Erik Derr

Results 14 comments of Erik Derr

It seems that the TreeSet implementation throws a NPE if `contains()` is called with the `null` argument. This could be easily fixed by explicitly checking for `null`. Could you please...

Well, it depends :) There are different obfuscation and optimization methods available for ProGuard. LibScout is robust against some of these techniques. On a high level, as soon as the...

Do I understand this correctly, the respective OkHttp version is found but no security indicator is shown in the results? The security-related library versions are not hardcoded in the LibScout...

I just tried to download the list. Apparently, you dumped all entries from the jcenter index. There are many items that do not have a single valid version or are...

You are right, that error msg is thrown by WALA. It does not find the root class Object that is typically included in the android.jar. You can check the following...

The json output currently includes two fields "isOriginalPackageName" and "libRootPackage". The latter one is the root package as detected in the app. If it differs from the original one identified...

Please check the README. - You can use the Library History Scraper to download libraries and create profiles that LibScout can use for detection. - The Android SDK (android.jar) can...

library-profile-generator.sh is just a convenience script that runs the library profiling mode on every library it finds. The default output directory for the profiles is "./profiles". Can you manually run...

Thanks for the hint. The problem is that different tools might use different notations. JVM uses the Lfoo/bar notation, which is equivalent to foo.bar . Similarly, arrays can either be...

ATM, I only have a partial dataset for api26. I'll try to provide a full set asap, but can't promise anything right now.