Вы находитесь на странице: 1из 19

(DEAD) (LIVE)

INFOSECURITY RUSSIA 2012


-


,





/ API-

.


Type

BB Smartphone

BB PlayBook

Android

/
/

SMS/EMAIL/IM-


:
,

:
, ,
LIVE-

:
BLACKBERRY ( )
ANDROID (
)
ANDROIDa

PUSH
:

BLACKBERRY SMARTPHONE
PUSH
+ EXCHANGE
BLACKBERRY TABLET
IMAP4, POP3 + EXCHANGE
ACTIVESYNC
ANDROID GOOGLE SYNC,
IDLE, IMAP4, POP3 +
EXCHANGE ACTIVESYNC

GUI:

BLACKBERRY SMARTPHONE

,

BLACKBERRY TABLET, ANDROID

-
/ ;
,


BLACKBERRY
ASCII

,
(ELCOMSOFT)
ANDROID
PATTERN LOCK ACCESS
PIN ROOT
ASCII ROOT

ELCOMSOFT
BLACKBERRY
,




ROOT
(ANDROID)
GESTURE.KEY, PC.KEY




API (ANDROID)


()

()


(BLACKBERRY)
FAKE- ()


, ,
SDK
:
, , EXE- + ,
, (BB SMARTPHONE)
Wi-Fi, EXE- + ,
(BB TABLET)
- , ,
, (ANDROID)
:
+ (BB
SMARTPHONE)
, , (BB TABLET)
, API (ANDROID)

DEVICE INFORMATION
> PHYSICAL ADDRESS:
E8:XX:XX:XX:XX:XX
> DEVICE OS: BLACKBERRY PLAYBOOK
OS
> DEVICE PIN: 500XXXXX
> OS VERSION: 2.0.1.668
INTERNET CONNECTION
> IP ADDRESS: 192.168.1.31
> SUBNET MASK: 255.255.255.0
> DEFAULT GATEWAY: 192.168.1.1
> PRIMARY DNS: 192.168.1.1
> DOMAIN SUFFIX:
> MTU: 1500
> PROXY SERVER/PORT:

WI-FI INFORMATION
> STATUS: CONNECTED
> FAILURE REASON:
> PROFILE NAME: XXXX
> SSID: XXXX
> CHANNEL: 11
> AP MAC ADDRESS:
48:XX:XX:XX:XX:XX
> SECURITY TYPE: WPA2
PERSONAL
> SIGNAL LEVEL: -41 DBM
> CONNECTION DATA RATE:
65 MBPS
> NETWORK TYPE: 802.11G/N


EXIF

RIM/BLACKBERRY/ANDR
OID/HTC

EXIF
,
,
, EXIF


IMG20120103-XXXX
MOSKVA


VN-20120319-XXXX.AMR
/ M4A 20120319
-
VID-YYYYMMDDXXXXXX.3GP / MP4

LIVE
API
BLACKBERRY (EMAIL, ,
, ,
. )
ANDROID SQL DB VCARD,
FB, TWITTER
/DATA/DATA/COM.FACEBOOK/FB.DB
API SD-CARD
, , , ,
SQL DB,
EXIF ,
EXIF GEO

LIVE
+ IM API SD-CARD
IM (BLACKBERRY)
| ID | ID | |

(BLACKBERRY)
SQL DB MMS

/DATA/DATA/COM.ANDROID.PROVIDERS.TELEPHONY

PASSWORD HAPPENS

API-: GetClipboard(), GetData(), GetText()

LIVE

LIVE


DEAD LIVE
,




LIVE

DEAD , LIVE
, ,



,
HAKIN9 MAGAZINE