diff --git a/conf/arm.conf b/conf/arm.conf index 6e186fb..195b794 100644 --- a/conf/arm.conf +++ b/conf/arm.conf @@ -18,6 +18,10 @@ pattern=geteuid [adb] pattern=sbin/adb +[anti-frida] +pattern=gum-js-loop|frida-helper|frida-server|frida-agent|re.frida.server|linjector|gdbus|frida-gadget|pool-frida|frida-main-loop|frida_agent_main|pool-spawner|DetectFrida +description=Anti runtime analysis - Detect frida framework + [pm_install] pattern=pm install diff --git a/conf/smali.conf b/conf/smali.conf index d9e038f..ebd0d0a 100644 --- a/conf/smali.conf +++ b/conf/smali.conf @@ -420,6 +420,10 @@ description=Creates a socket. Used to communicate... pattern= const-string v[0-9]*, ".*ssh.*" description=Application uses SSH +[ssl_pinning] +pattern= javax/net/ssl/X509TrustManager;->checkClientTrusted | javax/net/ssl/X509TrustManager;->checkServerTrusted | javax/net/ssl/X509TrustManager;->getAcceptedIssuers | javax/net/ssl/HostnameVerifier;->verify | okhttp/CertificatePinner;->check | okhttp3/CertificatePinner;->check | javax/net/ssl/HttpsURLConnection;->setDefaultHostnameVerifier | javax/net/ssl/HttpsURLConnection;->setSSLSocketFactory | javax/net/ssl/HttpsURLConnection;->setHostnameVerifier | android/webkit/WebViewClient;->onReceivedSslError | org/apache/cordova/CordovaWebViewClient;->onReceivedSslError +description=Application uses SSL Pinning to secure connection + [ssid] pattern=android/net/wifi/WifiInfo;->getSSID description=Retrieves SSID used by Wifi