The method of grabbing signature encryption algorithm by sig3 crawler
This article mainly explains "the method of sig3 crawler grabbing signature encryption algorithm". Interested friends may wish to have a look. The method introduced in this paper is simple, fast and practical. Next let the editor to take you to learn "sig3 crawler crawl signature encryption algorithm method" it!
Reverse analysis of sig3 parameters in multiple versions of Kuaishou has been updated: in version 7.27.67.7, we need to analyze sig3 parameters, so search for relevant references in ida directly, skip the details, and if you don't understand, you can add me to communicate with you and we'll take a look at the general process first.
Sig3 is more complex than dy, including the way dynamic libraries are loaded. JniOnload does not need to spend much time to study, the direct hook register method can get the function address of doCommandNative. In addition, there is a high probability that there are some flower instructions to write scripts to fix. The key point is that the address of the function forwarded according to command within doCommandNative is dynamically registered. At that time, their signatures did not use VMP, and it mainly took some time to spend instructions and code expansion.
At this point, I believe that everyone on the "sig3 crawler crawling signature encryption algorithm method" have a deeper understanding, might as well to the actual operation of it! Here is the website, more related content can enter the relevant channels to inquire, follow us, continue to learn!