• After 15+ years, we've made a big change: Android Forums is now Early Bird Club. Learn more here.

App Protector - hacked - critical security flaw

unl0cker

Lurker
Security tools should protect those things they are there for. Much too often they don't. Another example is Protector for Alexander Kosenkov

It's recovery system is prone to a simple keygen attack (and thats not the only security flaw!). The needed key to unlock the app can be easily generated with the attached tool. The source code is attached too! See here for the interesting part Java | /** * Super secret recovery - Unl0cker - efNYtsCF - Pastebin.com

Obfuscation is never real security!
 

Attachments

Back
Top Bottom