비오비

8/4[김재기멘토님]

sonysame 2019. 8. 4. 16:02

1. Path Traversal

GET 

Cookie: TEMPLATE=../../../../../../../etc/passwd


2. Drive-by Download attack


theori.io/reserach/cve-2016-0189

CVE-2016-0189


WifiHs20UtilityService

-> Running with system uid is monitoring file operations on the /sdcard/Download/


inotify-tools


KOODOUS



악성앱 분석