导航菜单

应用安全检测报告

应用安全检测报告,支持文件搜索、内容检索和AI代码分析

移动应用安全检测报告

应用图标

Perplexity v2.48.1

Android APK 7bb973f3...
52
安全评分

安全基线评分

52/100

低风险

综合风险等级

风险等级评定
  1. A
  2. B
  3. C
  4. F

应用存在一定安全风险,建议优化

漏洞与安全项分布

1 高危
29 中危
3 信息
2 安全

隐私风险评估

2
第三方跟踪器

中等隐私风险
检测到少量第三方跟踪器


检测结果分布

高危安全漏洞 1
中危安全漏洞 29
安全提示信息 3
已通过安全项 2
重点安全关注 0

高危安全漏洞 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。

应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
lg/e.java, line(s) 55,55

中危安全漏洞 Activity (ai.perplexity.app.android.ui.common.TrampolineActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.spotify.sdk.android.auth.LoginActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (ai.perplexity.app.android.assistant.AssistantService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_VOICE_INTERACTION [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity (ai.perplexity.app.android.assistant.AssistantActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.stripe.android.link.LinkRedirectHandlerActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.stripe.android.payments.StripeBrowserProxyReturnActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Broadcast Receiver (ai.perplexity.app.android.common.util.DownloadCompletedReceiver) 未受保护。

[android:exported=true]
检测到  Broadcast Receiver 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.stripe.android.financialconnections.lite.FinancialConnectionsSheetLiteRedirectActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.google.android.gms.auth.api.signin.RevocationBoundService) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.gms.auth.api.signin.permission.REVOCATION_NOTIFICATION [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity 设置了 TaskAffinity 属性

(androidx.glance.appwidget.action.InvisibleActionTrampolineActivity)
设置 taskAffinity 后,其他应用可读取发送至该 Activity 的 Intent。为防止敏感信息泄露,建议保持默认 affinity(包名)。

中危安全漏洞 Service (androidx.glance.appwidget.GlanceRemoteViewsService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_REMOTEVIEWS [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity (androidx.compose.ui.tooling.PreviewActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (androidx.work.impl.background.systemjob.SystemJobService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_JOB_SERVICE [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (androidx.work.impl.diagnostics.DiagnosticsReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 高优先级 Intent(2147483647) - {1} 个命中

[android:priority]
通过设置较高的 Intent 优先级,应用可覆盖其他请求,可能导致安全风险。

中危安全漏洞 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
Be/g.java, line(s) 7
Bf/d.java, line(s) 9
Dn/C0725g.java, line(s) 17
Dn/j.java, line(s) 11
Ef/w.java, line(s) 11
Fn/C0821y.java, line(s) 3
Fn/C3662y.java, line(s) 3
Gf/f.java, line(s) 5
Gf/g.java, line(s) 12
Hf/c.java, line(s) 29
Pm/I.java, line(s) 8
Qa/C0741c.java, line(s) 31
Qa/C1238c.java, line(s) 50
Re/AbstractC0695N.java, line(s) 8
Re/AbstractC6091N.java, line(s) 10
Re/C0709k.java, line(s) 9
Re/C6097c.java, line(s) 8
Re/C6105k.java, line(s) 9
U7/g.java, line(s) 21
V5/d.java, line(s) 7
bd/v.java, line(s) 7
cf/d.java, line(s) 7
fe/a.java, line(s) 12
g8/C2458y.java, line(s) 40
g8/F.java, line(s) 30
h7/i.java, line(s) 16
h8/f.java, line(s) 7
jd/E1.java, line(s) 34
n8/Y.java, line(s) 4
we/C0816b.java, line(s) 8
we/C7051b.java, line(s) 8

中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
Ab/C1294p.java, line(s) 85
Ab/C2048p.java, line(s) 87
Ab/x.java, line(s) 99
B1/b.java, line(s) 32
B3/C1463b.java, line(s) 33
B3/f.java, line(s) 143
N0/f.java, line(s) 65
Oj/C1018d.java, line(s) 53
P5/C3702H.java, line(s) 33
Pj/C5860e.java, line(s) 45
Ri/C0430o.java, line(s) 75
Ri/C0435p0.java, line(s) 50
Ri/C1312o.java, line(s) 83
Ri/C1317p0.java, line(s) 57
Ri/M.java, line(s) 50
Ri/N1.java, line(s) 45
Ri/P.java, line(s) 60
Ri/Q.java, line(s) 61
S3/C3993l.java, line(s) 41
S3/C6326l.java, line(s) 41
T5/C4117e0.java, line(s) 25
T5/C6536e0.java, line(s) 25
Tj/f.java, line(s) 31
V1/C1039v.java, line(s) 391
X1/f.java, line(s) 26
Xj/C1806g.java, line(s) 42
Xj/C1813n.java, line(s) 67
Xj/C7314g.java, line(s) 44
Z/d.java, line(s) 57
bk/C0647a.java, line(s) 44
bk/C2356a.java, line(s) 47
com/mapbox/maps/plugin/animation/MapAnimationOwnerRegistry.java, line(s) 7
com/mapbox/maps/plugin/annotation/generated/CircleAnnotation.java, line(s) 20
com/mapbox/maps/plugin/annotation/generated/CircleAnnotationOptions.java, line(s) 26
com/mapbox/maps/plugin/annotation/generated/PointAnnotation.java, line(s) 36
com/mapbox/maps/plugin/annotation/generated/PointAnnotationOptions.java, line(s) 45
com/mapbox/maps/plugin/annotation/generated/PolygonAnnotation.java, line(s) 29
com/mapbox/maps/plugin/annotation/generated/PolygonAnnotationOptions.java, line(s) 28
com/mapbox/maps/plugin/annotation/generated/PolylineAnnotation.java, line(s) 32
com/mapbox/maps/plugin/annotation/generated/PolylineAnnotationOptions.java, line(s) 35
com/revenuecat/purchases/amazon/AmazonBillingKt.java, line(s) 7
com/revenuecat/purchases/amazon/AmazonCacheKt.java, line(s) 7
com/revenuecat/purchases/common/BackendKt.java, line(s) 15,14
com/revenuecat/purchases/common/caching/DeviceCache.java, line(s) 111,40,41,42
com/revenuecat/purchases/common/diagnostics/DiagnosticsHelper.java, line(s) 14
com/revenuecat/purchases/common/diagnostics/DiagnosticsTracker.java, line(s) 39,48,52,55,58,61,64,67,70,73,76,82,85,94,91,97,100,103,109,106,112,115,118,121
com/revenuecat/purchases/common/offlineentitlements/ProductEntitlementMapping.java, line(s) 22,25,26,27
com/revenuecat/purchases/common/verification/DefaultSignatureVerifier.java, line(s) 11
com/revenuecat/purchases/common/verification/Signature.java, line(s) 206
com/revenuecat/purchases/strings/ConfigureStrings.java, line(s) 19
com/revenuecat/purchases/subscriberattributes/SubscriberAttributeKt.java, line(s) 10
d8/C3056a.java, line(s) 132
l0/C3222y0.java, line(s) 262
oi/C1205U.java, line(s) 113
p2/d.java, line(s) 85
rk/C1456h.java, line(s) 76
rk/C6217h.java, line(s) 80
sj/n.java, line(s) 69
u0/c.java, line(s) 126
u3/C6750q0.java, line(s) 49
vj/h.java, line(s) 89
vj/i.java, line(s) 88,88
w9/d.java, line(s) 34
wj/C1750u0.java, line(s) 43
wj/C7134u0.java, line(s) 46
y1/u.java, line(s) 33

中危安全漏洞 IP地址泄露

IP地址泄露


Files:
com/github/mikephil/charting/BuildConfig.java, line(s) 7

中危安全漏洞 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
Ae/j.java, line(s) 45
jd/E1.java, line(s) 146

中危安全漏洞 应用程序创建临时文件。敏感信息永远不应该被写进临时文件

应用程序创建临时文件。敏感信息永远不应该被写进临时文件


Files:
G3/Y.java, line(s) 901,910
Jk/C0942A.java, line(s) 173
Jk/C4530A.java, line(s) 182
La/C3268D.java, line(s) 46
La/C4999D.java, line(s) 55
O/C5339g.java, line(s) 52

中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
Hf/h.java, line(s) 7,36
N3/RunnableC0928f.java, line(s) 7,261
Uc/i.java, line(s) 5,6,76
g8/C2452s.java, line(s) 12,203,215
h8/C3878c.java, line(s) 4,85
i4/C2708g.java, line(s) 7,99,120
i4/C4132g.java, line(s) 11,129,150
jd/C0568m.java, line(s) 5,6,877,1127,1152
jd/C4449m.java, line(s) 5,6,694,747,2114,2376,2408,2487,2512
nh/C1149C.java, line(s) 3,4,10
nh/C5298C.java, line(s) 3,4,10

中危安全漏洞 不安全的Web视图实现。可能存在WebView任意代码执行漏洞

不安全的Web视图实现。可能存在WebView任意代码执行漏洞
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5

Files:
C0/C1499b.java, line(s) 33,26
C0/C2386b.java, line(s) 34,27
I0/C2597c.java, line(s) 53,45
I0/C4021c.java, line(s) 58,50
Q/g.java, line(s) 51,45

中危安全漏洞 SHA-1是已知存在哈希冲突的弱哈希

SHA-1是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
Lf/C0623b.java, line(s) 40
Lf/C5032b.java, line(s) 62
Nc/b.java, line(s) 54
jg/e.java, line(s) 51,51
l0/C4897i0.java, line(s) 215,224

中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
bin/mt/signature/KillerApplication.java, line(s) 77

中危安全漏洞 Firebase远程配置已启用

Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/60244564555/namespaces/firebase:fetch?key=AIzaSyB9nYn5veldbrZeqREJGAjJC464f96FHS8 ) 已启用。请确保这些配置不包含敏感信息。响应内容如下所示:

{
    "entries": {
        "available_ai_models": "[{\"id\":\"pplx_default\",\"backend_name\":\"turbo\",\"display_name\":\"Default\",\"description\":\"Optimized for fast search by Perplexity\",\"icon_name\":\"appIcon\",\"is_pro_required\":false},{\"id\":\"pplx_experimental\",\"backend_name\":\"experimental\",\"display_name\":\"Sonar Large 32K\",\"description\":\"Advanced model trained by Perplexity based on LLaMa 3 70B\",\"icon_name\":\"appIcon\",\"is_pro_required\":true},{\"id\":\"gpt4_o\",\"backend_name\":\"gpt4o\",\"display_name\":\"GPT-4o\",\"description\":\"Latest advanced model by OpenAI\",\"icon_name\":\"pro-filled\",\"is_pro_required\":true},{\"id\":\"gpt4_turbo\",\"backend_name\":\"gpt4\",\"display_name\":\"GPT-4 Turbo\",\"description\":\"Advanced model by OpenAI\",\"icon_name\":\"pro-filled\",\"is_pro_required\":true},{\"id\":\"claude3_sonnet\",\"backend_name\":\"claude2\",\"display_name\":\"Claude 3 Sonnet\",\"description\":\"Latest fast model by Anthropic\",\"icon_name\":\"pro-filled\",\"is_pro_required\":true},{\"id\":\"claude3_opus\",\"backend_name\":\"claude3opus\",\"display_name\":\"Claude 3 Opus\",\"description\":\"Latest advanced model by Anthropic\",\"icon_name\":\"pro-filled\",\"is_pro_required\":true}]",
        "latest_app_version": "2.15.0",
        "min_app_version": ""
    },
    "state": "UPDATE",
    "templateVersion": "13"
}

中危安全漏洞 应用程序包含隐私跟踪程序

此应用程序有多个2隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。

中危安全漏洞 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
"username" : "brugernavn"
"eppo_access_token" : "KOzI1R0qzMMmVmXw5YwbjVJkke1cBTCmmyoXvm-URqw"
"singular_key" : "perplexity_ai_039eb8fb"
"privacy_secret_title" : "Secret"
"singular_secret" : "1e0179ca95965b57a3e91c1cf3049b64"
"username_camelCase" : "NombreDeUsuario"
"collection_private" : "Privado"
"username_camelCase" : "Brukarnamn"
"assistant_keyboard_voice_input_content_description" : "Spracheingabe"
"collection_private" : "Privato"
"google_app_id" : "1:60244564555:android:377887be686de7335a0bce"
"username" : "gebruikersnaam"
"collection_private" : "Yksityinen"
"collection_private" : "Prywatne"
"page_key_features" : "Hauptmerkmale"
"privacy_secret_title" : "Segreto"
"assistant_keyboard_send_content_description" : "Send"
"assistant_keyboard_voice_input_content_description" : "Stemmeinput"
"com.google.firebase.crashlytics.mapping_file_id" : "3c7b321e52a74533af50a937f39fcd70"
"assistant_keyboard_send_content_description" : "Invia"
"assistant_keyboard_send_content_description" : "Verzenden"
"username" : "brukernavn"
"username" : "brukarnamn"
"google_api_key" : "AIzaSyB9nYn5veldbrZeqREJGAjJC464f96FHS8"
"assistant_keyboard_send_content_description" : "Kirim"
"username_camelCase" : "Brukernavn"
"privacy_secret_title" : "Secreto"
"assistant_keyboard_voice_input_content_description" : "Talegjenkjenning"
"privacy_secret_title" : "Titkos"
"assistant_keyboard_voice_input_content_description" : "Spraakinvoer"
"collection_private" : "Privatno"
"assistant_keyboard_send_content_description" : "Skicka"
"assistant_keyboard_voice_input_content_description" : "Taleinngang"
"username_camelCase" : "Username"
"collection_private" : "Private"
"privacy_secret_title" : "Tajna"
"privacy_secret_title" : "Hemmelig"
"assistant_keyboard_send_content_description" : "Odeslat"
"assistant_keyboard_send_content_description" : "Enviar"
"collection_private" : "Privat"
"username" : "Benutzername"
"username_camelCase" : "Usuario"
"privacy_secret_title" : "Rahasia"
"username_camelCase" : "Gebruikersnaam"
"privacy_secret_title" : "Segredo"
"google_auth_backend_client_id" : "496644496882-0jqk7209gqhfvaktnpf67l5h38a40cvl.apps.googleusercontent.com"
"assistant_keyboard_voice_input_content_description" : "Hangbemenet"
"assistant_keyboard_send_content_description" : "Trimite"
"username_camelCase" : "Brugernavn"
"privacy_secret_title" : "Geheim"
"username_camelCase" : "Benutzername"
"collection_private" : "Pribadi"
"privacy_secret_title" : "Hemmeleg"
"privacy_secret_title" : "Sekret"
"page_key_features" : "Nyckelfunktioner"
"privacy_secret_title" : "Hemlig"
"username" : "username"
"assistant_keyboard_send_content_description" : "Senden"
"mapbox_access_token" : "pk.eyJ1Ijoiam9obm55cHBseCIsImEiOiJjbHJxZXJyb20wMjI3MnJueGxyNDRnZWpsIn0.07Px_xVewsxrvB_wprIAXw"
"places_api_key" : "AIzaSyAY7sq57J4nip7mTq1b2mF7h4QbTPBgZs0"
"privacy_secret_title" : "Salainen"
"assistant_keyboard_send_content_description" : "Envoyer"
"google_crash_reporting_api_key" : "AIzaSyB9nYn5veldbrZeqREJGAjJC464f96FHS8"
88df4d670ed5e01fc7b3eff13b63258628ff5a00
nEDAOBgNVBAsTB0FuZHJvaWQxEDAOBgNVBAMTB0FuZHJvaWQwggIiMA0GCSqGSIb3DQEBAQUAA4IC
32670510020758816978083085130507043184471273380659243275938904335757337482424
f00846db-e258-4455-9e9f-74b12cfbf06d
4b3d76a2de89033ea830f476a1f815692938e33b
6ba7b810-9dad-11d1-80b4-00c04fd430c8
470fa2b4ae81cd56ecbcda9735803434cec591fa
6ba7b814-9dad-11d1-80b4-00c04fd430c8
n67zPmvBLkqImCqZ3DqXPUVMlHhX8PfpHDoXDEQvM0bp/b4XXXfpTbscJNA2ClXGDhluo0eMcsFla
26247035095799689268623156744566981891852923491109213387815615900925518854738050089022388053975719786650872476732087
nDwAwggIKAoICAQDr9gxzLxytBZXfXxxk5e5HNdgXcbZaUYA3ZGPQDo/nIsInKIRTt9gjdtw2thba
80abdd17dcc4cb3a33815d354355bf87c9378624
27580193559959705877849011840389048093056905856361568521428707301988689241309860865136260764883745107765439761230575
55066263022277343669578718895168534326250603453777594175500187360389116729240
39402006196394479212279040100143613805079739270465446667946905279627659399113263569398956308152294913554433653942643
nqqchaK1IGbbELZty2hB/nU2y13TZ2gJVrNZwHgc2LKjsNH7bE3EY4yHE8q2khId09NpSeQi+cucK
3757180025770020463545507224491183603594455134769762486694567779615544477440556316691234405012945539562144444537289428522585666729196580810124344277578376784
36134250956749795798585127919587881956611106672985015071877198253568414405109
41058363725152142129326129780047268409114441015993725554835256314039467401291
n7AoQRUopbe7Vm95qg3Bw5YmlJMZKnRA0GPmn5LgIpivKvHHIDh6DUhiEeccb68tdkgtOmEsZ5a15
6ba7b812-9dad-11d1-80b4-00c04fd430c8
258EAFA5-E914-47DA-95CA-C5AB0DC85B11
d834ae340d1e854c5f4092722f9788216d9221e5
1093849038073734274511112390766805569936207598951683748994586394495953116150735016013708737573759623248592132296706313309438452531591012912142327488478985984
115792089210356248762697446949407573529996955224135760342422259061068512044369
21570adb-7aa3-4cd4-8b41-39c37280decb
0130fdd1-4017-43ac-91ae-59ace446130f
nM71MH1zdM7cJ6LB5c3QPLQFGuDFYTLeefnVTBgHRfIWZXTCKtdjqgTT5Hsf94rphqHxrolcL5y/d
bb392ec0-8d4d-11e0-a896-0002a5d5c51b
115792089237316195423570985008687907852837564279074904382605163141518161494337
nWbr041NFvKDfyL9gKPMldLin5yQagVlncyjCStvsCuQUgopDR4gNCuNsnEkJUf+l8aDJmOOuLeoH
nA1UEBhMCVVMxEzARBgNVBAgTCkNhbGlmb3JuaWExFjAUBgNVBAcTDU1vdW50YWluIFZpZXcxFDAS
7f43e64d-7d7a-4fed-8a85-f66789fcabf3
nf5tNrX9IUl8KYaMMWiOSXi3tQqo0GRE+ERm8farHdu45V6+vsQCInIWqGIT63WTitad3esnhneRX
nBgNVBAoTC0dvb2dsZSBJbmMuMRAwDgYDVQQLEwdBbmRyb2lkMRAwDgYDVQQDEwdBbmRyb2lkMCAX
c69c15fd-559e-4714-b82c-481a89b82a94
115792089210356248762697446949407573530086143415290314195533631308867097853951
6864797660130609714981900799081393217269435300143305409394463459185543183397655394245057746333217197532963996371363321113864768612440380340372808892707005449
115792089210356248762697446949407573530086143415290314195533631308867097853948
e46915e3-9d25-4f85-9e43-e8a9d834729f
39402006196394479212279040100143613805079739270465446667948293404245721771496870329047266088258938001861606973112316
2661740802050217063228768716723360960729859168756973147706671368418802944996427808491545080627771902352094241225065558662157113545570916814161637315895999846
c5f5d38e-979c-467a-a383-3842c655169b
9be812cb-6120-41b7-bc9e-993200db6cfc
6864797660130609714981900799081393217269435300143305409394463459185543183397656052122559640661454554977296311391480858037121987999716643812574028291115057151
nQ2FsaWZvcm5pYTEWMBQGA1UEBxMNTW91bnRhaW4gVmlldzEUMBIGA1UEChMLR29vZ2xlIEluYy4x
39402006196394479212279040100143613805079739270465446667948293404245721771496870329047266088258938001861606973112319
MIIFiDCCA3CgAwIBAgIUBASoNuYvIVLCnmnH/7xr71y8THswDQYJKoZIhvcNAQELBQAwdDELMAkG
deca87e736574c5c83c07314051fd93a
nwCzTUIo6lD6ulQIDAQABoxAwDjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4ICAQA3EDWT
6ba7b811-9dad-11d1-80b4-00c04fd430c8
nYrPCNflwXvrIJWq35e8v3eS1yK6KyFXCoM5dAlvWcobnjTwkZktJt9He/hhhA88yDXwwEI85sL7b
86254750241babac4b8d52996a675549
npolFRWhFfWJxILfjLaPegmej9imlkK1XnzjG61uAFEtfI+GWelqVbPkA6sBZnYxunmBYvLA+MNe6
npxNfZfCuTAc8mn466oCVAMKOjoI23MhK7WWdjTb99Ow3bsQ4JqYVT7C3z6paLwT6qoIdKw==
25a9b2d2745c098361edaa3b87936dc29a28e7f1
1cbedd9e7345f64649bad2b493a20d9eea955352
8325710961489029985546751289520108179287853048861315594709205902480503199884419224438643760392947333078086511627871
dcb428fea25c40e7b99f81ae5981ee6a
UC1upXWg5QVmyOSwozp755xLqquBKjjU+di6U8QhMlM=
48439561293906451759052585252797914202762949526041747995844080717082404635286
nqJPGv/xE2QkDTHN3jt2sAJltswIziQun1yIo67DICkzScOFHyXWX2r3YWqeExYa1PPFaombNZ0aq
115792089237316195423570985008687907853269984665640564039457584007908834671663
c06c8400-8e06-11e0-9cb6-0002a5d5c51b
6864797660130609714981900799081393217269435300143305409394463459185543183397656052122559640661454554977296311391480858037121987999716643812574028291115057148

安全提示信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
A4/c.java, line(s) 103,109,147,157,104,148,110,160
A7/g.java, line(s) 186,192,275,376,454,521,541,555,589,633,692,733,736,820,833,837,849,859,870,877,973,85,228,233,429,610,793,797,801,907,916
Aa/C1272e.java, line(s) 54
Aa/RunnableC2025d.java, line(s) 362,340
Ab/C1287i.java, line(s) 45,46
Ab/C1289k.java, line(s) 16,63
Ab/C2041i.java, line(s) 156,157
Ab/C2043k.java, line(s) 20,67
Ab/y.java, line(s) 49,50
B4/C0009j.java, line(s) 173,373,291,172,369,240
B4/C0035c.java, line(s) 117,217,220,244,247,258,434,442,448,516,649,661,385,386,387,388,389,390,391,392,393,394,395,396,397,398,399,400,401,402,403,173,242,246,257,280,377,433,441,447,487,515,523,542,648,660,281,378,709
B4/C0041i.java, line(s) 537
B4/o.java, line(s) 224,225,217
Be/t.java, line(s) 22,31,30,36,37
C7/c.java, line(s) 26
C8/AbstractC2650a.java, line(s) 104,110,116,122,154,168,174
C8/d.java, line(s) 135
Ca/n.java, line(s) 46
Ce/e.java, line(s) 21
D5/A.java, line(s) 440,772
D5/l.java, line(s) 122,110,129
Eb/C2140b.java, line(s) 75,76
Eb/C2142d.java, line(s) 50,49
Eb/C3352d.java, line(s) 51,50
Eb/z.java, line(s) 60,57
Ec/d.java, line(s) 96
F6/C2224C.java, line(s) 634
F6/C3529s.java, line(s) 2044,1142
F7/AbstractC0266u.java, line(s) 100,109
F7/AbstractC2288b.java, line(s) 116
F7/AbstractC3546b.java, line(s) 117
F7/C0131m.java, line(s) 70
F7/C0138t.java, line(s) 55,96
F7/C0237b0.java, line(s) 63
F7/C0258m.java, line(s) 84,248
F7/C0265t.java, line(s) 56,97
F7/p0.java, line(s) 80
F7/x0.java, line(s) 56
F9/AbstractServiceC2326w.java, line(s) 17
F9/AbstractServiceC3584w.java, line(s) 17
F9/C2298B.java, line(s) 54,75
F9/C2325v.java, line(s) 380,394
F9/C3556B.java, line(s) 54,75
F9/C3562H.java, line(s) 63
F9/C3569g.java, line(s) 85,58
F9/C3572j.java, line(s) 10
F9/C3583v.java, line(s) 401,415
F9/HandlerC3587z.java, line(s) 114,121,130
F9/K.java, line(s) 33,104,175
F9/RunnableC2321q.java, line(s) 49,54,66
F9/RunnableC2322s.java, line(s) 65,126
F9/RunnableC2323t.java, line(s) 50,66
F9/RunnableC2324u.java, line(s) 61
F9/RunnableC3579q.java, line(s) 49,54,66
F9/RunnableC3580s.java, line(s) 67,128
F9/RunnableC3581t.java, line(s) 50,66
F9/RunnableC3582u.java, line(s) 61
F9/b0.java, line(s) 9
F9/f.java, line(s) 56
F9/f0.java, line(s) 68,80,88
Fc/d.java, line(s) 28,27
Fc/f.java, line(s) 45,58,79,44,57,78,75,100,112
Fc/m.java, line(s) 53,52
Fc/n.java, line(s) 29,28,36
Fc/p.java, line(s) 32,39,31,38
Fc/q.java, line(s) 431,430
G3/a0.java, line(s) 1632,1641,1191,1631,1664,1616,1624,1638
G4/c.java, line(s) 1232
G4/g.java, line(s) 983
G7/b.java, line(s) 50
G9/AbstractC2468f.java, line(s) 1144,1151,1143,1150
Gc/AbstractC3825m.java, line(s) 747,819
Gf/a.java, line(s) 55,81,53,78
Gf/e.java, line(s) 112,120,79,111,115,80,116
H4/f.java, line(s) 327,338,4456,4460,4464
H6/c.java, line(s) 249
H9/AbstractC2542t.java, line(s) 776
H9/AbstractC3911t.java, line(s) 896,986
H9/C2532i.java, line(s) 116,127,71,114
H9/C3901i.java, line(s) 123,156,78,121
H9/n.java, line(s) 49,52,55,58
Ha/d.java, line(s) 68,71
Ha/g.java, line(s) 233,232
Hb/AbstractC3936o.java, line(s) 48,51,49,52
Hb/C3921B.java, line(s) 45,44
Hb/C3923b.java, line(s) 62,61,71,85,86
Hb/C3928g.java, line(s) 84,88,92,133,158,165,175,179,182,185,192,195,229,233,81,87,91,132,153,164,174,178,181,184,191,194,228,232
Hb/C3934m.java, line(s) 94,277,442,93,276,359,394,415,441,467,498,602,615,642,651,381,477,520,416
Hb/o.java, line(s) 48,51,49,52
Hb/z.java, line(s) 90
Hc/C0380f.java, line(s) 329,569
Hc/HandlerC0019e.java, line(s) 15
Hc/HandlerC0379e.java, line(s) 15
Hc/I.java, line(s) 87,91
Hc/J.java, line(s) 22,31
Hc/u.java, line(s) 50
Hc/v.java, line(s) 220,321
Hc/x.java, line(s) 253,252
Hf/b.java, line(s) 61,66,114
Hf/c.java, line(s) 197,201,212,152
Hf/e.java, line(s) 66
Hn/AbstractC0850a.java, line(s) 537
Hn/AbstractC3976a.java, line(s) 2272
Ib/o.java, line(s) 899,906,912
Ic/AbstractC0038e.java, line(s) 287,112,119,125,134,316
Ic/AbstractC0450e.java, line(s) 311,136,143,149,158,340
Ic/C0041h.java, line(s) 64
Ic/F.java, line(s) 35
Ic/H.java, line(s) 36,51
Ic/u.java, line(s) 17
J3/AbstractActivityC0297n.java, line(s) 238,247
J3/AbstractC0302t.java, line(s) 76
J3/AbstractC0533t.java, line(s) 76
J3/C.java, line(s) 63,80,110
J3/D.java, line(s) 212,211
J3/H.java, line(s) 826,828,830,398,489,492
J3/v.java, line(s) 84,92
Je/e.java, line(s) 30
Jk/AbstractC0985l1.java, line(s) 25
Jk/AbstractC4573l1.java, line(s) 26
K9/j.java, line(s) 163
Kf/C0608b.java, line(s) 85
Kf/C4794b.java, line(s) 85,101,109,174
L4/Q0.java, line(s) 128,881
La/C5005d.java, line(s) 451
Lb/A.java, line(s) 42,108,117,122,130,50,111,118,125,131
Lb/C5012a.java, line(s) 44,110,119,124,132,52,113,120,127,133
Le/a.java, line(s) 47,46,51
Lf/C0072p.java, line(s) 21,28
Lf/C0073q.java, line(s) 39,54
Lf/C0623b.java, line(s) 33,44
Lf/C0761q.java, line(s) 44,59
Lf/C5032b.java, line(s) 55,66
Lf/H.java, line(s) 50
Lf/K.java, line(s) 51
Lf/Z.java, line(s) 55,64,54
Lf/c0.java, line(s) 56,68,84,74
Lf/e0.java, line(s) 26,58,76,101,63,89,104
M3/i.java, line(s) 171
M7/C3305j.java, line(s) 61,83,46,65,67,87
M7/C3307l.java, line(s) 18,17
M7/C5106a.java, line(s) 25,28
M7/C5115j.java, line(s) 62,84,47,66,68,88
M7/C5117l.java, line(s) 18,17
Mf/C5151c.java, line(s) 232,237,87,88,223,225
N3/RunnableC0928f.java, line(s) 222,134,163
Nb/C5281b.java, line(s) 36,59,39,60
Nb/b.java, line(s) 35,58,38,59
Nb/f.java, line(s) 53,54
Nb/g.java, line(s) 185,186,197
Nb/i.java, line(s) 41,63,42,64
Nc/b.java, line(s) 88,87,79
Nc/d.java, line(s) 53,60,90,99
Nm/y.java, line(s) 525,797
O3/AbstractC0604c0.java, line(s) 20
O3/AbstractC0947c0.java, line(s) 20
O3/C0612g0.java, line(s) 91,100,191
O3/C0636t.java, line(s) 61
O3/C0955g0.java, line(s) 91,100,191
O3/C0979t.java, line(s) 61
O3/C0983v.java, line(s) 197
O3/C5387c.java, line(s) 123,196
O3/E0.java, line(s) 309,79,84,292
O3/Q0.java, line(s) 33
O8/h.java, line(s) 120,132,134,119,701
Oa/c.java, line(s) 16,26
Od/t.java, line(s) 431,112,424,430
Oe/b.java, line(s) 10,9
Ok/g.java, line(s) 52,46,148,49,60,63,66
Ok/j.java, line(s) 243,179,255,242,266,267,439
P4/AbstractC3694i.java, line(s) 139
P4/AbstractC5740i.java, line(s) 140
P6/o.java, line(s) 61
P7/C3785c.java, line(s) 253
P7/C5831c.java, line(s) 265
P9/n.java, line(s) 106,120
Pe/h.java, line(s) 24
Pe/j.java, line(s) 33,40,41,49
Pe/l.java, line(s) 91,118,296,317,359,379,442,339,415,90,117,139,295,316,329,334,358,374,378,417,431,441,140,330,335,432,87,97,326,365,420
Pe/p.java, line(s) 59,100,69,105,108,110,126,50,58,99,51,64,124
Pe/u.java, line(s) 41,42
Pe/v.java, line(s) 53,52
Qd/g.java, line(s) 96
Qe/d.java, line(s) 30,40,29,39
R4/C3906c.java, line(s) 112
R4/C6014c.java, line(s) 119
R6/g.java, line(s) 51
R6/n.java, line(s) 559,1201,1545,1550,1557,1745,1752,1761,1775,1781,1789,1980,1982,1635,328,645,1323,1337,1478
Rc/d.java, line(s) 49,55,284,309,85,95,114,144,185,279,132,52,135,159,162,180
Re/h.java, line(s) 150,177,85,91,149,176,63,76,114,156,206,237,281
Re/n.java, line(s) 30,58
Re/p.java, line(s) 30
S8/n.java, line(s) 56,87
T6/u.java, line(s) 270
T8/C4189g.java, line(s) 53
T8/C6608g.java, line(s) 53
T8/j.java, line(s) 153,159,165,171
Ua/f.java, line(s) 67
Ua/r.java, line(s) 42,46,8,51
V3/C1076x.java, line(s) 659
V3/C1078z.java, line(s) 269
V3/C1767z.java, line(s) 269
V3/h0.java, line(s) 78
V6/AbstractC1089e.java, line(s) 31
V6/AbstractC1778e.java, line(s) 39,100,103,130
V6/C1087c.java, line(s) 53
V6/C1776c.java, line(s) 53
V6/K.java, line(s) 48,80,86,110,176,186,250,258,45,79,85,109,175,185,249,257,63,89,123,165
V6/U.java, line(s) 30
V6/v.java, line(s) 122,121
Va/c.java, line(s) 174
Vc/e.java, line(s) 117,539,647,857,714
Ve/a.java, line(s) 112
Wa/c.java, line(s) 183,211,180,210
Wf/C0818a.java, line(s) 43,51,59,67,74,82
X3/C4499s.java, line(s) 74
X3/C7208s.java, line(s) 75
Xm/d.java, line(s) 2179
Y6/b.java, line(s) 60,79
Ya/b.java, line(s) 43,56,42,55
Ya/l.java, line(s) 51,126,46,50,54,59,125,47,55,60
Yd/c.java, line(s) 76,98,75,97
Ym/d.java, line(s) 40
Z3/b.java, line(s) 165,164
Z6/C4677a.java, line(s) 134
Z6/C7523a.java, line(s) 134
Z6/f.java, line(s) 67,109,179,243,314
Za/b.java, line(s) 64,95,63,94
Zc/b.java, line(s) 45,53,173,175,71,112,216
Zg/b.java, line(s) 145
Zh/C7554b.java, line(s) 44
Zh/DialogC1861c.java, line(s) 90,98,110,126,47,112,140
Zh/DialogC7555c.java, line(s) 78,86,98,114,52,100,128
a8/b.java, line(s) 157
af/c.java, line(s) 428,288
ai/perplexity/app/android/ui/widget/AppWidget2Receiver.java, line(s) 91
bb/C1492f.java, line(s) 47,131,184,212,46,90,96,103,127,143,149,167,179,186,211,57,94,111,147,168
bb/C2319f.java, line(s) 49,133,186,214,48,92,98,105,129,145,151,169,181,188,213,59,96,113,149,170
bd/d.java, line(s) 42,46
bin/mt/signature/KillerApplication.java, line(s) 116,126,161
bk/P.java, line(s) 25,35
c2/C1552l0.java, line(s) 123
c2/C2439l0.java, line(s) 131
c4/AbstractC1640c.java, line(s) 202,208,203,209
c4/AbstractC2527c.java, line(s) 290,296,291,297
c4/L.java, line(s) 91,118,330
c4/S.java, line(s) 200
cc/C0207a.java, line(s) 50
cc/C2662a.java, line(s) 55
cc/a.java, line(s) 299,317
com/github/mikephil/charting/charts/BarChart.java, line(s) 80
com/github/mikephil/charting/charts/BarLineChartBase.java, line(s) 253,256,564,570,696,737
com/github/mikephil/charting/charts/CombinedChart.java, line(s) 104
com/github/mikephil/charting/charts/PieRadarChartBase.java, line(s) 191
com/github/mikephil/charting/components/AxisBase.java, line(s) 57
com/github/mikephil/charting/data/ChartData.java, line(s) 55
com/github/mikephil/charting/data/CombinedData.java, line(s) 178,199,211
com/github/mikephil/charting/data/LineDataSet.java, line(s) 177,185
com/github/mikephil/charting/data/PieEntry.java, line(s) 26,38
com/github/mikephil/charting/renderer/ScatterChartRenderer.java, line(s) 50
com/github/mikephil/charting/utils/Utils.java, line(s) 65,80,249
com/mapbox/common/AccessTokenInitializer.java, line(s) 36,58,81
com/mapbox/common/BaseMapboxInitializer.java, line(s) 125
com/mapbox/common/CoreInitializer.java, line(s) 127,134,176
com/mapbox/common/LifecycleMonitorAndroid.java, line(s) 262
com/mapbox/common/LifecycleUtils.java, line(s) 87,63
com/mapbox/common/MapboxCommonLogger.java, line(s) 17,23,29,35
com/mapbox/common/MapboxMapsAndroidLogger.java, line(s) 17,23,29,35
com/mapbox/common/Reachability.java, line(s) 74,117,68,77,142,145,154
com/mapbox/common/TelemetrySystemUtils.java, line(s) 100,122
com/mapbox/common/ValueUtilsKt.java, line(s) 88,245
com/mapbox/common/logger/MapboxLogger.java, line(s) 158,182,206,229,253
com/mapbox/common/module/okhttp/NetworkUsageListener.java, line(s) 44
com/mapbox/common/module/provider/MapboxModuleProvider.java, line(s) 159
com/mapbox/maps/FontUtils.java, line(s) 36,49
com/mapbox/maps/extension/style/atmosphere/generated/Atmosphere.java, line(s) 79,80,103,104,201,202,271,272,324,325,366,367,423,424,465,466,535,536,588,589,630,631,687,688,729,730
com/mapbox/maps/extension/style/layers/properties/PropertyValue.java, line(s) 43,49
com/mapbox/maps/extension/style/sources/CustomRasterSource.java, line(s) 92
com/mapbox/maps/extension/style/sources/Source.java, line(s) 136,219
com/mapbox/maps/extension/style/sources/generated/GeoJsonSource.java, line(s) 995,1041,1087,1133,1179,1225,1271,1317,1363,1409,1455,1492,1547,1593
com/mapbox/maps/extension/style/sources/generated/ImageSource.java, line(s) 194,240,291
com/mapbox/maps/extension/style/sources/generated/RasterArraySource.java, line(s) 236,282,328,374,393,500,546,592,643
com/mapbox/maps/extension/style/sources/generated/RasterDemSource.java, line(s) 471,517,563,615,661,707,753,799,851,897,943,989,1035,1086,1132
com/mapbox/maps/extension/style/sources/generated/RasterSource.java, line(s) 471,517,563,609,655,701,747,793,851,897,943,989,1035,1086,1132
com/mapbox/maps/extension/style/terrain/generated/Terrain.java, line(s) 70,71,94,95,184,185,226,227
com/mapbox/maps/extension/style/utils/ColorUtils.java, line(s) 84,96,120
com/mapbox/maps/plugin/locationcomponent/ModelSourceWrapper.java, line(s) 78
com/revenuecat/purchases/common/DefaultLogHandler.java, line(s) 14,22,24,32,39,46
com/spotify/sdk/android/auth/LoginActivity.java, line(s) 64,122,111,116,154
com/stripe/hcaptcha/webview/HCaptchaWebView.java, line(s) 30
db/C3058a.java, line(s) 36,35,61,71,74,78
e9/AbstractC2111p.java, line(s) 430,443,496
e9/AbstractC3321p.java, line(s) 432,445,498
e9/C2123v0.java, line(s) 1034
e9/C3333v0.java, line(s) 548
e9/G0.java, line(s) 195
e9/HandlerC3325r0.java, line(s) 75,82,54
e9/S.java, line(s) 28
e9/W.java, line(s) 580,599
eh/c.java, line(s) 325
f5/C2173J.java, line(s) 572,623,806,571,583,654,584,655
f5/C3431J.java, line(s) 721,772,960,720,732,803,733,804
f5/InputConnectionC2184V.java, line(s) 287
ff/c.java, line(s) 336,428,335,473
g8/C2452s.java, line(s) 97,100,136,137,298,381
h1/C2487e.java, line(s) 89,102,261,85
i4/C2708g.java, line(s) 230,252,228
i4/C4132g.java, line(s) 260,282,258
i4/RunnableC4134i.java, line(s) 231,195,255,269
j4/e.java, line(s) 439
j7/C2905b.java, line(s) 86
j7/C4392o.java, line(s) 30,42,89,138,187,204,230
j7/h0.java, line(s) 77,94,69
j8/RunnableC2932d.java, line(s) 214
j8/RunnableC4406d.java, line(s) 214
jd/C4421b.java, line(s) 190
jd/C4437g0.java, line(s) 188,208
jd/E1.java, line(s) 379,393
jd/P.java, line(s) 180
jd/RunnableC4420a1.java, line(s) 72
jd/U.java, line(s) 58,61
jd/X.java, line(s) 45
lh/X.java, line(s) 328,551,564,579,598
mc/a.java, line(s) 70,85
md/C0636a.java, line(s) 89,96,174,250,262,103,191
me/b.java, line(s) 46,45
n6/C5218A.java, line(s) 258
n6/b.java, line(s) 73
nd/d.java, line(s) 90,124
org/lsposed/hiddenapibypass/HiddenApiBypass.java, line(s) 74,313
p3/C5676h.java, line(s) 128,127
qb/d.java, line(s) 329,23,215,226
qf/d.java, line(s) 21,24
qf/f.java, line(s) 55,54
qf/g.java, line(s) 25,24
qf/j.java, line(s) 50,24,27,39,49,40
qf/m.java, line(s) 140,143,557,567,556,566
qf/n.java, line(s) 30,46
qf/o.java, line(s) 16,32,15,31
qf/t.java, line(s) 21,36,20,35
qf/u.java, line(s) 49,118,48,129,135
qf/w.java, line(s) 21,20
qf/y.java, line(s) 37,41,49,62,79,108,133,87,92,116,36,40,48,61,76,107,132
sf/C0740b.java, line(s) 42,59
sf/C6409b.java, line(s) 44,61
sf/a.java, line(s) 53,60,78,84,97
u9/C4338f.java, line(s) 47,155
u9/C6809f.java, line(s) 48,156
ud/c.java, line(s) 32
uf/b.java, line(s) 40,47,59
v9/C4394a.java, line(s) 61
v9/C6938a.java, line(s) 61
v9/b.java, line(s) 99,105
w9/c.java, line(s) 410,436,398,399
w9/l.java, line(s) 293
wb/G0.java, line(s) 809,841,867,872
wb/u0.java, line(s) 37
wb/v0.java, line(s) 59
wb/x0.java, line(s) 325,913,78,331
we/c.java, line(s) 59,58
x0/C4460b.java, line(s) 61
xb/i0.java, line(s) 442,445,448,460,463,466,478,481,484,496,499,502
xe/b.java, line(s) 29,88,79,28,72,83,87,73,84
xk/d.java, line(s) 96,110,133
y9/C4645l.java, line(s) 117
y9/C7438l.java, line(s) 118

安全提示信息 应用程序可以写入应用程序目录。敏感信息应加密

应用程序可以写入应用程序目录。敏感信息应加密


Files:
M7/C3305j.java, line(s) 37
M7/C5115j.java, line(s) 38

安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
F6/C2248g.java, line(s) 6,29,392
F6/C3506g.java, line(s) 6,29,392

已通过安全项 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
Xm/e.java, line(s) 50,49,48
Xm/h.java, line(s) 91,81,90,98,89,89
Xm/n.java, line(s) 50,49,48,48

已通过安全项 此应用程序可能具有Root检测功能

此应用程序可能具有Root检测功能
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
jd/C4437g0.java, line(s) 162

综合安全基线评分总结

应用图标

Perplexity v2.48.1

Android APK
52
综合安全评分
中风险