应用安全检测报告
应用安全检测报告,支持文件搜索、内容检索和AI代码分析
移动应用安全检测报告

泰剧兔 v1.5.7.0
48
安全评分
安全基线评分
48/100
中风险
综合风险等级
风险等级评定
- A
- B
- C
- F
应用存在一定安全风险,建议优化
漏洞与安全项分布
2
高危
16
中危
2
信息
1
安全
隐私风险评估
4
第三方跟踪器
中等隐私风险
检测到少量第三方跟踪器
检测结果分布
高危安全漏洞
2
中危安全漏洞
16
安全提示信息
2
已通过安全项
1
重点安全关注
0
高危安全漏洞 该文件是World Writable。任何应用程序都可以写入文件
该文件是World Writable。任何应用程序都可以写入文件 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#testing-local-storage-for-sensitive-data-mstg-storage-1-and-mstg-storage-2 Files: com/meishu/sdk/core/utils/PackConfigUtil.java, line(s) 254
高危安全漏洞 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/meishu/sdk/core/loader/AdLoader.java, line(s) 152 com/meishu/sdk/core/loader/AdParallelLoader.java, line(s) 47 com/meishu/sdk/core/utils/EncryptUtil.java, line(s) 60
中危安全漏洞 应用已启用明文网络流量
[android:usesCleartextTraffic=true] 应用允许明文网络流量(如 HTTP、FTP 协议、DownloadManager、MediaPlayer 等)。API 级别 27 及以下默认启用,28 及以上默认禁用。明文流量缺乏机密性、完整性和真实性保护,攻击者可窃听或篡改传输数据。建议关闭明文流量,仅使用加密协议。
中危安全漏洞 Activity (com.bytedance.android.openliveplugin.stub.activity.DouyinAuthorizeActivityProxy) 未受保护。
[android:exported=true] 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
中危安全漏洞 Activity (com.bytedance.android.openliveplugin.stub.activity.DouyinAuthorizeActivityLiveProcessProxy) 未受保护。
[android:exported=true] 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
中危安全漏洞 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护,但应检查权限保护级别。
Permission: android.permission.DUMP [android:exported=true] 检测到 Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
中危安全漏洞 应用程序使用不安全的随机数生成器
应用程序使用不安全的随机数生成器 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators Files: N1/AbstractC0325a.java, line(s) 3 N1/AbstractC1055a.java, line(s) 3 N1/C0326b.java, line(s) 3 N1/C1056b.java, line(s) 3 U0/AbstractC0099c.java, line(s) 8 U0/AbstractC0117v.java, line(s) 7 U0/AbstractC0551c.java, line(s) 8 U0/AbstractC0569v.java, line(s) 7 com/czhj/wire/internal/ImmutableList.java, line(s) 8 com/czhj/wire/internal/MutableOnWriteList.java, line(s) 7 com/meishu/sdk/platform/bd/fullscreenvideo/BDFullscreenVideoLoader.java, line(s) 21 com/meishu/sdk/platform/bd/interstitial/BDInterstitialAdLoader.java, line(s) 29 com/meishu/sdk/platform/bd/recycler/BDRecyclerLoader.java, line(s) 22 com/meishu/sdk/platform/bd/reward/BDRewardVideoLoader.java, line(s) 18 com/meishu/sdk/platform/bd/splash/BDSplashAdLoader.java, line(s) 55 com/windmill/sdk/utils/MUtil.java, line(s) 6 com/windmill/sdk/widget/InterstitialBaseView.java, line(s) 40 com/windmill/sdk/widget/SplashBaseView.java, line(s) 24 o1/C0328a.java, line(s) 3 o1/C1062a.java, line(s) 3 u1/a.java, line(s) 11 u1/d.java, line(s) 5
中危安全漏洞 MD5是已知存在哈希冲突的弱哈希
MD5是已知存在哈希冲突的弱哈希 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/meishu/sdk/core/bquery/BQUtility.java, line(s) 91 com/meishu/sdk/core/download/DownloadTask.java, line(s) 159 com/meishu/sdk/core/loader/AdLoader.java, line(s) 154,510 com/meishu/sdk/core/loader/AdParallelLoader.java, line(s) 159 com/meishu/sdk/core/taskcenter/SignUtil.java, line(s) 20 com/meishu/sdk/core/utils/ClickHandler.java, line(s) 114 com/meishu/sdk/core/utils/DownloadInfo.java, line(s) 110 com/meishu/sdk/core/utils/DownloadUtils.java, line(s) 187 com/meishu/sdk/core/utils/EncryptUtil.java, line(s) 97
中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
文件可能包含硬编码的敏感信息,如用户名、密码、密钥等 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10 Files: I1/C0054e0.java, line(s) 56 I1/C0506e0.java, line(s) 59 com/meishu/sdk/activity/MeishuRewardVideoPlayerActivity.java, line(s) 84,85,69,73,74,75,76,77,78,79,80,81 com/meishu/sdk/activity/MeishuWebviewActivity.java, line(s) 27,28,29 com/meishu/sdk/core/loader/cache/CacheEntity.java, line(s) 104 com/meishu/sdk/core/utils/PackConfigUtil.java, line(s) 20 com/meishu/sdk/core/utils/SecurityHelper.java, line(s) 11 com/windmill/sdk/WMConstants.java, line(s) 25 com/windmill/sdk/base/WMBidUtil.java, line(s) 14 com/windmill/sdk/strategy/a.java, line(s) 555 io/sentry/Baggage.java, line(s) 38 io/sentry/SpanDataConvention.java, line(s) 4,5,8,9,15,17,16,20,18 io/sentry/TraceContext.java, line(s) 106 io/sentry/protocol/User.java, line(s) 81 k/g.java, line(s) 65 n/d.java, line(s) 35 n/p.java, line(s) 92 n/x.java, line(s) 78
中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage Files: R/b.java, line(s) 48,49 com/czhj/devicehelper/cnoaid/a.java, line(s) 117,118 com/meishu/sdk/core/bquery/BQUtility.java, line(s) 104 com/meishu/sdk/core/download/DownloadManager.java, line(s) 87 com/meishu/sdk/core/utils/DownloadWorker.java, line(s) 197 com/meishu/sdk/core/utils/RequestUtil.java, line(s) 308,1129 com/ss/android/downloadlib/addownload/h.java, line(s) 230 com/ss/android/downloadlib/g/m.java, line(s) 156,246 io/sentry/android/core/DeviceInfoUtil.java, line(s) 299 o/a.java, line(s) 84,94
中危安全漏洞 应用程序创建临时文件。敏感信息永远不应该被写进临时文件
应用程序创建临时文件。敏感信息永远不应该被写进临时文件 Files: com/journeyapps/barcodescanner/b.java, line(s) 239 q0/a.java, line(s) 343
中危安全漏洞 此应用程序可能会请求root(超级用户)权限
此应用程序可能会请求root(超级用户)权限 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1 Files: io/sentry/android/core/internal/util/RootChecker.java, line(s) 24,24,24,24,24
中危安全漏洞 SHA-1是已知存在哈希冲突的弱哈希
SHA-1是已知存在哈希冲突的弱哈希 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4 Files: com/czhj/devicehelper/cnoaid/impl/p.java, line(s) 29 com/meishu/sdk/core/oaid/impl/OppoImpl.java, line(s) 45 com/meishu/sdk/core/utils/RequestUtil.java, line(s) 1287 io/sentry/util/StringUtils.java, line(s) 40
中危安全漏洞 IP地址泄露
IP地址泄露 Files: F/AbstractC0809a.java, line(s) 7 app/video/guoguo/GApplication.java, line(s) 40 com/meishu/sdk/BuildConfig.java, line(s) 8 com/meishu/sdk/core/utils/TestToolUtil.java, line(s) 150 com/ss/android/download/api/constant/BaseConstants.java, line(s) 36 io/sentry/SpotlightIntegration.java, line(s) 107
中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2 Files: com/ss/android/downloadlib/d/b.java, line(s) 4,5,17,22 com/windmill/sdk/strategy/m.java, line(s) 4,5,47,63
中危安全漏洞 不安全的Web视图实现。可能存在WebView任意代码执行漏洞
不安全的Web视图实现。可能存在WebView任意代码执行漏洞 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5 Files: com/meishu/sdk/core/webview/TaskCenterWebActivity.java, line(s) 71,56
中危安全漏洞 应用程序包含隐私跟踪程序
此应用程序有多个4隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。
中危安全漏洞 此应用可能包含硬编码机密信息
从应用程序中识别出以下机密确保这些不是机密或私人信息 "library_zxingandroidembedded_authorWebsite" : "https://journeyapps.com/" "library_zxingandroidembedded_author" : "JourneyApps" 5317f4377245bfb8efdc42c45d71bd43 MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBALjMT+wA6DuUbhfoa6y048s5MXW+8F6nq6LsoaZ1cCuRt08KSFhgy0bjwujKVLKymgQRQQaFRHEjavi3Wwo/PocCAwEAAQ== 258EAFA5-E914-47DA-95CA-C5AB0DC85B11 edef8ba9-79d6-4ace-a3c8-27dcd51d21ed 7ddfc43fcd2e4ba0548258a76fe88d49b34588c5 884942f0e6454745814d5042ef23f4a6 c06c8400-8e06-11e0-9cb6-0002a5d5c51b bb392ec0-8d4d-11e0-a896-0002a5d5c51b
安全提示信息 应用程序记录日志信息,不得记录敏感信息
应用程序记录日志信息,不得记录敏感信息 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs Files: B/e.java, line(s) 30,29,48,64,49,65 B/f.java, line(s) 13,12 B/k.java, line(s) 91,92 B/l.java, line(s) 153,154,165 B/n.java, line(s) 86,87 C/d.java, line(s) 46,53,65,70,45,52,57,64,69,58 C0/l.java, line(s) 101 D0/a.java, line(s) 76,99,117 D0/c.java, line(s) 23,24,28,33,39,58,61,66,76,94,100,103,118,124,127,129,135,146,149,151,160,163,170,172,174 D0/g.java, line(s) 40,56,75,92,178,44,63,80,96 D0/h.java, line(s) 55,72,295,113,207,237,203,209,251,259 D0/l.java, line(s) 27 D0/n.java, line(s) 27 D0/q.java, line(s) 37,38 E/h.java, line(s) 159,23,523,123 E0/e.java, line(s) 31,69 E0/g.java, line(s) 38,32 F/C0813e.java, line(s) 262,255,252 F/n.java, line(s) 27 G0/D.java, line(s) 67,115,165,232,248,312,325,331,351,356,446,456,71,450 I/C0336a.java, line(s) 269 I/C0841a.java, line(s) 289 J/a.java, line(s) 44,45 J/d.java, line(s) 96,123,95,122 L/b.java, line(s) 41,40 L/j.java, line(s) 73,94,72,93,97,103,110,107,111 L/l.java, line(s) 42,41 M/c.java, line(s) 91,90 M/e.java, line(s) 50,49 P/C0359e.java, line(s) 31,37,65,75,32,66,38,78 P/C1098e.java, line(s) 36,42,70,80,37,71,43,83 P/i.java, line(s) 111,95 Q/ExecutorServiceC0367a.java, line(s) 182,179 Q/ExecutorServiceC1116a.java, line(s) 193,190 R/d.java, line(s) 13 S/C0375c.java, line(s) 16,15 S/C0376d.java, line(s) 48,47 S/C0378f.java, line(s) 134,133 S/C0390r.java, line(s) 85,88 S/C0391s.java, line(s) 34,33 S/C1131c.java, line(s) 16,15 S/C1132d.java, line(s) 49,48 S/C1134f.java, line(s) 139,138 S/C1146r.java, line(s) 91,94 S/C1147s.java, line(s) 35,34 T/d.java, line(s) 80,83 V/C1229c.java, line(s) 61,60,70,84,85 V/f.java, line(s) 175,193,203,206,209,212,215,241,248,323,333,345,357,362,174,192,202,205,208,211,214,240,247,322,332,344,356,361 V/i.java, line(s) 76,75,133,296,309,134,189,297 V/j.java, line(s) 35,41,36,42 V/m.java, line(s) 42,43 V/u.java, line(s) 117,114 Z/C0408a.java, line(s) 61,78,84,91,62,79,85,92 Z/C0410c.java, line(s) 22,23 Z/C1262a.java, line(s) 69,86,92,99,70,87,93,100 Z/C1264c.java, line(s) 22,23 Z/h.java, line(s) 37,40 app/video/guoguo/SplashActivity.java, line(s) 105,178,102 com/cicada/player/utils/Logger.java, line(s) 117,125,121,113,123 com/cloudwebrtc/webrtc/CameraEventsHandler.java, line(s) 21,26,31,36,41,46,51,66 com/cloudwebrtc/webrtc/FlutterRTCVideoRenderer.java, line(s) 91,173,166,170 com/cloudwebrtc/webrtc/FlutterWebRTCPlugin.java, line(s) 118,87 com/cloudwebrtc/webrtc/GetUserMediaImpl.java, line(s) 200,203,214,224,352,355,422,483,699,702,745,769,217,304,377,588,296,350 com/cloudwebrtc/webrtc/MethodCallHandlerImpl.java, line(s) 417,456,465,474,748,753,769,784,1375,1384,1391,1452,1484,1498,1601,1691,1702,1727,788,781 com/cloudwebrtc/webrtc/PeerConnectionObserver.java, line(s) 205,484,496,722,736,808,860,880,888,902,930,954 com/cloudwebrtc/webrtc/audio/AudioUtils.java, line(s) 28,66,123,186,214 com/cloudwebrtc/webrtc/record/MediaRecorderImpl.java, line(s) 36 com/cloudwebrtc/webrtc/record/VideoFileRenderer.java, line(s) 99,104,144,147,157,162,84,89,122,184,208,236 com/cloudwebrtc/webrtc/utils/MediaConstraintsUtils.java, line(s) 60,71 com/cloudwebrtc/webrtc/video/camera/CameraUtils.java, line(s) 143 com/czhj/devicehelper/DeviceHelper.java, line(s) 55,107,111,175 com/czhj/devicehelper/cnoaid/com/qiku/id/QikuIdmanager.java, line(s) 31 com/czhj/devicehelper/cnoaid/g.java, line(s) 21 com/czhj/devicehelper/cnoaid/impl/g.java, line(s) 98 com/czhj/devicehelper/cnoaid/impl/h.java, line(s) 44,68,81,90,105,128,131,180 com/czhj/devicehelper/honor/identifier/a.java, line(s) 46,32,38 com/czhj/devicehelper/honor/identifier/b.java, line(s) 34,36,56,58,77,106,40,62,69,73,83,98,100,102,105,120 com/czhj/devicehelper/msaoaId/a.java, line(s) 54,99,105,125,131,160,181 com/czhj/volley/CacheDispatcher.java, line(s) 85,97,45,181,37,69,169 com/czhj/volley/NetworkDispatcher.java, line(s) 54 com/czhj/volley/Request.java, line(s) 145,150 com/czhj/volley/RequestQueue.java, line(s) 79 com/czhj/volley/VolleyLog.java, line(s) 61,64,95,51,100,119,110,115,123 com/czhj/volley/VolleyThreadFactory.java, line(s) 8 com/czhj/volley/toolbox/BasicNetwork.java, line(s) 102,150,71,145,156,165 com/czhj/volley/toolbox/FileDownloadNetwork.java, line(s) 115,84,137,147 com/czhj/volley/toolbox/FileDownloadRequest.java, line(s) 53 com/czhj/volley/toolbox/HttpHeaderParser.java, line(s) 120 com/czhj/volley/toolbox/ImageRequest.java, line(s) 74 com/github/tgarm/luavm/LuavmPlugin.java, line(s) 30 com/journeyapps/barcodescanner/a.java, line(s) 577,627,118,281,381,444 com/journeyapps/barcodescanner/b.java, line(s) 90,292,245 com/kwai/library/ipneigh/KwaiIpNeigh.java, line(s) 47,50 com/meishu/sdk/core/AdSdk.java, line(s) 50 com/meishu/sdk/core/MAdManager.java, line(s) 23,45 com/meishu/sdk/core/download/DownloadTask.java, line(s) 139 com/meishu/sdk/core/download/InstallManager.java, line(s) 24,28 com/meishu/sdk/core/loader/AdLoader.java, line(s) 625 com/meishu/sdk/core/loader/strategy/TimeFirstStrategy.java, line(s) 70,86 com/meishu/sdk/core/oaid/OAIDLog.java, line(s) 21 com/meishu/sdk/core/taskcenter/PackageUtil.java, line(s) 33 com/meishu/sdk/core/taskcenter/SignUtil.java, line(s) 60 com/meishu/sdk/core/utils/ImageUtil.java, line(s) 26 com/meishu/sdk/core/utils/LogUtil.java, line(s) 11,16,37,28,42,33 com/meishu/sdk/core/utils/MiitHelper.java, line(s) 37,86 com/meishu/sdk/core/view/gif/GifDecoder.java, line(s) 347,505,514 com/meishu/sdk/core/view/gif/GifHeaderParser.java, line(s) 76,104,75,103 com/meishu/sdk/core/webview/TaskCenterJs.java, line(s) 566 com/meishu/sdk/core/webview/TaskCenterWebActivity.java, line(s) 38,44,132 com/meishu/sdk/meishu_ad/splash/SplashSkipView.java, line(s) 105,358 com/meishu/sdk/meishu_ad/view/DownLoadDialogActivity.java, line(s) 86,118 com/meishu/sdk/meishu_ad/view/scaleImage/SubsamplingScaleImageView.java, line(s) 644,209,213,392,396,464,798,803,814,829,1524,1741,2111 com/meishu/sdk/meishu_ad/view/scaleImage/decoder/SkiaPooledImageRegionDecoder.java, line(s) 118 com/meishu/sdk/platform/bd/interstitial/BDInterstitialAdLoader.java, line(s) 70,254 com/meishu/sdk/platform/bd/recycler/BDRecyclerExpressListener.java, line(s) 44,170,187,192,68,85,100 com/meishu/sdk/platform/csjblend/MsCBDrawAd.java, line(s) 37 com/meishu/sdk/platform/huawei/banner/HWBannerAdWrapper.java, line(s) 39,50 com/meishu/sdk/platform/huawei/interstitial/HWInterstitialAdWrapper.java, line(s) 83 com/meishu/sdk/platform/mimo/recycler/MimoRecyclerLoader.java, line(s) 26,66 com/meishu/sdk/platform/ms/interstitial/MeishuAdNativeWrapper.java, line(s) 22 com/meishu/sdk/platform/pangle/PangleInitManager.java, line(s) 42,50 com/sigmob/windad/Splash/WindSplashAD.java, line(s) 327,90 com/sigmob/windad/WindAds.java, line(s) 122,149,323,360,262,298,333,357,282 com/sigmob/windad/natives/WindNativeUnifiedAd.java, line(s) 71,113,184 com/ss/android/downloadlib/g/l.java, line(s) 17 com/windmill/adscope/AdScopeAdapterProxy.java, line(s) 33 com/windmill/adscope/AdScopeInterstitialAdapter.java, line(s) 32,41 com/windmill/adscope/AdScopeNativeAdAdapter.java, line(s) 49,58,75,81 com/windmill/adscope/AdScopeSplashAdAdapter.java, line(s) 54,76,81,86,91,101 com/windmill/adscope/b.java, line(s) 71,84 com/windmill/adscope/e.java, line(s) 45,164 com/windmill/baidu/BdAdapterProxy.java, line(s) 38 com/windmill/baidu/BdInterstitialAdapter.java, line(s) 57,111,114,123,130,68,86,90,96,98 com/windmill/baidu/BdNBAdapter.java, line(s) 82,105,118,122,127,172,177,181,198,202,208,210 com/windmill/baidu/BdNIAdapter.java, line(s) 65,70,83,87,92,110,115,119,136,140,146,148,163 com/windmill/baidu/BdNSAdapter.java, line(s) 73,92,105,109,114,132,137,141,158,162,168,170,185 com/windmill/baidu/BdNativeAdAdapter.java, line(s) 57,86,90,96,98,114,120 com/windmill/baidu/BdRewardAdapter.java, line(s) 73,181,214,223,230,259,81,85,90,98,108,115,120,125,130,135,145,150,167,176,187,191,197,199 com/windmill/baidu/BdSplashAdAdapter.java, line(s) 57,63,82,86,92,94,107,111,117,126,131,136,141,146,150,155 com/windmill/baidu/c.java, line(s) 124,145,162,210 com/windmill/baidu/d.java, line(s) 122,155,163,180 com/windmill/baidu/k.java, line(s) 37,42 com/windmill/baidu/l.java, line(s) 57 com/windmill/baidu/m.java, line(s) 37,42 com/windmill/gdt/GDTAdapterProxy.java, line(s) 33,78,102,140,146 com/windmill/gdt/GDTBannerAdapter.java, line(s) 62,72,80 com/windmill/gdt/GDTInterstitialAdapter.java, line(s) 96,289,292,301,308,112,116,122,131,137,142,151,163,164,180,194,204,276,363 com/windmill/gdt/GDTNBAdapter.java, line(s) 91,113,159 com/windmill/gdt/GDTNIAdapter.java, line(s) 76,80,97,149 com/windmill/gdt/GDTNSAdapter.java, line(s) 79,97,114,165 com/windmill/gdt/GDTNativeAdAdapter.java, line(s) 68,90,96,107,130,136 com/windmill/gdt/GDTRewardVideoAdapter.java, line(s) 84,100,109,116 com/windmill/gdt/GDTSplashAdAdapter.java, line(s) 88,111,117,123,129,144,153,171 com/windmill/gdt/GdtNotifyBiddingResult.java, line(s) 16,20,26,62,67 com/windmill/gdt/a.java, line(s) 53,220,120 com/windmill/gdt/f.java, line(s) 80,320 com/windmill/gdt/g.java, line(s) 80,84,113,158 com/windmill/gromore/GroAdapterProxy.java, line(s) 103,188,192,197,208,214,227 com/windmill/gromore/GroBannerAdapter.java, line(s) 65,69,75,77 com/windmill/gromore/GroInterstitialAdapter.java, line(s) 117,127,134,76,90,94,100,102 com/windmill/gromore/GroNBAdapter.java, line(s) 76,97,102,167,171,177,179 com/windmill/gromore/GroNIAdapter.java, line(s) 59,62,67,105,109,115,117 com/windmill/gromore/GroNSAdapter.java, line(s) 65,82,87,125,129,135,137 com/windmill/gromore/GroNativeAdAdapter.java, line(s) 70,88,92,98,100,114,120 com/windmill/gromore/GroRewardAdAdapter.java, line(s) 258,270,277,83,86,91,118,146,202,213,231,235,241,243 com/windmill/gromore/GroSplashAdAdapter.java, line(s) 96,133,137,143,145,179,184,192 com/windmill/gromore/h.java, line(s) 67 com/windmill/gromore/i.java, line(s) 61 com/windmill/kuaishou/KuaiShouAdapterProxy.java, line(s) 139,144 com/windmill/kuaishou/KuaiShouInterstitialAdapter.java, line(s) 58,68,73,79,81 com/windmill/kuaishou/KuaiShouNBAdapter.java, line(s) 73,101,106,154,158,164,166,174 com/windmill/kuaishou/KuaiShouNIAdapter.java, line(s) 63,73,78,99,103,109,111,122,130 com/windmill/kuaishou/KuaiShouNSAdapter.java, line(s) 65,89,94,115,119,125,127,138,146 com/windmill/kuaishou/KuaiShouNativeAdAdapter.java, line(s) 52,57,63,65 com/windmill/kuaishou/KuaiShouRewardVideoAdapter.java, line(s) 52,186,62,67,73,75,80,89,106,111,115,121,125,130,135,140,145,150 com/windmill/kuaishou/KuaiShouSplashAdAdapter.java, line(s) 50,55,61,63,68,77,86,91,96,101,106,110,114,118,123,127,132 com/windmill/kuaishou/c.java, line(s) 42,111,68,75,91,133 com/windmill/kuaishou/d.java, line(s) 102,61,68,94,116 com/windmill/kuaishou/i.java, line(s) 37,117 com/windmill/kuaishou/j.java, line(s) 42,139 com/windmill/kuaishou/k.java, line(s) 83,37,113 com/windmill/meishu/MsAdapterProxy.java, line(s) 38,106 com/windmill/meishu/MsBannerAdapter.java, line(s) 39,44,49,105,112,118,137 com/windmill/meishu/MsInterstitialAdapter.java, line(s) 36,54 com/windmill/meishu/MsNativeAdAdapter.java, line(s) 44,54,59,65 com/windmill/meishu/MsRewardVideoAdapter.java, line(s) 43,56,61,72,77,86,97,102,107 com/windmill/meishu/MsSplashAdAdapter.java, line(s) 54,76,85,114,125,130,135 com/windmill/meishu/b.java, line(s) 40,48,56,90,98 com/windmill/meishu/c.java, line(s) 40,48,56,90,98 com/windmill/sdk/WindMillAd.java, line(s) 547,182,505 com/windmill/sdk/a/f.java, line(s) 1036 com/windmill/sdk/base/WMBidUtil.java, line(s) 205,218,202,215,248,336,356 com/windmill/sdk/base/WMLogUtil.java, line(s) 24,30,36,42 com/windmill/sdk/custom/WMAdBaseAdapter.java, line(s) 232,295,346,446 com/windmill/sdk/custom/WMCustomBannerAdapter.java, line(s) 26,34,42,54,62,79,89,108 com/windmill/sdk/custom/WMCustomInterstitialAdapter.java, line(s) 39,56,69,84,97,113,121,129,137,150,177,188 com/windmill/sdk/custom/WMCustomNativeAdapter.java, line(s) 35,52,65,93,101,109,117,174 com/windmill/sdk/custom/WMCustomRewardAdapter.java, line(s) 23,40,53,68,76,88,96,104,111,122,135,145,155 com/windmill/sdk/custom/WMCustomSplashAdapter.java, line(s) 54,62,72,85,100,116,126,143,155,183,194 com/windmill/sdk/strategy/i.java, line(s) 47 com/windmill/sdk/strategy/m.java, line(s) 52,58 com/windmill/sdk/utils/a.java, line(s) 40,46,52,58,65,70,76,35,145 com/windmill/sdk/utils/e.java, line(s) 39,42,55,59,62,45,65,130 com/windmill/sdk/widget/SpecialActivity.java, line(s) 54,59,67,77 com/windmill/sigmob/SigAdapterProxy.java, line(s) 45,62,151 com/windmill/sigmob/SigInterstitialAdapter.java, line(s) 19,49,64,68,74,76,90,96,102,108,114,119,125 com/windmill/sigmob/SigNBAdapter.java, line(s) 73,103,108,182,186,192,194 com/windmill/sigmob/SigNIAdapter.java, line(s) 63,75,80,121,125,131,133,149 com/windmill/sigmob/SigNSAdapter.java, line(s) 66,92,97,138,142,148,150,166 com/windmill/sigmob/SigNativeAdAdapter.java, line(s) 58,137,141,147,149,170,176 com/windmill/sigmob/SigRewardAdAdapter.java, line(s) 45,82,86,92,94,115,120,140 com/windmill/sigmob/SigSplashAdAdapter.java, line(s) 45,81,85,91,93,114,119 com/windmill/toutiao/TouTiaoAdapterProxy.java, line(s) 92,104,131,219,224,230,235,242,249,266 com/windmill/toutiao/TouTiaoBannerAdapter.java, line(s) 60,64,70,72 com/windmill/toutiao/TouTiaoInterstitialAdapter.java, line(s) 117,128,135,74,89,93,99,101 com/windmill/toutiao/TouTiaoNBAdapter.java, line(s) 84,113,119,174,180,237,241,247,249 com/windmill/toutiao/TouTiaoNIAdapter.java, line(s) 62,66,72,74 com/windmill/toutiao/TouTiaoNSAdapter.java, line(s) 72,98,105,126,133,156,160,166,168 com/windmill/toutiao/TouTiaoNativeAdAdapter.java, line(s) 66,98,102,108,110,124,130 com/windmill/toutiao/TouTiaoRewardVideoAdapter.java, line(s) 316,327,334,76,80,87,92,101,107,113,141,146,152,158,165,170,176,182,187,197,203,209,253,264,288,292,298,300 com/windmill/toutiao/TouTiaoSplashAdAdapter.java, line(s) 93,135,139,145,147,176,182,193 com/windmill/toutiao/j.java, line(s) 68 com/windmill/windmill_ad_plugin/WindmillAdPluginDelegate.java, line(s) 57,83 com/windmill/windmill_ad_plugin/banner/BannerAd.java, line(s) 89,96,104 com/windmill/windmill_ad_plugin/banner/IWMBannerAdListener.java, line(s) 24,33,39,45,51,60,69 com/windmill/windmill_ad_plugin/core/IWMAdAutoLoad.java, line(s) 21,30 com/windmill/windmill_ad_plugin/core/IWMAdSourceStatus.java, line(s) 24,39,52,65,80,93 com/windmill/windmill_ad_plugin/core/WindmillAd.java, line(s) 87 com/windmill/windmill_ad_plugin/feedAd/IWMNativeAdListener.java, line(s) 49,50,61,65,83 com/windmill/windmill_ad_plugin/feedAd/NativeAd.java, line(s) 136,143,151,219,222,235 com/windmill/windmill_ad_plugin/feedAd/NativeAdRender.java, line(s) 52,77,118,147 com/windmill/windmill_ad_plugin/feedAd/NativeAdRenderCustomView.java, line(s) 93 com/windmill/windmill_ad_plugin/interstitial/IWMInterstitialAdListener.java, line(s) 24,30,36,45,51,57,67 com/windmill/windmill_ad_plugin/interstitial/InterstitialAd.java, line(s) 96,103,111 com/windmill/windmill_ad_plugin/reward/RewardVideoAd.java, line(s) 91,98,106 com/windmill/windmill_ad_plugin/splashAd/SplashAd.java, line(s) 95,102,110 f0/AbstractC0814a.java, line(s) 13 f0/a.java, line(s) 12 h/d.java, line(s) 147,176,148 io/github/ponnamkarthik/toast/fluttertoast/MethodCallHandlerImpl.java, line(s) 100 io/sentry/SystemOutLogger.java, line(s) 20,28,37 io/sentry/android/core/AndroidFatalLogger.java, line(s) 47 io/sentry/android/core/AndroidLogger.java, line(s) 95,93,85,89,97 io/sentry/android/core/SentryLogcatAdapter.java, line(s) 15,63,20,68,25,73,30,78,35,40,83,88,93,98 io/sentry/android/replay/WindowManagerSpy$windowManagerClass$2.java, line(s) 19 io/sentry/android/replay/WindowManagerSpy.java, line(s) 62 io/sentry/android/replay/WindowSpy$decorViewClass$2.java, line(s) 20 io/sentry/android/replay/WindowSpy$windowField$2.java, line(s) 28 io/sentry/clientreport/ClientReportRecorder.java, line(s) 25 io/sentry/transport/StdoutTransport.java, line(s) 21 io/sentry/util/ScopesUtil.java, line(s) 25,30,42 n/b.java, line(s) 119,173 n/h.java, line(s) 510,319,343,509,449 n/i.java, line(s) 51,52 n/k.java, line(s) 19,138 n/q.java, line(s) 91 n/z.java, line(s) 98,99 o/i.java, line(s) 132,172,133,173 o/k.java, line(s) 89,101,174,213,88,100,121,128,154,173,183,202,212,122,129,160,184,203 org/webrtc/audio/WebRtcAudioTrackUtils.java, line(s) 16,20,22,27,36,38,41 q0/a.java, line(s) 338,355 repeackage/com/qiku/id/QikuIdmanager.java, line(s) 32
安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard Files: app/video/guoguo/SplashActivity.java, line(s) 6,224
已通过安全项 此应用程序可能具有Root检测功能
此应用程序可能具有Root检测功能 https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1 Files: com/meishu/sdk/core/utils/RequestUtil.java, line(s) 1227 io/sentry/android/core/DeviceInfoUtil.java, line(s) 280 io/sentry/android/core/internal/util/RootChecker.java, line(s) 66,24,24,24,24,24,24,69
综合安全基线评分总结

泰剧兔 v1.5.7.0
Android APK
48
综合安全评分
中风险