-
Notifications
You must be signed in to change notification settings - Fork 1.7k
[GSoC] Upgrade Android analysis components #2845
base: master
Are you sure you want to change the base?
Conversation
Adding integration for Frida and a bunch of analysis features for the analyzer..
as we would normally need to query the authentication token which is created as user-read-only so ideally, we need to issue the kill command using the root user to be able to read the token
The current way of handling behavioral events is that one 'process' event needs to be sent before handling any other events. In case of Android, we have more than one behaviral log with separate handlers. So the best way to remedy this is by emitting a process event for each handler.. that way the other handlers can recognize the process
after I build it, submit a sample analysis analysis.log 2020-06-09 13:00:11,335 [lib.core.Frida] ERROR: ReferenceError: methodName is not defined https://github.com/muhzii/cuckoo/blob/master/cuckoo/data/analyzer/android/lib/core/agent.js#L697 I tried to change it to "klass[hookConfig.method].overloads[0].implementation = function () {" Still error: |
Thanks for contributing! But first: did you read our community guidelines?
https://cuckoo.sh/docs/introduction/community.html
What I have added/changed is:
The goal of my change is:
What I have tested about my change is:
There is a write-up/ summary about the work done in these upgrades: https://gist.github.com/muhzii/a65334123880d808f33dc01a24c0e5fa