当前位置:首页 > 报告详情

我的另一个类加载器就是你的类加载器:创建类的邪恶孪生实例.pdf

上传人: 竿*** 编号:981576 2025-11-29 44页 4.25MB

1、#BHEU BlackHatEventsMy other ClassLoader Is Your ClassLoaderDimitrios Valsamaras Microsoft Threat Intelligence#BHEU BlackHatEventsAbout MeAbout Me Engaged in computer security since 2002 Focus on Mobile Security for the last 6 years Senior Security Researcher MicrosoftCh0pin/Ch0pin/in/valsamaras#BHE

2、U BlackHatEventsOutlineOutline How it ended Showcases Takeaways How it started Basic Concepts Common security issues How it was going#BHEU BlackHatEventsBasic ConceptsBasic ConceptsClassLoader ConceptsTypesBootstrapUD 1UD 1UD 1UD 0UD:User Defined#BHEU BlackHatEventsBasic ConceptsBasic ConceptsClassL

3、oaderBootClassLoaderBaseDexClassLoaderPathClassLoaderInMemoryDexClassLoaderDexClassLoaderSecureClassLoaderDalvik VMARTd8(.class).dex .apk#BHEU BlackHatEventsParcelables&SerializablesParcelables&SerializablesByte streamByte streamclass A implements java.io.Serializable class A class path JVM-BJVM-A#B

4、HEU BlackHatEventsParcelables&SerializablesParcelables&SerializablesObtainedRecycled#BHEU BlackHatEventsKnown IssuesKnown IssuesSerializablesParcelablesCVE-2014-7911(Jan Horn)CVE-2015-3825(Peles&Hay)CVE-2017-0806(M.Bednarski)?CVE-2021-0928(M.Bednarski)android.os.BinderProxyOpenSSLX509Certificate#BHE

5、U BlackHatEventsHow it startedHow it started#BHEU BlackHatEventsHow it startedHow it started#BHEU BlackHatEventsHow it startedHow it startedParcelablehttps:/https:/ BlackHatEventsHow it was goingHow it was going#BHEU BlackHatEventsHow it was goingHow it was goingLets reconstruct the class#BHEU Black

6、HatEventsHow it was goingHow it was going#BHEU BlackHatEventsHow it was goingHow it was goingGet the dex/apk filesUse dex 2 jarImport the jar to the project#BHEU BlackHatEventsHow it was goingHow it was going#BHEU BlackHatEventsHow it was goingHow it was going#BHEU BlackHatEventsHow it was goingHow

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据报告的内容,全文主要内容概括如下: - **作者背景**:Dimitrios Valsamaras,自2002年起从事计算机安全领域,专注于移动安全6年,现为微软高级安全研究员。 - **核心概念**:ClassLoader,特别是Android中的ClassLoader,如何加载和执行代码。 - **ClassLoader类型**:Bootstrap ClassLoader, BaseDexClassLoader, PathClassLoader, InMemoryDexClassLoader, DexClassLoader, SecureClassLoader。 - **安全漏洞**:CVE-2014-7911, CVE-2015-3825, CVE-2017-0806, CVE-2021-0928。 - **攻击方式**:Intent Redirection, Account Hijacking, Code Execution。 - **影响行业**:零售与电子商务、旅游与酒店、媒体与娱乐、金融服务。 - **关键数据**:31%的应用存在漏洞,69%的应用不受影响。 - **建议**:避免在导出组件中暴露Parcelable或Serializable对象,注意ClassLoader的使用。 关键点: - ClassLoader在Android安全中的重要性。 - 存在的安全漏洞和攻击方式。 - 行业受影响情况。 - 安全建议。
安全漏洞知多少?" "如何避免应用间的ClassLoader风险?" 如何防范账户劫持?"
客服
商务合作
小程序
服务号
折叠