeXl2Z2Z9YG9gamh9YGZndnpsfX1gZ256
fWV6dmxqbWF2e3podn5gfWF2aGx6dhgbEXZuamR2emFoGxwf
fEdIS0VMCV1GCUBHX0ZCTAlHRgRIW05aCUpGR1pdW1xKXUZbCU9GWwk
fWV6dm1hbHZtenp2fmB9YXZobHp2GBsRdmpranZ6YWgbHB8
fWV6dm1hdkhHRkd2fmB9YXZobHp2GxwfdmpranZ6YWg
FQQECWxnbQlhfX15CQFMR0pGTUxNCUtGTVAJRkRAXV1MTQA
fWV6dmxqbWFsdmxqbXpodn5gfWF2aGx6dhscH3ZuamR2emFoGhEd
eVtGUVAHSE1NW0xaWgEACUBaCUdGXQlIRwlgR0xdekZKQkxdaE1NW0xaWhMJ
aF0JRUxIWl0JRkdMCX1leglfTFtaQEZHCUBaCVtMWFxAW0xN

信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
swefk/wepgfoversd/frdlv/AAutilsZZ/AALogUtilsZZ.java, line(s) 21,24,41,44,49,63,66,81,115,118,126,129,137,140
swefk/wepgfoversd/frdlv/AAutilsZZ/AASMSUtilsZZ.java, line(s) 80,81,97,98,99,100
swefk/wepgfoversd/frdlv/AAutilsZZ/AAStatusBarUtilsZZ.java, line(s) 115,122
top/zibin/luban/Luban.java, line(s) 250,249

安全 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
d/w.java, line(s) 207,206,215,205,205

安全 此应用程序没有隐私跟踪程序

此应用程序不包括任何用户或设备跟踪器。在静态分析期间没有找到任何跟踪器。

安全评分: ( 모바일『부❀고』 8.5.2)