检测内容
TODO:
部分要点:
绕过脚本参考:
- anti_fgets();
- anti_exit();
- anti_fork();
- anti_kill();
- anti_ptrace();
签名校验之类:
系统:
- frida syscalls https://github.com/FrenchYeti/frida-syscall/blob/main/index.js
- frida syscalls https://github.com/AeonLucid/frida-syscall-interceptor
写的修改系统源码:
https://blog.csdn.net/weixin_42453905/article/details/122462984?spm=1001.2014.3001.5501