导航菜单

应用安全检测报告

应用安全检测报告,支持文件搜索、内容检索和AI代码分析

移动应用安全检测报告

应用图标

Brevistay v5.8.2

Android APK 529c6bcb...
47
安全评分

安全基线评分

47/100

中风险

综合风险等级

风险等级评定
  1. A
  2. B
  3. C
  4. F

应用存在一定安全风险,建议优化

漏洞与安全项分布

5 高危
35 中危
4 信息
2 安全

隐私风险评估

8
第三方跟踪器

高隐私风险
检测到大量第三方跟踪器


检测结果分布

高危安全漏洞 5
中危安全漏洞 35
安全提示信息 4
已通过安全项 2
重点安全关注 0

高危安全漏洞 App 链接 assetlinks.json 文件未找到

[android:name=com.brevistay.app.view.main.fragments.WebFragment][android:host=https://p2w.brevistay.com]
App Link 资产验证 URL(https://p2w.brevistay.com/.well-known/assetlinks.json)未找到或配置不正确。(状态码:404)。应用程序链接允许用户通过 Web URL 或电子邮件直接跳转到移动应用。如果 assetlinks.json 文件缺失或主机/域配置错误,恶意应用可劫持此类 URL,导致网络钓鱼攻击,泄露 URI 中的敏感信息(如 PII、OAuth 令牌、魔术链接/重置令牌等)。请务必通过托管 assetlinks.json 文件并在 Activity 的 intent-filter 中设置 [android:autoVerify="true"] 来完成 App Link 域名验证。

高危安全漏洞 该文件是World Writable。任何应用程序都可以写入文件

该文件是World Writable。任何应用程序都可以写入文件
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#testing-local-storage-for-sensitive-data-mstg-storage-1-and-mstg-storage-2

Files:
in/juspay/hypersdk/core/AndroidInterface.java, line(s) 663
in/juspay/hypersdk/data/KeyValueStore.java, line(s) 33

高危安全漏洞 如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击

如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-7

Files:
com/clevertap/android/sdk/inapp/CTInAppBaseFullHtmlFragment.java, line(s) 159,10,11
com/clevertap/android/sdk/inapp/CTInAppBasePartialHtmlFragment.java, line(s) 169,14,15
in/juspay/hypersdk/core/DynamicUI.java, line(s) 189,500,10
in/juspay/hypersdk/safe/JuspayWebView.java, line(s) 58,9,10

高危安全漏洞 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。

应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
com/clevertap/android/sdk/cryption/AESCrypt.java, line(s) 93

高危安全漏洞 应用程序包含隐私跟踪程序

此应用程序有多个8隐私跟踪程序。跟踪器可以跟踪设备或用户,是终端用户的隐私问题。

中危安全漏洞 应用已启用明文网络流量

[android:usesCleartextTraffic=true]
应用允许明文网络流量(如 HTTP、FTP 协议、DownloadManager、MediaPlayer 等)。API 级别 27 及以下默认启用,28 及以上默认禁用。明文流量缺乏机密性、完整性和真实性保护,攻击者可窃听或篡改传输数据。建议关闭明文流量,仅使用加密协议。

中危安全漏洞 Service (com.brevistay.app.view.FirebaseMessagingServiceProxy) 未受保护。

[android:exported=true]
检测到  Service 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.splash_and_onboarding.StartingActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity-Alias (com.brevistay.app.MainActivityAlias9Anniversary) 未受保护。

[android:exported=true]
检测到  Activity-Alias 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity-Alias (com.brevistay.app.MainActivityAliasDiwali) 未受保护。

[android:exported=true]
检测到  Activity-Alias 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity-Alias (com.brevistay.app.MainActivityAliasDefault) 未受保护。

[android:exported=true]
检测到  Activity-Alias 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.login.LoginActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.main.MainActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.search.SearchActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.main.fragments.WebFragment) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.hoteldetail.HotelDetailActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.hoteldetail.HotelDetailActivityFav) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (com.brevistay.app.view.booking.CreatedBookingActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Broadcast Receiver (com.brevistay.app.view.utils.MySMSBroadcastReceiver) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.gms.auth.api.phone.permission.SEND [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity (com.brevistay.app.view.GamezopActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (in.juspay.hypersdk.core.CustomtabResult) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Activity (in.juspay.hypersdk.core.RedirectResponseActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Broadcast Receiver (com.clevertap.android.sdk.pushnotification.fcm.CTFirebaseMessagingReceiver) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Service (androidx.work.impl.background.systemjob.SystemJobService) 受权限保护,但应检查权限保护级别。

Permission: android.permission.BIND_JOB_SERVICE [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (androidx.work.impl.diagnostics.DiagnosticsReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Activity (com.facebook.CustomTabActivity) 未受保护。

[android:exported=true]
检测到  Activity 已导出,未受任何权限保护,任意应用均可访问。

中危安全漏洞 Service (com.google.android.gms.auth.api.signin.RevocationBoundService) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.gms.auth.api.signin.permission.REVOCATION_NOTIFICATION [android:exported=true]
检测到  Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护,但应检查权限保护级别。

Permission: android.permission.DUMP [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 Broadcast Receiver (com.clevertap.android.pushsdk.unregisterForContextMenu) 受权限保护,但应检查权限保护级别。

Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
检测到  Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

中危安全漏洞 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等

文件可能包含硬编码的敏感信息,如用户名、密码、密钥等
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#checking-memory-for-sensitive-data-mstg-storage-10

Files:
com/brevistay/app/models/booking_model/booking_details/holida/Data.java, line(s) 550
com/brevistay/app/models/booking_model/cancel_booking/CancellationReason.java, line(s) 51
com/brevistay/app/models/booking_model/hotel_availabilty/DayUseAvailableRoomsArrayX.java, line(s) 388
com/brevistay/app/models/booking_model/hotel_availabilty/HotelAvailabiltyRes.java, line(s) 653
com/brevistay/app/models/booking_model/hotel_availabilty/OvernightAvailableRoomsArray.java, line(s) 387
com/brevistay/app/models/booking_model/payment_options/PaymentOption.java, line(s) 117
com/brevistay/app/models/booking_model/payment_status_update/Booking.java, line(s) 1344,1344,1344,1344
com/brevistay/app/models/booking_model/payment_status_update/PayOption.java, line(s) 201
com/brevistay/app/models/booking_model/pre_booking_check/response/PData.java, line(s) 309
com/brevistay/app/models/booking_model/pre_booking_check/response/RData.java, line(s) 230
com/brevistay/app/models/booking_model/upcoming_booking/Bookings.java, line(s) 209
com/brevistay/app/models/login_model/login/LoginResFromPass.java, line(s) 189
com/brevistay/app/models/login_model/login/loginBody.java, line(s) 76
com/brevistay/app/models/login_model/verify/verifyBody.java, line(s) 126,126
com/brevistay/app/models/password_model/ChangePassBody.java, line(s) 60
com/brevistay/app/models/password_model/ChangePassViaOtpBody.java, line(s) 60
com/brevistay/app/models/search_model/hotel_details/HotelDetail.java, line(s) 442,442
com/brevistay/app/models/search_model/hotel_details/SimilarHotel.java, line(s) 123
com/brevistay/app/models/search_model/hotel_details2/HotelDetail2.java, line(s) 516,516
com/brevistay/app/models/search_model/hotel_details2/SimilarHotel.java, line(s) 165
com/brevistay/app/models/search_model/search_hotel_res/CacheData.java, line(s) 118,118
com/brevistay/app/view/booking/fragments/BookingDetailsFragmentDirections.java, line(s) 445
com/brevistay/app/view/booking/fragments/CreatedBookingDetailsFragmentDirections.java, line(s) 428
com/brevistay/app/view/booking/fragments/PayOptFragmentArgs.java, line(s) 564
com/clevertap/android/pushtemplates/PTConstants.java, line(s) 9,19,31,32,43,66
com/clevertap/android/sdk/Constants.java, line(s) 58,19,56,79,87,109,108,106,96,104,110,113,140,209,320,313,20,321,345,59,52,71,356,124,125,141
com/clevertap/android/sdk/inapp/InAppController.java, line(s) 58,62
com/clevertap/android/sdk/inapp/data/InAppResponseAdapter.java, line(s) 26,23
com/clevertap/android/sdk/inapp/store/preference/LegacyInAppStore.java, line(s) 14
com/clevertap/android/sdk/product_config/CTProductConfigConstants.java, line(s) 13
com/clevertap/android/sdk/product_config/DefaultXmlParser.java, line(s) 14
com/mixpanel/android/util/MPConstants.java, line(s) 7
com/trackier/sdk/Constants.java, line(s) 27,20
com/trackier/sdk/dynamic_link/DynamicLinkConfig.java, line(s) 145

中危安全漏洞 应用程序使用不安全的随机数生成器

应用程序使用不安全的随机数生成器
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#weak-random-number-generators

Files:
com/clevertap/android/pushtemplates/content/PendingIntentFactory.java, line(s) 19
com/clevertap/android/sdk/pushnotification/LaunchPendingIntentFactory.java, line(s) 13
com/simpl/android/fingerprint/a/a.java, line(s) 3
com/simpl/android/fingerprint/commons/exception/SimplAirbrakeNotifier.java, line(s) 26

中危安全漏洞 可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息

可能存在跨域漏洞。在 WebView 中启用从 URL 访问文件可能会泄漏文件系统中的敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#static-analysis-6

Files:
com/brevistay/app/view/main/fragments/SpclWebFragment.java, line(s) 121,79
com/brevistay/app/view/main/fragments/WebFragment.java, line(s) 115,97
in/juspay/hypersdk/safe/Godel.java, line(s) 543,530

中危安全漏洞 不安全的Web视图实现。可能存在WebView任意代码执行漏洞

不安全的Web视图实现。可能存在WebView任意代码执行漏洞
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05h-Testing-Platform-Interaction.md#testing-javascript-execution-in-webviews-mstg-platform-5

Files:
com/brevistay/app/view/main/fragments/WebFragment.java, line(s) 152,97
com/clevertap/android/sdk/inapp/CTInAppBaseFullHtmlFragment.java, line(s) 100,95
com/clevertap/android/sdk/inapp/CTInAppBasePartialHtmlFragment.java, line(s) 149,144
in/juspay/hypersdk/core/DynamicUI.java, line(s) 134,232,375,132
in/juspay/hypersdk/safe/Godel.java, line(s) 292,536,530

中危安全漏洞 MD5是已知存在哈希冲突的弱哈希

MD5是已知存在哈希冲突的弱哈希
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04g-Testing-Cryptography.md#identifying-insecure-andor-deprecated-cryptographic-algorithms-mstg-crypto-4

Files:
a/a/clarity/helpers/WebViewMutationProcessor.java, line(s) 229
a/a/clarity/managers/CaptureManager.java, line(s) 259
a/a/clarity/parsers/SkiaImageParserPostV78.java, line(s) 56
a/a/clarity/parsers/SkiaImageParserPreV78.java, line(s) 36
a/a/clarity/parsers/SkiaTypefaceParser.java, line(s) 157
com/appsflyer/internal/ag.java, line(s) 30
com/clevertap/android/sdk/cryption/AESCrypt.java, line(s) 92
in/juspay/hypersdk/security/EncryptionHelper.java, line(s) 219,239

中危安全漏洞 IP地址泄露

IP地址泄露


Files:
com/brevistay/app/view/utils/CheckInternet.java, line(s) 43
com/clevertap/android/pushtemplates/BuildConfig.java, line(s) 7
com/clevertap/android/sdk/BuildConfig.java, line(s) 7

中危安全漏洞 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库

应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04h-Testing-Code-Quality.md#injection-flaws-mstg-arch-2-and-mstg-platform-2

Files:
com/mixpanel/android/mpmetrics/MPDbAdapter.java, line(s) 7,8,9,144,153,273

中危安全漏洞 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据

应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#external-storage

Files:
com/trackier/sdk/LocalInstallReferrer.java, line(s) 52

中危安全漏洞 Firebase远程配置已启用

Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/881813271359/namespaces/firebase:fetch?key=AIzaSyB2GiSDoDBrrljCnxoXsSd1GS5_AU8kfTc ) 已启用。请确保这些配置不包含敏感信息。响应内容如下所示:

{
    "entries": {
        "APPTROVE_INIT_FLAG": "true",
        "APP_ICON_ALIAS": "9ANNIVERSARY",
        "BASE_URL": "https://cst.brevistay.com/app-api/",
        "CLARITY_INITIALIZATION_FLAG": "true",
        "IOS_APP_ICON": "BirthdayAppIcon",
        "MIXPANEL_INIT_FLAG": "true",
        "SHOW_GAMEZOP_BANNER": "true"
    },
    "state": "UPDATE",
    "templateVersion": "69"
}

中危安全漏洞 此应用可能包含硬编码机密信息

从应用程序中识别出以下机密确保这些不是机密或私人信息
"com.google.firebase.crashlytics.mapping_file_id" : "00000000000000000000000000000000"
"facebook_app_id" : "1605342326447136"
"facebook_client_token" : "8fe3bd3e89a75be7aec45b79c6e49bee"
"firebase_database_url" : "https://brevistay-69c3a.firebaseio.com"
"google_api_key" : "AIzaSyB2GiSDoDBrrljCnxoXsSd1GS5_AU8kfTc"
"google_app_id" : "1:881813271359:android:8cac9332db46b741"
"google_crash_reporting_api_key" : "AIzaSyB2GiSDoDBrrljCnxoXsSd1GS5_AU8kfTc"
"xiaomi_app_id" : "2882303761521240931"
"xiaomi_app_key" : "5872124048931"
fb68fde12f8d24307fa351f463d75d12
E3F9E1E0CF99D0E56A055BA65E241B3399F7CEA524326B0CDD6EC1327ED0FDC1
516b5df2f5874c9664a8427af0a6a322
c32e8b5260c8539f1737d2dcadb909dd
9b8f518b086098de3d77736f9458a3d2f6f95a37
ff271fe8-6329-47a2-a534-09c8baecc4c8
FFE391E0EA186D0734ED601E4E70E3224B7309D48E2075BAC46D8C667EAE7212
3BAF59A2E5331C30675FAB35FF5FFF0D116142D3D4664F1C3CB804068B40614F
a4b7452e2ed8f5f191058ca7bbfd26b0d3214bfc
783f5c5856f942e06179b45597a849f0
d06682fc-3dab-48cb-8191-5460a8adb2f3
df6b721c8b4d3b6eb44c861d4415007e5a35fc95
FBA3AF4E7757D9016E953FB3EE4671CA2BD9AF725F9A53D52ED4A38EAAA08901
685b8671c11cc80e180830f2
2deb9a2f3aae675988b12abee83c2063
8a3c4b262d721acd49a4bf97d5213199c86fa2b9
2438bce1ddb7bd026d5ff89f598b3b5e5bb824b3
cc2751449a350f668590264ed76692694a80308a
1b23aa9c635ea9f3bc69167facebe3bc
c56fb7d591ba6704df047fd98f535372fea00211

安全提示信息 应用程序记录日志信息,不得记录敏感信息

应用程序记录日志信息,不得记录敏感信息
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05d-Testing-Data-Storage.md#logs

Files:
a/a/clarity/m/a/k.java, line(s) 305
a/a/clarity/m/b/f.java, line(s) 230,272,227
a/a/clarity/m/b/m.java, line(s) 27,64,37,62,71
a/a/clarity/m/b/r.java, line(s) 78,55,71
a/a/clarity/m/b/v.java, line(s) 100,113,60
a/a/clarity/m/b/w.java, line(s) 67
a/a/clarity/utils/EntryPoint.java, line(s) 55
a/a/clarity/utils/e.java, line(s) 29,35,41,47
com/appsflyer/AFLogger.java, line(s) 50,79,129,48,14,68,61
com/brevistay/app/repositories/CreatedBookingRepo$getBookingDetails$2.java, line(s) 45
com/brevistay/app/repositories/CreatedBookingRepo$getHolidaBookingDetails$2.java, line(s) 45
com/brevistay/app/repositories/CreatedBookingRepo$getUserProfile$2.java, line(s) 43
com/brevistay/app/repositories/CreatedBookingRepo$processPayNowV2$2.java, line(s) 48
com/brevistay/app/repositories/HotelAvailabiltyRepo$createBookingJuspay$2.java, line(s) 44,46
com/brevistay/app/repositories/HotelAvailabiltyRepo$getJuspaySession$2.java, line(s) 45
com/brevistay/app/repositories/HotelAvailabiltyRepo$getPreBookingCheck$2.java, line(s) 43
com/brevistay/app/repositories/HotelAvailabiltyRepo$getTransactionStatus$2.java, line(s) 45
com/brevistay/app/repositories/HotelAvailabiltyRepo$getTransactionStatusv2$2.java, line(s) 45
com/brevistay/app/repositories/HotelAvailabiltyRepo$getUserProfile$2.java, line(s) 43
com/brevistay/app/repositories/HotelAvailabiltyRepo.java, line(s) 289,302,315
com/brevistay/app/repositories/MainRepo$changeConsent$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$changePassword$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$changePasswordViaOTP$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$editUserProfile$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$editUserProfile$4.java, line(s) 43
com/brevistay/app/repositories/MainRepo$editUserProfile$6.java, line(s) 43
com/brevistay/app/repositories/MainRepo$forgotPassword$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$getConsent$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$getMoreBookingHistory$2.java, line(s) 48
com/brevistay/app/repositories/MainRepo$getUserDetails$1.java, line(s) 82
com/brevistay/app/repositories/MainRepo$getUserProfile$2.java, line(s) 43
com/brevistay/app/repositories/MainRepo$resendMail$2.java, line(s) 43
com/brevistay/app/repositories/WalletRepo$getUserDetails$1.java, line(s) 82
com/brevistay/app/repositories/WalletRepo$getWalletTransaction$2.java, line(s) 45
com/brevistay/app/repositories/search_repo/HotelsRepository$getHotels$4.java, line(s) 52,55
com/brevistay/app/repositories/search_repo/HotelsRepository$getMoreHotels$2.java, line(s) 68
com/brevistay/app/repositories/search_repo/HotelsRepository$getMoreHotels$3.java, line(s) 68
com/brevistay/app/view/FirebaseMessagingServiceProxy.java, line(s) 35,55
com/brevistay/app/view/booking/BillSummaryAdapter.java, line(s) 85,95,122,147,148
com/brevistay/app/view/booking/CouponAdapter.java, line(s) 353,369,392,410
com/brevistay/app/view/booking/CreatedBookingActivity.java, line(s) 101,143,150,174,175,178
com/brevistay/app/view/booking/CreatedBookingActivityBACKSTACK.java, line(s) 86
com/brevistay/app/view/booking/HolidaCouponAdapter.java, line(s) 353,369,392,410
com/brevistay/app/view/booking/JuspayActivity$onCreate$1.java, line(s) 44
com/brevistay/app/view/booking/JuspayActivity$onCreate$2.java, line(s) 45
com/brevistay/app/view/booking/JuspayActivity.java, line(s) 179,209,211,251,253,258,262,297,300,304,312,342,367,369,443,481,587
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$1$1.java, line(s) 45
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$1$3.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$1$5.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$1$7.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$1$9.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$2$10.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$2$2.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$2$4.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$2$6.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$2$8.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$4$10.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$4$2.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$4$4.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$4$6.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter$onBindViewHolder$4$8.java, line(s) 42
com/brevistay/app/view/booking/PayOptAdapter.java, line(s) 261,280,361,453,551,673,769,786,867,969,1057,1189,1285,1302,1383,1485,1573
com/brevistay/app/view/booking/bottom_sheet/RatePlanDetailsBottomSheet.java, line(s) 52,53
com/brevistay/app/view/booking/dialoge/CancelBookingDialoge.java, line(s) 97,337
com/brevistay/app/view/booking/dialoge/CancelBookingDialogeHolida.java, line(s) 104,344
com/brevistay/app/view/booking/fragments/ApplyCouponFragment.java, line(s) 297,305,366,374
com/brevistay/app/view/booking/fragments/BookingCalender$setDateAndBack$job$1.java, line(s) 50
com/brevistay/app/view/booking/fragments/BookingCalender.java, line(s) 138,141,208,210
com/brevistay/app/view/booking/fragments/BookingConfirmedActivity.java, line(s) 227,235,259,274,281,322,334
com/brevistay/app/view/booking/fragments/BookingDetailsFragment$onCreate$1.java, line(s) 149
com/brevistay/app/view/booking/fragments/BookingDetailsFragment$onViewCreated$2$1.java, line(s) 43
com/brevistay/app/view/booking/fragments/BookingDetailsFragment.java, line(s) 373,392,408,424,458,644,685,704,747,748,752,758,764,769,783,797,884,885,929,930,931,951,965,1154,1242,1284,1313,1495,1567,1909,1914,2151,2210
com/brevistay/app/view/booking/fragments/BookingTime.java, line(s) 132
com/brevistay/app/view/booking/fragments/BottomOtpSheet.java, line(s) 278
com/brevistay/app/view/booking/fragments/CreatedBookingDetailsFragment$onViewCreated$1.java, line(s) 272,280,288,290,506,541,587,626,651
com/brevistay/app/view/booking/fragments/CreatedBookingDetailsFragment.java, line(s) 205,322,346
com/brevistay/app/view/booking/fragments/PayOptFragment$onViewCreated$1$1.java, line(s) 46
com/brevistay/app/view/booking/fragments/PayOptFragment.java, line(s) 89,97,109,113,151,216,219,224,226
com/brevistay/app/view/booking/fragments/ReviewFragment.java, line(s) 1158,1331,1345,1363,1370,1393
com/brevistay/app/view/booking/fragments/holida/BookingDetailsHolidaFragment.java, line(s) 656,683,684,760,782,801,862,978,1141,1146,1379,1403,1486
com/brevistay/app/view/booking/fragments/holida/HolidaGuestRoomFragment$onViewCreated$8$1.java, line(s) 45
com/brevistay/app/view/booking/fragments/holida/HolidaGuestRoomFragment.java, line(s) 328,329
com/brevistay/app/view/booking/fragments/holida/HolidaJuspayActivity$onCreate$1.java, line(s) 44
com/brevistay/app/view/booking/fragments/holida/HolidaJuspayActivity$onCreate$2.java, line(s) 46
com/brevistay/app/view/booking/fragments/holida/HolidaJuspayActivity.java, line(s) 165,173,177,186,205,207,251,253,255,257,269,272,276,284,317,368,370,442,485,591
com/brevistay/app/view/booking/fragments/holida/RoomAmenitiesFragment.java, line(s) 56
com/brevistay/app/view/booking/fragments/holida/RoomSelectionFragment.java, line(s) 249,280,281,282,283,365,394
com/brevistay/app/view/hoteldetail/HotelDetailActivity.java, line(s) 86,91,92,95,121,124,127,130
com/brevistay/app/view/hoteldetail/HotelDetailActivityFav.java, line(s) 124,134,138,189
com/brevistay/app/view/login/LoginActivity.java, line(s) 59,77
com/brevistay/app/view/login/fragments/LoginFragment$setUserAttributes$1.java, line(s) 46
com/brevistay/app/view/login/fragments/LoginFragment.java, line(s) 211,218,221,447,483,484,521,561,563,567,581,600,738,757,744,762,766,801,808
com/brevistay/app/view/login/fragments/SignUpFragment$setUserAttributes$1.java, line(s) 46
com/brevistay/app/view/login/fragments/SignUpFragment.java, line(s) 248,256,258,259,260,261,394
com/brevistay/app/view/main/BookingHistoryAdapter.java, line(s) 295
com/brevistay/app/view/main/BookingUpcomingAdapter.java, line(s) 210,274,286,291
com/brevistay/app/view/main/FavAdapter.java, line(s) 813
com/brevistay/app/view/main/HomeCardAdapter.java, line(s) 120
com/brevistay/app/view/main/InfiniteCarousalAdapter.java, line(s) 71
com/brevistay/app/view/main/MainActivity$onCreate$1.java, line(s) 46
com/brevistay/app/view/main/MainActivity.java, line(s) 273,296,348,397,400,445,1288,1309,1591,289,291
com/brevistay/app/view/main/OffersAdapter.java, line(s) 124,148,173,198,238,250,262,268
com/brevistay/app/view/main/OffersNewAdapter.java, line(s) 95,108,125,139,172,184,196,202
com/brevistay/app/view/main/RecentSearchesAdapter.java, line(s) 186,212
com/brevistay/app/view/main/TncAdapter.java, line(s) 53
com/brevistay/app/view/main/UpcomingBookingPagingSource.java, line(s) 37
com/brevistay/app/view/main/WalletFragment.java, line(s) 91,103,104,213,221
com/brevistay/app/view/main/fragments/CalenderFragment2$setDateAndBack$job$1.java, line(s) 49
com/brevistay/app/view/main/fragments/CalenderFragment2.java, line(s) 101
com/brevistay/app/view/main/fragments/CancelledBookingFragment.java, line(s) 96,202,207,243
com/brevistay/app/view/main/fragments/CustomWebViewClient.java, line(s) 25,37,47
com/brevistay/app/view/main/fragments/EditDetailsFragment.java, line(s) 321,326
com/brevistay/app/view/main/fragments/FavEditFragment.java, line(s) 152,185,295,309
com/brevistay/app/view/main/fragments/FavFragment$onViewCreated$9$1.java, line(s) 55
com/brevistay/app/view/main/fragments/FavFragment.java, line(s) 169,214,216,309,356,373,398,407,469
com/brevistay/app/view/main/fragments/HideBookingsDialoge$onViewCreated$1$1.java, line(s) 38
com/brevistay/app/view/main/fragments/HideBookingsDialoge.java, line(s) 111,128
com/brevistay/app/view/main/fragments/HomeFragment$onCreateView$1.java, line(s) 42
com/brevistay/app/view/main/fragments/HomeFragment$onResume$1.java, line(s) 56
com/brevistay/app/view/main/fragments/HomeFragment$onViewCreated$2.java, line(s) 58
com/brevistay/app/view/main/fragments/HomeFragment$onViewCreated$4$1.java, line(s) 168,181,291,328,406,442,549,557,584
com/brevistay/app/view/main/fragments/HomeFragment$onViewCreated$5$1.java, line(s) 145,158,292,404
com/brevistay/app/view/main/fragments/HomeFragment.java, line(s) 146,160,176,205,225,377,341,365
com/brevistay/app/view/main/fragments/OffersFragment.java, line(s) 142,268
com/brevistay/app/view/main/fragments/PreviousBookingFragment.java, line(s) 220,223,227,241,247,253,322
com/brevistay/app/view/main/fragments/ProfileFragment$onViewCreated$7$1.java, line(s) 42
com/brevistay/app/view/main/fragments/ProfileFragment.java, line(s) 423,449,456,459,484
com/brevistay/app/view/main/fragments/ReferAndEarnFragment.java, line(s) 146,192
com/brevistay/app/view/main/fragments/SettingsFragment.java, line(s) 210
com/brevistay/app/view/main/fragments/UpComingBookingFragment$loadNextDataFromApi$1.java, line(s) 57
com/brevistay/app/view/main/fragments/UpComingBookingFragment$onViewCreated$1$1.java, line(s) 54
com/brevistay/app/view/main/fragments/UpComingBookingFragment$onViewCreated$2$1.java, line(s) 57
com/brevistay/app/view/main/fragments/UpComingBookingFragment.java, line(s) 163,169,298,306,342,350,361,379,414,416
com/brevistay/app/view/main/fragments/WebFragment.java, line(s) 154,155,167,256,311,348,355,395,399,412,416
com/brevistay/app/view/main/fragments/fav_date_time/FavDateFragment.java, line(s) 189,277,280,290,293,296
com/brevistay/app/view/main/fragments/fav_date_time/FavTimeFragment.java, line(s) 118,159,163,170,175,179
com/brevistay/app/view/main/fragments/forgetpass/ForgotPassFragment.java, line(s) 275
com/brevistay/app/view/main/fragments/userdetails_bootms_sheets/ui/EditEmailFragment.java, line(s) 223
com/brevistay/app/view/main/fragments/userdetails_bootms_sheets/ui/EditNameFragment.java, line(s) 221
com/brevistay/app/view/search/AreaAdapter$onBindViewHolder$1.java, line(s) 65
com/brevistay/app/view/search/AreaAdapter.java, line(s) 130,131,145,146,171
com/brevistay/app/view/search/BannerAdapter.java, line(s) 54
com/brevistay/app/view/search/CityListAdapter.java, line(s) 128,130,160,192,193,194,197,201,202,211,212,218
com/brevistay/app/view/search/RecentSearchesAdapter2.java, line(s) 86,200
com/brevistay/app/view/search/SearchActivity$ApplyFilters$2.java, line(s) 46
com/brevistay/app/view/search/SearchActivity$ClearFilters$2.java, line(s) 46
com/brevistay/app/view/search/SearchActivity$onCreate$1.java, line(s) 129,132
com/brevistay/app/view/search/SearchActivity.java, line(s) 139,141,158,160,213,223,232,236,243,253,257,267,270,274
com/brevistay/app/view/search/SearchResAdapter.java, line(s) 423,1004
com/brevistay/app/view/search/fragments/AmFragment$onViewCreated$1$12.java, line(s) 76
com/brevistay/app/view/search/fragments/AmFragment$onViewCreated$2$1$1.java, line(s) 59
com/brevistay/app/view/search/fragments/AmFragment$onViewCreated$3$12.java, line(s) 76
com/brevistay/app/view/search/fragments/AmFragment$setSelected$1.java, line(s) 54,72
com/brevistay/app/view/search/fragments/AmFragment$setSelected2$1.java, line(s) 51
com/brevistay/app/view/search/fragments/AmFragment$setSelected3$1.java, line(s) 53
com/brevistay/app/view/search/fragments/AmFragment.java, line(s) 370,406,500,505,526,562,656,661,716
com/brevistay/app/view/search/fragments/AmenitiesFragment.java, line(s) 91
com/brevistay/app/view/search/fragments/CalenderFragment$onViewCreated$DayViewContainer.java, line(s) 83
com/brevistay/app/view/search/fragments/CalenderFragment$setDateAndBack$job$1.java, line(s) 49
com/brevistay/app/view/search/fragments/CalenderFragment.java, line(s) 109,125,183,191,193,258,336
com/brevistay/app/view/search/fragments/HotelDetailFragment$onViewCreated$11$1.java, line(s) 316,342,291
com/brevistay/app/view/search/fragments/HotelDetailFragment.java, line(s) 195,207,212,248,253,378,533,706,728,729,732,734,747,765,779,780,781,823,889,1087,1088,1144,1145,1185,1186,1238,1239,1850,2032
com/brevistay/app/view/search/fragments/PmFragment$onViewCreated$2$1$1.java, line(s) 60
com/brevistay/app/view/search/fragments/PmFragment.java, line(s) 425,538,661,704
com/brevistay/app/view/search/fragments/SearchListFragment$onCreateView$1$1.java, line(s) 56
com/brevistay/app/view/search/fragments/SearchListFragment$onCreateView$1$2.java, line(s) 59
com/brevistay/app/view/search/fragments/SearchListFragment.java, line(s) 159,194,200,201,230,350,366,393,395,427,433,439,373,377
com/brevistay/app/view/search/fragments/SearchListTime$onViewCreated$4$6.java, line(s) 76
com/brevistay/app/view/search/fragments/SearchListTime.java, line(s) 162,285,299,301,311,321,330
com/brevistay/app/view/search/fragments/SearchResFragment$loadNextDataFromApi$1.java, line(s) 89,90
com/brevistay/app/view/search/fragments/SearchResFragment$onCreateView$6.java, line(s) 46,53
com/brevistay/app/view/search/fragments/SearchResFragment.java, line(s) 128,141,166,189,232,258,271,284,374,409,439,549,646,673,866,893,898,1027,1034,1040,1057,245
com/brevistay/app/view/search/fragments/SortFragment.java, line(s) 74,264,288,312,336,360,384,411
com/brevistay/app/view/search/fragments/bottomsheets/QuickViewSheet.java, line(s) 139,196,286,353,426,438
com/brevistay/app/view/search/fragments/stand_Alone/CalenderFragment_StandAlone$setDateAndBack$job$1.java, line(s) 49
com/brevistay/app/view/search/fragments/stand_Alone/CalenderFragment_StandAlone.java, line(s) 110,125,138,153,197,205,213,215,284,369
com/brevistay/app/view/search/fragments/stand_Alone/CityListFragment_standAlone$onViewCreated$4$1.java, line(s) 56
com/brevistay/app/view/search/fragments/stand_Alone/CityListFragment_standAlone.java, line(s) 240,286,288,323,329,335
com/brevistay/app/view/search/fragments/stand_Alone/SearchListTime_StandAlone.java, line(s) 162,249,257,271,282,292,302
com/brevistay/app/view/search/sort_filters/CategoryFragment.java, line(s) 354
com/brevistay/app/view/search/sort_filters/FiltersMotionLayout.java, line(s) 217,372,394,405,427
com/brevistay/app/view/search/sort_filters/LocationFilterFragment$filter$job$1.java, line(s) 52,61
com/brevistay/app/view/search/sort_filters/LocationFilterFragment.java, line(s) 80,85,90,168,265
com/brevistay/app/view/search/sort_filters/PriceRangeFragment.java, line(s) 411,225,226,246,247
com/brevistay/app/view/search/sort_filters/RatingFilterFragment.java, line(s) 70,77,109,278
com/brevistay/app/view/splash_and_onboarding/StartingActivity.java, line(s) 211,290
com/brevistay/app/view/splash_and_onboarding/fragments/CustomViewPager2.java, line(s) 27
com/brevistay/app/view/splash_and_onboarding/fragments/OnBoardFragment_1.java, line(s) 24
com/brevistay/app/view/utils/AppSignatureHelper.java, line(s) 110,66,118
com/brevistay/app/view/utils/MySMSBroadcastReceiver.java, line(s) 54
com/brevistay/app/view/utils/OtpEditText.java, line(s) 72
com/brevistay/app/view/utils/TimeUtils.java, line(s) 72,128,133,152,186,188,215,225
com/brevistay/app/viewmodels/booking_viewmodel/BookingViewModel.java, line(s) 154,309,334,613,685,739
com/brevistay/app/viewmodels/booking_viewmodel/CreatedBookingViewModel.java, line(s) 129,138,263,275
com/brevistay/app/viewmodels/main_viewmodel/MainViewModel.java, line(s) 147,220,225,354,360,366
com/brevistay/app/viewmodels/search_viewmodel/HotelDetailsViewModel.java, line(s) 80
com/brevistay/app/viewmodels/search_viewmodel/SearchHotelViewModel.java, line(s) 267,273,279,285,291
com/brevistay/app/viewmodels/wallet_viewmodel/WalletViewModel.java, line(s) 43
com/cardreader/card_reader_lib/CardTask.java, line(s) 48,51,100,102,104,109,113,117,120,150,178,180,195,199,234
com/cardreader/card_reader_lib/xutils/EmvTerminal.java, line(s) 21
com/clevertap/android/pushtemplates/PTLog.java, line(s) 23,41,29,47,35,53
com/clevertap/android/pushtemplates/PTPushNotificationReceiver.java, line(s) 34,41,45
com/clevertap/android/pushtemplates/PushTemplateNotificationHandler.java, line(s) 37,41
com/clevertap/android/pushtemplates/PushTemplateReceiver.java, line(s) 321,105,123,149,153,250,264,306,446,538
com/clevertap/android/pushtemplates/TemplateRenderer.java, line(s) 636,663,505,582
com/clevertap/android/pushtemplates/Utils.java, line(s) 175,186,272,291,308,436,498,517,532,536,343,352,364,368,225
com/clevertap/android/pushtemplates/checkers/IntSizeChecker.java, line(s) 50,55
com/clevertap/android/pushtemplates/checkers/JsonArraySizeChecker.java, line(s) 47
com/clevertap/android/pushtemplates/checkers/ListEqualSizeChecker.java, line(s) 48
com/clevertap/android/pushtemplates/checkers/ListSizeChecker.java, line(s) 48
com/clevertap/android/pushtemplates/checkers/StringSizeChecker.java, line(s) 53
com/clevertap/android/pushtemplates/content/AutoCarouselContentView.java, line(s) 50
com/clevertap/android/pushtemplates/content/ContentView.java, line(s) 65
com/clevertap/android/pushtemplates/content/ManualCarouselContentView.java, line(s) 70,136
com/clevertap/android/pushtemplates/content/PendingIntentFactory.java, line(s) 389
com/clevertap/android/pushtemplates/content/ProductDisplayLinearBigContentView.java, line(s) 193
com/clevertap/android/pushtemplates/styles/InputBoxStyle.java, line(s) 110
com/clevertap/android/pushtemplates/styles/TimerStyle.java, line(s) 69
com/clevertap/android/sdk/Logger.java, line(s) 12,18,24,30,89,97,101,108,115,36,42,48,54,122,129,136,143,60,66,72,78,150,158,162,169,176
com/clevertap/android/sdk/displayunits/CTDisplayUnitType.java, line(s) 35
com/clevertap/android/sdk/product_config/DefaultXmlParser.java, line(s) 30,36,51,65
com/clevertap/android/sdk/response/CleverTapResponse.java, line(s) 11
com/iarcuschin/simpleratingbar/SimpleRatingBar.java, line(s) 83,174,629,872,878
com/miui/referrer/commons/LogUtils.java, line(s) 21,30,22,31
com/mixpanel/android/mpmetrics/AnalyticsMessages.java, line(s) 396,238,371,418,443,448,450,277,281,409
com/mixpanel/android/mpmetrics/ConfigurationChecker.java, line(s) 24,17,23
com/mixpanel/android/mpmetrics/MPConfig.java, line(s) 204
com/mixpanel/android/mpmetrics/MPDbAdapter.java, line(s) 265,305,348,351,364,376,84,97
com/mixpanel/android/mpmetrics/MixpanelAPI.java, line(s) 1306,1308,1310,1312,1322,1325,1328,1331,1335,157,314,328,335,346,471,500,568,760,781,805,817,827,845,857,869,883,907,921,935,949,974,988,1059,1079,1091,1101,1119,1131,1145,1159,1173,1183,1222,1255,1277,1298,622,686,305,403,477,506,544,553,758,762,787,833,1107
com/mixpanel/android/mpmetrics/PersistentIdentity.java, line(s) 77,101,115,139,172,175,324,326,338,341,369,372,406,408,443,451,457,481,483,490,500,502,520,522,532,534,542,545,560,562,440,494,95
com/mixpanel/android/mpmetrics/ResourceReader.java, line(s) 94,99,112,111
com/mixpanel/android/mpmetrics/SessionMetadata.java, line(s) 49
com/mixpanel/android/mpmetrics/SessionReplayBroadcastReceiver.java, line(s) 39,38
com/mixpanel/android/util/HttpService.java, line(s) 50,57,60,72
com/mixpanel/android/util/MPLog.java, line(s) 36,42,72,78,48,54,24,30,60,66
com/simpl/android/fingerprint/SimplFingerprint.java, line(s) 21
com/simpl/android/fingerprint/a/d.java, line(s) 24,34,48
com/simpl/android/fingerprint/a/l.java, line(s) 44,191
com/simpl/android/fingerprint/commons/exception/SimplAirbrakeNotifier.java, line(s) 118,342,125,131,255,275,281,344
com/simpl/android/fingerprint/commons/utils/VersionUtil.java, line(s) 20,25,30
com/trackier/sdk/TrackierSDK$createDynamicLink$1.java, line(s) 91
com/trackier/sdk/TrackierSDK.java, line(s) 93
com/trackier/sdk/Util.java, line(s) 428,459
in/juspay/hyper/core/JuspayLogger.java, line(s) 22,31,41,50,59
in/juspay/hypersdk/core/AndroidInterface.java, line(s) 117,708,896
org/androidannotations/api/BackgroundExecutor.java, line(s) 141
org/androidannotations/api/ViewServer.java, line(s) 70,114,124,217,233,437,448,520
org/androidannotations/api/sharedpreferences/SetXmlSerializer.java, line(s) 60,63
org/koin/android/logger/AndroidLogger.java, line(s) 59,69,71,63,67

安全提示信息 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它

此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x04b-Mobile-App-Security-Testing.md#clipboard

Files:
com/brevistay/app/view/main/fragments/EditDetailsFragment.java, line(s) 4,398,399
com/brevistay/app/view/main/fragments/OfferDetailFragment.java, line(s) 5,317,318
com/brevistay/app/view/main/fragments/ReferAndEarnFragment.java, line(s) 4,262,263
com/clevertap/android/sdk/inbox/CTInboxButtonClickListener.java, line(s) 4,74
in/juspay/hypersdk/core/JBridge.java, line(s) 8,576

安全提示信息 应用程序可以写入应用程序目录。敏感信息应加密

应用程序可以写入应用程序目录。敏感信息应加密


Files:
com/microsoft/clarity/models/DynamicConfig.java, line(s) 52,52
com/trackier/sdk/Util.java, line(s) 145
in/juspay/hypersdk/services/Workspace.java, line(s) 58,58

安全提示信息 应用与Firebase数据库通信

该应用与位于 https://brevistay-69c3a.firebaseio.com 的 Firebase 数据库进行通信

已通过安全项 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击

此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05g-Testing-Network-Communication.md#testing-custom-certificate-stores-and-certificate-pinning-mstg-network-4

Files:
com/brevistay/app/DI/AppModuleKt.java, line(s) 60,60
com/brevistay/app/models/Retrofithelper.java, line(s) 33,37,33,37
com/clevertap/android/sdk/network/http/UrlConnectionHttpClient.java, line(s) 193,191,193,190,184,184
com/trackier/sdk/APIRepository.java, line(s) 30,40,50,30,40,50
in/juspay/hypersdk/security/HyperSSLSocketFactory.java, line(s) 32,24,31,30,30

已通过安全项 此应用程序可能具有Root检测功能

此应用程序可能具有Root检测功能
https://github.com/OWASP/owasp-mstg/blob/master/Document/0x05j-Testing-Resiliency-Against-Reverse-Engineering.md#testing-root-detection-mstg-resilience-1

Files:
com/brevistay/app/view/utils/DeviceUtils.java, line(s) 14
in/juspay/hypersdk/data/SessionInfo.java, line(s) 122,126

综合安全基线评分总结

应用图标

Brevistay v5.8.2

Android APK
47
综合安全评分
中风险