muellerberndt / frida-detection

A couple of methods for detecting Frida on Android.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Frida Detection Examples

Some random ideas for detecting Frida instrumentation from within a process:

  • Scan all local TCP ports, sending a D-Bus message to each port to identify fridaserver.
  • Scan text sections for a string found inside frida-gadget*.so / frida-agent*.so. File operations are implemented in ASM so prevent easy bypassing with libc function hooks.

These examples were developed to accompany a blog post. Note that copy/pasting this into your own code will not guarantee any meaningful protection.

About

A couple of methods for detecting Frida on Android.


Languages

Language:C 52.1%Language:C++ 23.1%Language:Java 11.0%Language:CMake 10.0%Language:Assembly 3.8%