fufluns
fufluns copied to clipboard
TODO List
Android
- [ ] Check APK Signature
- rizin can open
META-INF/CERT.RSAand print the pkcs7 data frompFp
- rizin can open
- [ ] Check Certificates and validity, bad hashes, etc..
- [ ] Detect trackers
- [x] App is debuggable example
- [ ] Exported example issue - Partial
- [ ] Test all android security best practies link
iOS
- [x] Weak rand function
- [ ] Sandbox Behavior (like successfully use
fork()because calls tofork()are disallowed on a stock iOS device). - [x] TrustKit pinning.
Any way to detect this kind of malware?
An example of APK trojan that seem to be available at Google Play for a while. Idk what way does Google check published apps.
i guess it is possible to add r2yara and add rules regarding malwares on the bins