Diva App

Step 1:- Download "Diva App" In "Your Phone".


Step 2:- In "Fast Task" Credit Card Number To Find It. Open "WPS And adb logcat" Commend Perfume It. You Can See "Card Number" Is "Display" In "WPS".

Step 3:- In "Second Task" Find The "Key" Of It Using The "jadx gui".

Step 4:- In "Third Task" "Insecure Data Storage" System To Get "Data" Using "WPS". Open WPS And Type "cd data/data/jakhar.aseem.diva/shared_prefs/jakhar.aseem.diva_preferences.xml". You Can See "User Name" And "Password Display".

Step 5:- In "Fourth Task" Insecure Data Storage System To Get Data Using "WPS". Open WPS And Type "cd data/data/jakhar.aseem.diva/database/ls". After "Select sqlite3" ids2 Inside .tables Perfume "select * from myuser" After ;. You Can See "User Name And Password" Display.


Step 6:- In "Fifth Task" Insecure Data Storage System To Get Data Using "WPS". Open WPS And Type "cd data/data/jakhar.aseem.diva/ls". And Perfume "cat uinfo". You Can See "User Name And Password Display".

Step 7:- Fast Give Permission File Stord. In "Six Task" Insecure Data Storage System To Get Data Using "WPS". Open WPS And Type "cd data/data/mnt/sdcard/ls -al". And Perfume "cat .uinfo.txt". You Can See "User Name And Password Display".

Step 8:- In "Seventh Task" "Input Validation Issues" System  You Type "1’or’1’=’1" Is Alves "True". You Can See "User Name And Password Display".


Step 9:- In "Eight Task" Input Validation Issues System You Can "Create A File" In Data In Side Data "Test.txt" File Insert “This is a secret file”. You Can Use "URL" Like "file:///data/data/test.txt" Now You See Inside test "File Is Display".

Step 10:- In "Nineth Task" "Access Control Validation" You Can Open File Using "adb shell" am "start -n jakhar.aseem.diva/.APICreds2Activity" Commend. You Can See "Diva App Open Automatic" And "Bay Pass Access Control".

Step 11:- In "Tenth Task" Access Control Validation You Can Open File Using "adb shell" am "start -n jakhar.aseem.diva/.APICreds2Activity --ez "check_pin" false" Commend. You Can See Diva App Open "Automatic And Bay Pass" Access Control.

Step 12:- In "Eleventh Task" Access Control Validation You Can Open File Using "adb shell" content "query --uri content://jakhar.aseem.diva.provider.notesprovider/notes" Commend. You Can See Diva App Open Automatic And "Bay Pass" Access Control.


Step 13:- In "Twelve Task" Find The Key Of It Using abd shell type "unzip diva-beta.apk" type "cd lib" inside lib type "String libdivajni.so" Commend.

Step 14:- In "Thirteen Task" "Input Validation Issues" System You Can "Insert N Number" Of "Input" In Task App Is "Stop" Also.

Comments

Popular posts from this blog

OSINT Tool in Termux

Active Directory Ransomware Attacks

How to perform a Man-in-the-middle (MITM) attack with Kali Linux