[PoC] com.android.bbkmusic — file:// read via shouldOverrideUrlLoading bypass
shared_prefs/MMKVUtils_Importing_SP_Status.xml
shared_prefs/list_sort_sp.xml
shared_prefs/push_setting_pref.xml
shared_prefs/wire_headset_pref.xml
shared_prefs/bluetooth_or_headset_pref.xml
databases/ (目录列举)
files/ (目录列举)
枚举 /data/data/com.android.bbkmusic/ 根目录
/proc/self/maps (进程内存映射)
/proc/self/cmdline (进程名)
直接跳转 push_setting_pref.xml(整个 WebView 导航)
直接跳转 /proc/self/cmdline
Result:
Ready. Click a target to attempt file read.
[waiting for input]