mirror of
https://github.com/mvt-project/mvt.git
synced 2024-07-01 08:29:03 +00:00
Compare commits
6 Commits
efdc26e54b
...
429e29222d
Author | SHA1 | Date | |
---|---|---|---|
|
429e29222d | ||
|
1182587094 | ||
|
ad3bc3470e | ||
|
2c5ae696b1 | ||
|
5d2ff32e3a | ||
|
2838bac63f |
|
@ -72,7 +72,7 @@ def version():
|
||||||
is_flag=True,
|
is_flag=True,
|
||||||
help="Extract all packages installed on the phone, including system packages",
|
help="Extract all packages installed on the phone, including system packages",
|
||||||
)
|
)
|
||||||
@click.option("--virustotal", "-v", is_flag=True, help="Check packages on VirusTotal")
|
@click.option("--virustotal", "-V", is_flag=True, help="Check packages on VirusTotal")
|
||||||
@click.option(
|
@click.option(
|
||||||
"--output",
|
"--output",
|
||||||
"-o",
|
"-o",
|
||||||
|
|
|
@ -12,7 +12,7 @@ from .base import AndroidQFModule
|
||||||
|
|
||||||
|
|
||||||
class DumpsysAccessibility(DumpsysAccessibilityArtifact, AndroidQFModule):
|
class DumpsysAccessibility(DumpsysAccessibilityArtifact, AndroidQFModule):
|
||||||
"""This module analyse dumpsys accessbility"""
|
"""This module analyses dumpsys accessibility"""
|
||||||
|
|
||||||
def __init__(
|
def __init__(
|
||||||
self,
|
self,
|
||||||
|
|
|
@ -10,7 +10,7 @@ from .version import MVT_VERSION
|
||||||
|
|
||||||
|
|
||||||
def check_updates() -> None:
|
def check_updates() -> None:
|
||||||
# First we check for MVT version udpates.
|
# First we check for MVT version updates.
|
||||||
mvt_updates = MVTUpdates()
|
mvt_updates = MVTUpdates()
|
||||||
try:
|
try:
|
||||||
latest_version = mvt_updates.check()
|
latest_version = mvt_updates.check()
|
||||||
|
|
|
@ -3,4 +3,4 @@
|
||||||
# Use of this software is governed by the MVT License 1.1 that can be found at
|
# Use of this software is governed by the MVT License 1.1 that can be found at
|
||||||
# https://license.mvt.re/1.1/
|
# https://license.mvt.re/1.1/
|
||||||
|
|
||||||
MVT_VERSION = "2.4.5"
|
MVT_VERSION = "2.5.0"
|
||||||
|
|
|
@ -964,6 +964,10 @@
|
||||||
"version": "16.7.3",
|
"version": "16.7.3",
|
||||||
"build": "20H232"
|
"build": "20H232"
|
||||||
},
|
},
|
||||||
|
{
|
||||||
|
"version": "16.7.4",
|
||||||
|
"build": "20H240"
|
||||||
|
},
|
||||||
{
|
{
|
||||||
"version": "17.0",
|
"version": "17.0",
|
||||||
"build": "21A327"
|
"build": "21A327"
|
||||||
|
@ -1007,5 +1011,9 @@
|
||||||
{
|
{
|
||||||
"version": "17.2",
|
"version": "17.2",
|
||||||
"build": "21C62"
|
"build": "21C62"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"version": "17.2.1",
|
||||||
|
"build": "21C66"
|
||||||
}
|
}
|
||||||
]
|
]
|
|
@ -44,7 +44,7 @@ class SMS(IOSExtraction):
|
||||||
def serialize(self, record: dict) -> Union[dict, list]:
|
def serialize(self, record: dict) -> Union[dict, list]:
|
||||||
text = record["text"].replace("\n", "\\n")
|
text = record["text"].replace("\n", "\\n")
|
||||||
sms_data = f"{record['service']}: {record['guid']} \"{text}\" from {record['phone_number']} ({record['account']})"
|
sms_data = f"{record['service']}: {record['guid']} \"{text}\" from {record['phone_number']} ({record['account']})"
|
||||||
sms_data = [
|
records = [
|
||||||
{
|
{
|
||||||
"timestamp": record["isodate"],
|
"timestamp": record["isodate"],
|
||||||
"module": self.__class__.__name__,
|
"module": self.__class__.__name__,
|
||||||
|
@ -54,7 +54,7 @@ class SMS(IOSExtraction):
|
||||||
]
|
]
|
||||||
# If the message was read, we add an extra event.
|
# If the message was read, we add an extra event.
|
||||||
if record["isodate_read"]:
|
if record["isodate_read"]:
|
||||||
sms_data.append(
|
records.append(
|
||||||
{
|
{
|
||||||
"timestamp": record["isodate_read"],
|
"timestamp": record["isodate_read"],
|
||||||
"module": self.__class__.__name__,
|
"module": self.__class__.__name__,
|
||||||
|
@ -62,7 +62,7 @@ class SMS(IOSExtraction):
|
||||||
"data": sms_data,
|
"data": sms_data,
|
||||||
}
|
}
|
||||||
)
|
)
|
||||||
return sms_data
|
return records
|
||||||
|
|
||||||
def check_indicators(self) -> None:
|
def check_indicators(self) -> None:
|
||||||
for message in self.results:
|
for message in self.results:
|
||||||
|
|
Binary file not shown.
|
@ -17,7 +17,7 @@ class TestSMSModule:
|
||||||
m = SMS(target_path=get_ios_backup_folder())
|
m = SMS(target_path=get_ios_backup_folder())
|
||||||
run_module(m)
|
run_module(m)
|
||||||
assert len(m.results) == 1
|
assert len(m.results) == 1
|
||||||
assert len(m.timeline) == 1
|
assert len(m.timeline) == 2
|
||||||
assert len(m.detected) == 0
|
assert len(m.detected) == 0
|
||||||
|
|
||||||
def test_detection(self, indicator_file):
|
def test_detection(self, indicator_file):
|
||||||
|
|
Loading…
Reference in New Issue
Block a user