导航菜单

应用安全检测报告

应用安全检测报告,支持文件搜索、内容检索和AI代码分析

移动应用安全检测报告

应用图标

泰剧兔 v1.5.7.0

Android APK e42c81f6...
48
安全评分

安全基线评分

48/100

中风险

综合风险等级

风险等级评定
  1. A
  2. B
  3. C
  4. F

应用存在一定安全风险,建议优化

漏洞与安全项分布

2 高危
16 中危
2 信息
1 安全

隐私风险评估

4
第三方跟踪器

中等隐私风险
检测到少量第三方跟踪器


检测结果分布

高危安全漏洞 2
中危安全漏洞 16
安全提示信息 2
已通过安全项 1
重点安全关注 0

高危安全漏洞 该文件是World Writable。任何应用程序都可以写入文件

该文件是World Writable。任何应用程序都可以写入文件
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#testing-local-storage-for-sensitive-data-mstg-storage-1-and-mstg-storage-2

Files:
com/meishu/sdk/core/utils/PackConfigUtil.java, line(s) 254

高危安全漏洞 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。

应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/meishu/sdk/core/loader/AdLoader.java, line(s) 152
com/meishu/sdk/core/loader/AdParallelLoader.java, line(s) 47
com/meishu/sdk/core/utils/EncryptUtil.java, line(s) 60

中危安全漏洞 应用已启用明文网络流量

[android:usesCleartextTraffic=true]
应用允许明文网络流量(如 HTTP、FTP 协议、DownloadManager、MediaPlayer 等)。API 级别 27 及以下默认启用,28 及以上默认禁用。明文流量缺乏机密性、完整性和真实性保护,攻击者可窃听或篡改传输数据。建议关闭明文流量,仅使用加密协议。

中危安全漏洞 Activity (com.bytedance.android.openliveplugin.stub.activity.DouyinAuthorizeActivityProxy) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.bytedance.android.openliveplugin.stub.activity.DouyinAuthorizeActivityLiveProcessProxy) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
N1/AbstractC0325a.java, line(s) 3
N1/AbstractC1055a.java, line(s) 3
N1/C0326b.java, line(s) 3
N1/C1056b.java, line(s) 3
U0/AbstractC0099c.java, line(s) 8
U0/AbstractC0117v.java, line(s) 7
U0/AbstractC0551c.java, line(s) 8
U0/AbstractC0569v.java, line(s) 7
com/czhj/wire/internal/ImmutableList.java, line(s) 8
com/czhj/wire/internal/MutableOnWriteList.java, line(s) 7
com/meishu/sdk/platform/bd/fullscreenvideo/BDFullscreenVideoLoader.java, line(s) 21
com/meishu/sdk/platform/bd/interstitial/BDInterstitialAdLoader.java, line(s) 29
com/meishu/sdk/platform/bd/recycler/BDRecyclerLoader.java, line(s) 22
com/meishu/sdk/platform/bd/reward/BDRewardVideoLoader.java, line(s) 18
com/meishu/sdk/platform/bd/splash/BDSplashAdLoader.java, line(s) 55
com/windmill/sdk/utils/MUtil.java, line(s) 6
com/windmill/sdk/widget/InterstitialBaseView.java, line(s) 40
com/windmill/sdk/widget/SplashBaseView.java, line(s) 24
o1/C0328a.java, line(s) 3
o1/C1062a.java, line(s) 3
u1/a.java, line(s) 11
u1/d.java, line(s) 5

中危安全漏洞 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/meishu/sdk/core/bquery/BQUtility.java, line(s) 91
com/meishu/sdk/core/download/DownloadTask.java, line(s) 159
com/meishu/sdk/core/loader/AdLoader.java, line(s) 154,510
com/meishu/sdk/core/loader/AdParallelLoader.java, line(s) 159
com/meishu/sdk/core/taskcenter/SignUtil.java, line(s) 20
com/meishu/sdk/core/utils/ClickHandler.java, line(s) 114
com/meishu/sdk/core/utils/DownloadInfo.java, line(s) 110
com/meishu/sdk/core/utils/DownloadUtils.java, line(s) 187
com/meishu/sdk/core/utils/EncryptUtil.java, line(s) 97

中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
I1/C0054e0.java, line(s) 56
I1/C0506e0.java, line(s) 59
com/meishu/sdk/activity/MeishuRewardVideoPlayerActivity.java, line(s) 84,85,69,73,74,75,76,77,78,79,80,81
com/meishu/sdk/activity/MeishuWebviewActivity.java, line(s) 27,28,29
com/meishu/sdk/core/loader/cache/CacheEntity.java, line(s) 104
com/meishu/sdk/core/utils/PackConfigUtil.java, line(s) 20
com/meishu/sdk/core/utils/SecurityHelper.java, line(s) 11
com/windmill/sdk/WMConstants.java, line(s) 25
com/windmill/sdk/base/WMBidUtil.java, line(s) 14
com/windmill/sdk/strategy/a.java, line(s) 555
io/sentry/Baggage.java, line(s) 38
io/sentry/SpanDataConvention.java, line(s) 4,5,8,9,15,17,16,20,18
io/sentry/TraceContext.java, line(s) 106
io/sentry/protocol/User.java, line(s) 81
k/g.java, line(s) 65
n/d.java, line(s) 35
n/p.java, line(s) 92
n/x.java, line(s) 78

中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
R/b.java, line(s) 48,49
com/czhj/devicehelper/cnoaid/a.java, line(s) 117,118
com/meishu/sdk/core/bquery/BQUtility.java, line(s) 104
com/meishu/sdk/core/download/DownloadManager.java, line(s) 87
com/meishu/sdk/core/utils/DownloadWorker.java, line(s) 197
com/meishu/sdk/core/utils/RequestUtil.java, line(s) 308,1129
com/ss/android/downloadlib/addownload/h.java, line(s) 230
com/ss/android/downloadlib/g/m.java, line(s) 156,246
io/sentry/android/core/DeviceInfoUtil.java, line(s) 299
o/a.java, line(s) 84,94

中危安全漏洞 应用程序创建临时文件。敏感信息永远不应该被写进临时文件

应用程序创建临时文件。敏感信息永远不应该被写进临时文件


Files:
com/journeyapps/barcodescanner/b.java, line(s) 239
q0/a.java, line(s) 343

中危安全漏洞 此应用程序可能会请求root(超级用户)权限

此应用程序可能会请求root(超级用户)权限
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
io/sentry/android/core/internal/util/RootChecker.java, line(s) 24,24,24,24,24

中危安全漏洞 SHA-1是已知存在哈希冲突的弱哈希

SHA-1是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/czhj/devicehelper/cnoaid/impl/p.java, line(s) 29
com/meishu/sdk/core/oaid/impl/OppoImpl.java, line(s) 45
com/meishu/sdk/core/utils/RequestUtil.java, line(s) 1287
io/sentry/util/StringUtils.java, line(s) 40

中危安全漏洞 IP地址泄露

IP地址泄露


Files:
F/AbstractC0809a.java, line(s) 7
app/video/guoguo/GApplication.java, line(s) 40
com/meishu/sdk/BuildConfig.java, line(s) 8
com/meishu/sdk/core/utils/TestToolUtil.java, line(s) 150
com/ss/android/download/api/constant/BaseConstants.java, line(s) 36
io/sentry/SpotlightIntegration.java, line(s) 107

中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
com/ss/android/downloadlib/d/b.java, line(s) 4,5,17,22
com/windmill/sdk/strategy/m.java, line(s) 4,5,47,63

中危安全漏洞 不安全的Web视图实现。可能存在WebView任意代码执行漏洞

不安全的Web视图实现。可能存在WebView任意代码执行漏洞
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5

Files:
com/meishu/sdk/core/webview/TaskCenterWebActivity.java, line(s) 71,56

中危安全漏洞 应用程序包含隐私跟踪程序

此应用程序有多个4隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。

中危安全漏洞 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
"library_zxingandroidembedded_authorWebsite" : "https://journeyapps.com/"
"library_zxingandroidembedded_author" : "JourneyApps"
5317f4377245bfb8efdc42c45d71bd43
MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBALjMT+wA6DuUbhfoa6y048s5MXW+8F6nq6LsoaZ1cCuRt08KSFhgy0bjwujKVLKymgQRQQaFRHEjavi3Wwo/PocCAwEAAQ==
258EAFA5-E914-47DA-95CA-C5AB0DC85B11
edef8ba9-79d6-4ace-a3c8-27dcd51d21ed
7ddfc43fcd2e4ba0548258a76fe88d49b34588c5
884942f0e6454745814d5042ef23f4a6
c06c8400-8e06-11e0-9cb6-0002a5d5c51b
bb392ec0-8d4d-11e0-a896-0002a5d5c51b

安全提示信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
B/e.java, line(s) 30,29,48,64,49,65
B/f.java, line(s) 13,12
B/k.java, line(s) 91,92
B/l.java, line(s) 153,154,165
B/n.java, line(s) 86,87
C/d.java, line(s) 46,53,65,70,45,52,57,64,69,58
C0/l.java, line(s) 101
D0/a.java, line(s) 76,99,117
D0/c.java, line(s) 23,24,28,33,39,58,61,66,76,94,100,103,118,124,127,129,135,146,149,151,160,163,170,172,174
D0/g.java, line(s) 40,56,75,92,178,44,63,80,96
D0/h.java, line(s) 55,72,295,113,207,237,203,209,251,259
D0/l.java, line(s) 27
D0/n.java, line(s) 27
D0/q.java, line(s) 37,38
E/h.java, line(s) 159,23,523,123
E0/e.java, line(s) 31,69
E0/g.java, line(s) 38,32
F/C0813e.java, line(s) 262,255,252
F/n.java, line(s) 27
G0/D.java, line(s) 67,115,165,232,248,312,325,331,351,356,446,456,71,450
I/C0336a.java, line(s) 269
I/C0841a.java, line(s) 289
J/a.java, line(s) 44,45
J/d.java, line(s) 96,123,95,122
L/b.java, line(s) 41,40
L/j.java, line(s) 73,94,72,93,97,103,110,107,111
L/l.java, line(s) 42,41
M/c.java, line(s) 91,90
M/e.java, line(s) 50,49
P/C0359e.java, line(s) 31,37,65,75,32,66,38,78
P/C1098e.java, line(s) 36,42,70,80,37,71,43,83
P/i.java, line(s) 111,95
Q/ExecutorServiceC0367a.java, line(s) 182,179
Q/ExecutorServiceC1116a.java, line(s) 193,190
R/d.java, line(s) 13
S/C0375c.java, line(s) 16,15
S/C0376d.java, line(s) 48,47
S/C0378f.java, line(s) 134,133
S/C0390r.java, line(s) 85,88
S/C0391s.java, line(s) 34,33
S/C1131c.java, line(s) 16,15
S/C1132d.java, line(s) 49,48
S/C1134f.java, line(s) 139,138
S/C1146r.java, line(s) 91,94
S/C1147s.java, line(s) 35,34
T/d.java, line(s) 80,83
V/C1229c.java, line(s) 61,60,70,84,85
V/f.java, line(s) 175,193,203,206,209,212,215,241,248,323,333,345,357,362,174,192,202,205,208,211,214,240,247,322,332,344,356,361
V/i.java, line(s) 76,75,133,296,309,134,189,297
V/j.java, line(s) 35,41,36,42
V/m.java, line(s) 42,43
V/u.java, line(s) 117,114
Z/C0408a.java, line(s) 61,78,84,91,62,79,85,92
Z/C0410c.java, line(s) 22,23
Z/C1262a.java, line(s) 69,86,92,99,70,87,93,100
Z/C1264c.java, line(s) 22,23
Z/h.java, line(s) 37,40
app/video/guoguo/SplashActivity.java, line(s) 105,178,102
com/cicada/player/utils/Logger.java, line(s) 117,125,121,113,123
com/cloudwebrtc/webrtc/CameraEventsHandler.java, line(s) 21,26,31,36,41,46,51,66
com/cloudwebrtc/webrtc/FlutterRTCVideoRenderer.java, line(s) 91,173,166,170
com/cloudwebrtc/webrtc/FlutterWebRTCPlugin.java, line(s) 118,87
com/cloudwebrtc/webrtc/GetUserMediaImpl.java, line(s) 200,203,214,224,352,355,422,483,699,702,745,769,217,304,377,588,296,350
com/cloudwebrtc/webrtc/MethodCallHandlerImpl.java, line(s) 417,456,465,474,748,753,769,784,1375,1384,1391,1452,1484,1498,1601,1691,1702,1727,788,781
com/cloudwebrtc/webrtc/PeerConnectionObserver.java, line(s) 205,484,496,722,736,808,860,880,888,902,930,954
com/cloudwebrtc/webrtc/audio/AudioUtils.java, line(s) 28,66,123,186,214
com/cloudwebrtc/webrtc/record/MediaRecorderImpl.java, line(s) 36
com/cloudwebrtc/webrtc/record/VideoFileRenderer.java, line(s) 99,104,144,147,157,162,84,89,122,184,208,236
com/cloudwebrtc/webrtc/utils/MediaConstraintsUtils.java, line(s) 60,71
com/cloudwebrtc/webrtc/video/camera/CameraUtils.java, line(s) 143
com/czhj/devicehelper/DeviceHelper.java, line(s) 55,107,111,175
com/czhj/devicehelper/cnoaid/com/qiku/id/QikuIdmanager.java, line(s) 31
com/czhj/devicehelper/cnoaid/g.java, line(s) 21
com/czhj/devicehelper/cnoaid/impl/g.java, line(s) 98
com/czhj/devicehelper/cnoaid/impl/h.java, line(s) 44,68,81,90,105,128,131,180
com/czhj/devicehelper/honor/identifier/a.java, line(s) 46,32,38
com/czhj/devicehelper/honor/identifier/b.java, line(s) 34,36,56,58,77,106,40,62,69,73,83,98,100,102,105,120
com/czhj/devicehelper/msaoaId/a.java, line(s) 54,99,105,125,131,160,181
com/czhj/volley/CacheDispatcher.java, line(s) 85,97,45,181,37,69,169
com/czhj/volley/NetworkDispatcher.java, line(s) 54
com/czhj/volley/Request.java, line(s) 145,150
com/czhj/volley/RequestQueue.java, line(s) 79
com/czhj/volley/VolleyLog.java, line(s) 61,64,95,51,100,119,110,115,123
com/czhj/volley/VolleyThreadFactory.java, line(s) 8
com/czhj/volley/toolbox/BasicNetwork.java, line(s) 102,150,71,145,156,165
com/czhj/volley/toolbox/FileDownloadNetwork.java, line(s) 115,84,137,147
com/czhj/volley/toolbox/FileDownloadRequest.java, line(s) 53
com/czhj/volley/toolbox/HttpHeaderParser.java, line(s) 120
com/czhj/volley/toolbox/ImageRequest.java, line(s) 74
com/github/tgarm/luavm/LuavmPlugin.java, line(s) 30
com/journeyapps/barcodescanner/a.java, line(s) 577,627,118,281,381,444
com/journeyapps/barcodescanner/b.java, line(s) 90,292,245
com/kwai/library/ipneigh/KwaiIpNeigh.java, line(s) 47,50
com/meishu/sdk/core/AdSdk.java, line(s) 50
com/meishu/sdk/core/MAdManager.java, line(s) 23,45
com/meishu/sdk/core/download/DownloadTask.java, line(s) 139
com/meishu/sdk/core/download/InstallManager.java, line(s) 24,28
com/meishu/sdk/core/loader/AdLoader.java, line(s) 625
com/meishu/sdk/core/loader/strategy/TimeFirstStrategy.java, line(s) 70,86
com/meishu/sdk/core/oaid/OAIDLog.java, line(s) 21
com/meishu/sdk/core/taskcenter/PackageUtil.java, line(s) 33
com/meishu/sdk/core/taskcenter/SignUtil.java, line(s) 60
com/meishu/sdk/core/utils/ImageUtil.java, line(s) 26
com/meishu/sdk/core/utils/LogUtil.java, line(s) 11,16,37,28,42,33
com/meishu/sdk/core/utils/MiitHelper.java, line(s) 37,86
com/meishu/sdk/core/view/gif/GifDecoder.java, line(s) 347,505,514
com/meishu/sdk/core/view/gif/GifHeaderParser.java, line(s) 76,104,75,103
com/meishu/sdk/core/webview/TaskCenterJs.java, line(s) 566
com/meishu/sdk/core/webview/TaskCenterWebActivity.java, line(s) 38,44,132
com/meishu/sdk/meishu_ad/splash/SplashSkipView.java, line(s) 105,358
com/meishu/sdk/meishu_ad/view/DownLoadDialogActivity.java, line(s) 86,118
com/meishu/sdk/meishu_ad/view/scaleImage/SubsamplingScaleImageView.java, line(s) 644,209,213,392,396,464,798,803,814,829,1524,1741,2111
com/meishu/sdk/meishu_ad/view/scaleImage/decoder/SkiaPooledImageRegionDecoder.java, line(s) 118
com/meishu/sdk/platform/bd/interstitial/BDInterstitialAdLoader.java, line(s) 70,254
com/meishu/sdk/platform/bd/recycler/BDRecyclerExpressListener.java, line(s) 44,170,187,192,68,85,100
com/meishu/sdk/platform/csjblend/MsCBDrawAd.java, line(s) 37
com/meishu/sdk/platform/huawei/banner/HWBannerAdWrapper.java, line(s) 39,50
com/meishu/sdk/platform/huawei/interstitial/HWInterstitialAdWrapper.java, line(s) 83
com/meishu/sdk/platform/mimo/recycler/MimoRecyclerLoader.java, line(s) 26,66
com/meishu/sdk/platform/ms/interstitial/MeishuAdNativeWrapper.java, line(s) 22
com/meishu/sdk/platform/pangle/PangleInitManager.java, line(s) 42,50
com/sigmob/windad/Splash/WindSplashAD.java, line(s) 327,90
com/sigmob/windad/WindAds.java, line(s) 122,149,323,360,262,298,333,357,282
com/sigmob/windad/natives/WindNativeUnifiedAd.java, line(s) 71,113,184
com/ss/android/downloadlib/g/l.java, line(s) 17
com/windmill/adscope/AdScopeAdapterProxy.java, line(s) 33
com/windmill/adscope/AdScopeInterstitialAdapter.java, line(s) 32,41
com/windmill/adscope/AdScopeNativeAdAdapter.java, line(s) 49,58,75,81
com/windmill/adscope/AdScopeSplashAdAdapter.java, line(s) 54,76,81,86,91,101
com/windmill/adscope/b.java, line(s) 71,84
com/windmill/adscope/e.java, line(s) 45,164
com/windmill/baidu/BdAdapterProxy.java, line(s) 38
com/windmill/baidu/BdInterstitialAdapter.java, line(s) 57,111,114,123,130,68,86,90,96,98
com/windmill/baidu/BdNBAdapter.java, line(s) 82,105,118,122,127,172,177,181,198,202,208,210
com/windmill/baidu/BdNIAdapter.java, line(s) 65,70,83,87,92,110,115,119,136,140,146,148,163
com/windmill/baidu/BdNSAdapter.java, line(s) 73,92,105,109,114,132,137,141,158,162,168,170,185
com/windmill/baidu/BdNativeAdAdapter.java, line(s) 57,86,90,96,98,114,120
com/windmill/baidu/BdRewardAdapter.java, line(s) 73,181,214,223,230,259,81,85,90,98,108,115,120,125,130,135,145,150,167,176,187,191,197,199
com/windmill/baidu/BdSplashAdAdapter.java, line(s) 57,63,82,86,92,94,107,111,117,126,131,136,141,146,150,155
com/windmill/baidu/c.java, line(s) 124,145,162,210
com/windmill/baidu/d.java, line(s) 122,155,163,180
com/windmill/baidu/k.java, line(s) 37,42
com/windmill/baidu/l.java, line(s) 57
com/windmill/baidu/m.java, line(s) 37,42
com/windmill/gdt/GDTAdapterProxy.java, line(s) 33,78,102,140,146
com/windmill/gdt/GDTBannerAdapter.java, line(s) 62,72,80
com/windmill/gdt/GDTInterstitialAdapter.java, line(s) 96,289,292,301,308,112,116,122,131,137,142,151,163,164,180,194,204,276,363
com/windmill/gdt/GDTNBAdapter.java, line(s) 91,113,159
com/windmill/gdt/GDTNIAdapter.java, line(s) 76,80,97,149
com/windmill/gdt/GDTNSAdapter.java, line(s) 79,97,114,165
com/windmill/gdt/GDTNativeAdAdapter.java, line(s) 68,90,96,107,130,136
com/windmill/gdt/GDTRewardVideoAdapter.java, line(s) 84,100,109,116
com/windmill/gdt/GDTSplashAdAdapter.java, line(s) 88,111,117,123,129,144,153,171
com/windmill/gdt/GdtNotifyBiddingResult.java, line(s) 16,20,26,62,67
com/windmill/gdt/a.java, line(s) 53,220,120
com/windmill/gdt/f.java, line(s) 80,320
com/windmill/gdt/g.java, line(s) 80,84,113,158
com/windmill/gromore/GroAdapterProxy.java, line(s) 103,188,192,197,208,214,227
com/windmill/gromore/GroBannerAdapter.java, line(s) 65,69,75,77
com/windmill/gromore/GroInterstitialAdapter.java, line(s) 117,127,134,76,90,94,100,102
com/windmill/gromore/GroNBAdapter.java, line(s) 76,97,102,167,171,177,179
com/windmill/gromore/GroNIAdapter.java, line(s) 59,62,67,105,109,115,117
com/windmill/gromore/GroNSAdapter.java, line(s) 65,82,87,125,129,135,137
com/windmill/gromore/GroNativeAdAdapter.java, line(s) 70,88,92,98,100,114,120
com/windmill/gromore/GroRewardAdAdapter.java, line(s) 258,270,277,83,86,91,118,146,202,213,231,235,241,243
com/windmill/gromore/GroSplashAdAdapter.java, line(s) 96,133,137,143,145,179,184,192
com/windmill/gromore/h.java, line(s) 67
com/windmill/gromore/i.java, line(s) 61
com/windmill/kuaishou/KuaiShouAdapterProxy.java, line(s) 139,144
com/windmill/kuaishou/KuaiShouInterstitialAdapter.java, line(s) 58,68,73,79,81
com/windmill/kuaishou/KuaiShouNBAdapter.java, line(s) 73,101,106,154,158,164,166,174
com/windmill/kuaishou/KuaiShouNIAdapter.java, line(s) 63,73,78,99,103,109,111,122,130
com/windmill/kuaishou/KuaiShouNSAdapter.java, line(s) 65,89,94,115,119,125,127,138,146
com/windmill/kuaishou/KuaiShouNativeAdAdapter.java, line(s) 52,57,63,65
com/windmill/kuaishou/KuaiShouRewardVideoAdapter.java, line(s) 52,186,62,67,73,75,80,89,106,111,115,121,125,130,135,140,145,150
com/windmill/kuaishou/KuaiShouSplashAdAdapter.java, line(s) 50,55,61,63,68,77,86,91,96,101,106,110,114,118,123,127,132
com/windmill/kuaishou/c.java, line(s) 42,111,68,75,91,133
com/windmill/kuaishou/d.java, line(s) 102,61,68,94,116
com/windmill/kuaishou/i.java, line(s) 37,117
com/windmill/kuaishou/j.java, line(s) 42,139
com/windmill/kuaishou/k.java, line(s) 83,37,113
com/windmill/meishu/MsAdapterProxy.java, line(s) 38,106
com/windmill/meishu/MsBannerAdapter.java, line(s) 39,44,49,105,112,118,137
com/windmill/meishu/MsInterstitialAdapter.java, line(s) 36,54
com/windmill/meishu/MsNativeAdAdapter.java, line(s) 44,54,59,65
com/windmill/meishu/MsRewardVideoAdapter.java, line(s) 43,56,61,72,77,86,97,102,107
com/windmill/meishu/MsSplashAdAdapter.java, line(s) 54,76,85,114,125,130,135
com/windmill/meishu/b.java, line(s) 40,48,56,90,98
com/windmill/meishu/c.java, line(s) 40,48,56,90,98
com/windmill/sdk/WindMillAd.java, line(s) 547,182,505
com/windmill/sdk/a/f.java, line(s) 1036
com/windmill/sdk/base/WMBidUtil.java, line(s) 205,218,202,215,248,336,356
com/windmill/sdk/base/WMLogUtil.java, line(s) 24,30,36,42
com/windmill/sdk/custom/WMAdBaseAdapter.java, line(s) 232,295,346,446
com/windmill/sdk/custom/WMCustomBannerAdapter.java, line(s) 26,34,42,54,62,79,89,108
com/windmill/sdk/custom/WMCustomInterstitialAdapter.java, line(s) 39,56,69,84,97,113,121,129,137,150,177,188
com/windmill/sdk/custom/WMCustomNativeAdapter.java, line(s) 35,52,65,93,101,109,117,174
com/windmill/sdk/custom/WMCustomRewardAdapter.java, line(s) 23,40,53,68,76,88,96,104,111,122,135,145,155
com/windmill/sdk/custom/WMCustomSplashAdapter.java, line(s) 54,62,72,85,100,116,126,143,155,183,194
com/windmill/sdk/strategy/i.java, line(s) 47
com/windmill/sdk/strategy/m.java, line(s) 52,58
com/windmill/sdk/utils/a.java, line(s) 40,46,52,58,65,70,76,35,145
com/windmill/sdk/utils/e.java, line(s) 39,42,55,59,62,45,65,130
com/windmill/sdk/widget/SpecialActivity.java, line(s) 54,59,67,77
com/windmill/sigmob/SigAdapterProxy.java, line(s) 45,62,151
com/windmill/sigmob/SigInterstitialAdapter.java, line(s) 19,49,64,68,74,76,90,96,102,108,114,119,125
com/windmill/sigmob/SigNBAdapter.java, line(s) 73,103,108,182,186,192,194
com/windmill/sigmob/SigNIAdapter.java, line(s) 63,75,80,121,125,131,133,149
com/windmill/sigmob/SigNSAdapter.java, line(s) 66,92,97,138,142,148,150,166
com/windmill/sigmob/SigNativeAdAdapter.java, line(s) 58,137,141,147,149,170,176
com/windmill/sigmob/SigRewardAdAdapter.java, line(s) 45,82,86,92,94,115,120,140
com/windmill/sigmob/SigSplashAdAdapter.java, line(s) 45,81,85,91,93,114,119
com/windmill/toutiao/TouTiaoAdapterProxy.java, line(s) 92,104,131,219,224,230,235,242,249,266
com/windmill/toutiao/TouTiaoBannerAdapter.java, line(s) 60,64,70,72
com/windmill/toutiao/TouTiaoInterstitialAdapter.java, line(s) 117,128,135,74,89,93,99,101
com/windmill/toutiao/TouTiaoNBAdapter.java, line(s) 84,113,119,174,180,237,241,247,249
com/windmill/toutiao/TouTiaoNIAdapter.java, line(s) 62,66,72,74
com/windmill/toutiao/TouTiaoNSAdapter.java, line(s) 72,98,105,126,133,156,160,166,168
com/windmill/toutiao/TouTiaoNativeAdAdapter.java, line(s) 66,98,102,108,110,124,130
com/windmill/toutiao/TouTiaoRewardVideoAdapter.java, line(s) 316,327,334,76,80,87,92,101,107,113,141,146,152,158,165,170,176,182,187,197,203,209,253,264,288,292,298,300
com/windmill/toutiao/TouTiaoSplashAdAdapter.java, line(s) 93,135,139,145,147,176,182,193
com/windmill/toutiao/j.java, line(s) 68
com/windmill/windmill_ad_plugin/WindmillAdPluginDelegate.java, line(s) 57,83
com/windmill/windmill_ad_plugin/banner/BannerAd.java, line(s) 89,96,104
com/windmill/windmill_ad_plugin/banner/IWMBannerAdListener.java, line(s) 24,33,39,45,51,60,69
com/windmill/windmill_ad_plugin/core/IWMAdAutoLoad.java, line(s) 21,30
com/windmill/windmill_ad_plugin/core/IWMAdSourceStatus.java, line(s) 24,39,52,65,80,93
com/windmill/windmill_ad_plugin/core/WindmillAd.java, line(s) 87
com/windmill/windmill_ad_plugin/feedAd/IWMNativeAdListener.java, line(s) 49,50,61,65,83
com/windmill/windmill_ad_plugin/feedAd/NativeAd.java, line(s) 136,143,151,219,222,235
com/windmill/windmill_ad_plugin/feedAd/NativeAdRender.java, line(s) 52,77,118,147
com/windmill/windmill_ad_plugin/feedAd/NativeAdRenderCustomView.java, line(s) 93
com/windmill/windmill_ad_plugin/interstitial/IWMInterstitialAdListener.java, line(s) 24,30,36,45,51,57,67
com/windmill/windmill_ad_plugin/interstitial/InterstitialAd.java, line(s) 96,103,111
com/windmill/windmill_ad_plugin/reward/RewardVideoAd.java, line(s) 91,98,106
com/windmill/windmill_ad_plugin/splashAd/SplashAd.java, line(s) 95,102,110
f0/AbstractC0814a.java, line(s) 13
f0/a.java, line(s) 12
h/d.java, line(s) 147,176,148
io/github/ponnamkarthik/toast/fluttertoast/MethodCallHandlerImpl.java, line(s) 100
io/sentry/SystemOutLogger.java, line(s) 20,28,37
io/sentry/android/core/AndroidFatalLogger.java, line(s) 47
io/sentry/android/core/AndroidLogger.java, line(s) 95,93,85,89,97
io/sentry/android/core/SentryLogcatAdapter.java, line(s) 15,63,20,68,25,73,30,78,35,40,83,88,93,98
io/sentry/android/replay/WindowManagerSpy$windowManagerClass$2.java, line(s) 19
io/sentry/android/replay/WindowManagerSpy.java, line(s) 62
io/sentry/android/replay/WindowSpy$decorViewClass$2.java, line(s) 20
io/sentry/android/replay/WindowSpy$windowField$2.java, line(s) 28
io/sentry/clientreport/ClientReportRecorder.java, line(s) 25
io/sentry/transport/StdoutTransport.java, line(s) 21
io/sentry/util/ScopesUtil.java, line(s) 25,30,42
n/b.java, line(s) 119,173
n/h.java, line(s) 510,319,343,509,449
n/i.java, line(s) 51,52
n/k.java, line(s) 19,138
n/q.java, line(s) 91
n/z.java, line(s) 98,99
o/i.java, line(s) 132,172,133,173
o/k.java, line(s) 89,101,174,213,88,100,121,128,154,173,183,202,212,122,129,160,184,203
org/webrtc/audio/WebRtcAudioTrackUtils.java, line(s) 16,20,22,27,36,38,41
q0/a.java, line(s) 338,355
repeackage/com/qiku/id/QikuIdmanager.java, line(s) 32

安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
app/video/guoguo/SplashActivity.java, line(s) 6,224

已通过安全项 此应用程序可能具有Root检测功能

此应用程序可能具有Root检测功能
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
com/meishu/sdk/core/utils/RequestUtil.java, line(s) 1227
io/sentry/android/core/DeviceInfoUtil.java, line(s) 280
io/sentry/android/core/internal/util/RootChecker.java, line(s) 66,24,24,24,24,24,24,69

综合安全基线评分总结

应用图标

泰剧兔 v1.5.7.0

Android APK
48
综合安全评分
中风险