Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

High-level security issue detected by MobSF #305

Open
FredJul opened this issue Apr 30, 2021 · 1 comment
Open

High-level security issue detected by MobSF #305

FredJul opened this issue Apr 30, 2021 · 1 comment

Comments

@FredJul
Copy link

FredJul commented Apr 30, 2021

Hi,

MobSF (https://github.com/MobSF/Mobile-Security-Framework-MobSF) a static analyser, detected a high-level security issue :

Broadcast Receiver(org.matomo.sdk.extra.InstallReferrerReceiver) is not Protected. [android:exported=true]

A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.

It is maybe possible to simply fix it by specifying "android:exported=false".

@CemGalioglu
Copy link

Any updates on this?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants