Coder Social home page Coder Social logo

Comments (13)

gs666 avatar gs666 commented on June 2, 2024 28

不用检测,你用安卓,且手机上有拼多多,那么你就中招了

from pinduoduo_backdoor.

tolcol avatar tolcol commented on June 2, 2024 7

文章中已经说了

Android 近年来累计已修复上百个这类漏洞,并在 Android 13 中对 Parcel 机制做了改革,彻底杜绝了大部分此类攻击面。
但对于鸿蒙和绝大部分未升级到 Android 13 的设备和用户来说,他们仍处于危险之中。

from pinduoduo_backdoor.

jingyuexing avatar jingyuexing commented on June 2, 2024 3

文章中已经说了

Android 近年来累计已修复上百个这类漏洞,并在 Android 13 中对 Parcel 机制做了改革,彻底杜绝了大部分此类攻击面。
但对于鸿蒙和绝大部分未升级到 Android 13 的设备和用户来说,他们仍处于危险之中。

我更想知道 用adb是不是能查出来这个木马的后台程序

from pinduoduo_backdoor.

Gunkkk avatar Gunkkk commented on June 2, 2024 2

全员🤡

from pinduoduo_backdoor.

mymistoe avatar mymistoe commented on June 2, 2024 2

安卓系统全员中招,没啥好检测的。

from pinduoduo_backdoor.

yurenchen000 avatar yurenchen000 commented on June 2, 2024 1

adb shell dumpsys package com.xunmeng.pinduoduo | grep versionName

几年前装过,不知道手机有没有留下病根

from pinduoduo_backdoor.

LBV2012-26 avatar LBV2012-26 commented on June 2, 2024

文章中已经说了

Android 近年来累计已修复上百个这类漏洞,并在 Android 13 中对 Parcel 机制做了改革,彻底杜绝了大部分此类攻击面。
但对于鸿蒙和绝大部分未升级到 Android 13 的设备和用户来说,他们仍处于危险之中。

我更想知道 用 adb 是不是能查出来这个木马的后台程序

想知道+1

from pinduoduo_backdoor.

wangyuan0217 avatar wangyuan0217 commented on June 2, 2024

Android13安全

from pinduoduo_backdoor.

WeissRu avatar WeissRu commented on June 2, 2024

文章中已经说了

Android 近年来累计已修复上百个这类漏洞,并在 Android 13 中对 Parcel 机制做了改革,彻底杜绝了大部分此类攻击面。
但对于鸿蒙和绝大部分未升级到 Android 13 的设备和用户来说,他们仍处于危险之中。

这说的只是有可能,从找漏洞到利用要花时间的。
目前下发的配置能攻击安全更新低于2022-12-01的设备。
所以大概每次安全更新不要落后超过一个月应该没问题?

from pinduoduo_backdoor.

lovelyjuice avatar lovelyjuice commented on June 2, 2024

6.2.0版本开始的,也就是2022年3月初,那会儿安卓13还没正式发布

from pinduoduo_backdoor.

yurenchen000 avatar yurenchen000 commented on June 2, 2024

要是能有直接的方法检测就好了,
比如卸载之后 还残留啥服务或进程, 能不能检测到

from pinduoduo_backdoor.

hamflx avatar hamflx commented on June 2, 2024

有没有老哥给个办法检测卸载后pdd后的鸿蒙OS上还有没有后门。

from pinduoduo_backdoor.

touchmii avatar touchmii commented on June 2, 2024

安装了不一定就会发起攻击,要判断的话可以改成自建DNS或者设置socks代理抓包看看有没有出现pdd相关的请求,我之前听说是play版没有这个问题可能是他不会大范围发起攻击,中招的人就比较少,实则本身还是内置了病毒。

from pinduoduo_backdoor.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.