WIKI

13.6 root代码检测

(1)描述

检查app是否有执行检测root环境的代码

(2)检测方法

检测类型:静态分析

Example Java code:

  Runtime rr = Runtime.getRuntime();

  Process p = rr.exec("su");

  

Example Bytecode code (The same bytecode for those two Java code):

  const-string v2, "su"

  invoke-virtual {v1, v2}, Ljava/lang/Runtime;->exec(Ljava/lang/String;)Ljava/lang/Process;

(3)风险等级

提示