wnagzihxa1n's blog
Menu
  • Home
  • Android
  • iOS
  • macOS
  • 安全笔记
  • About
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25410] [Samsung] [CallBGProvider] CallBGProvider的调用权限定义为Normal可实现任意私有文件读取

November 27, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25440] [Samsung] [FactoryCameraFB] CameraTestActivity导出存在文件读写权限泄露漏洞

November 26, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25414] [Samsung] [Contacts] SetProfilePhotoActivity导出存在任意私有文件读写漏洞

November 25, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25413] [Samsung] [Contacts] 组件SetProfilePhotoActivity导出存在任意私有组件启动漏洞可获取ContentProvider数据

November 20, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25397] [Samsung] [TelephonyUI] 组件PhotoringReceiver导出存在任意文件写漏洞结合动态库加载行为可实现本地任意代码执行

November 20, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25390] [Samsung] [Photo Table] 组件PermissionsRequestActivity存在任意私有组件启动漏洞可获取ContentProvider数据

November 20, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2021-25391] [Samsung] [Secure Folder] KnoxSettingCheckLockTypeActivity泄露Intent可获取ContentProvider数据

November 20, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2022-22292] [Samsung] [Telecom] 动态注册BroadcastReceiver默认导出存在任意私有组件启动漏洞

August 1, 2022
Keep Reading
AndroidApplication LogicBug ExportedComponent

[Adobe] [Acrobat Reader] AdobeReader处理DeepLink时未正确进行合法性校验导致下载PDF文件过程出现路径穿越可造成远程代码执行

May 25, 2022
Keep Reading
Framework LogicBug

CVE-2020-0391 Android9和Android10系统应用广播保护机制失效漏洞

May 16, 2021
Keep Reading
AndroidApplication LogicBug ExportedComponent

[ByteDance] [TikTok] WallPaperDataProvider导出存在任意私有文件读取漏洞

May 4, 2020
Keep Reading
AndroidApplication LogicBug ExportedComponent

[ByteDance] [TikTok] DetailActivity导出存在任意私有组件启动结合FileProvider机制与FbSoLoader框架导致本地代码执行漏洞

May 2, 2020
Keep Reading
AndroidApplication LogicBug ExportedComponent

[ByteDance] [TikTok] NotificationBroadcastReceiver导出存在任意私有组件启动结合FileProvider机制与FbSoLoader框架导致本地代码执行漏洞

May 1, 2020
Keep Reading
AndroidApplication LogicBug ExportedComponent

[CVE-2019-16253] [Samsung] [SMT] SamsungTTSService导出存在任意私有组件调用提权漏洞

December 27, 2019
Keep Reading
AndroidApplication LogicBug ExportedComponent

CVE-2019-16253 SamsungSMT导出组件提权漏洞

December 27, 2019
Keep Reading

保护技术开发08 - Dex文件不落地加载

March 10, 2018
Keep Reading

保护技术开发07 - 纯Native层壳

March 8, 2018
Keep Reading

保护技术开发06 - 壳代码移植Native层

March 7, 2018
Keep Reading

Android应用监控自身被卸载的几种姿势

December 5, 2017
Keep Reading

保护技术开发05 - 实现Dex文件运行时自篡改

November 20, 2017
Keep Reading

保护技术开发04 - 自动加壳

November 14, 2017
Keep Reading

保护技术开发03 - 添加Application

September 3, 2017
Keep Reading

保护技术开发02 - 纯Java层的壳改进

August 28, 2017
Keep Reading

保护技术开发01 - 纯Java层的壳初实现

August 20, 2017
Keep Reading

DexClassLoader和PathClassLoader(四)

April 1, 2017
Keep Reading

DexClassLoader和PathClassLoader(三)

March 29, 2017
Keep Reading

DexClassLoader和PathClassLoader(二)

March 28, 2017
Keep Reading

DexClassLoader和PathClassLoader(一)

March 28, 2017
Keep Reading

Android平台Hook入门以及实例演示

October 30, 2016
Keep Reading
    Copyright © 2026 wnagzihxa1n's blog.