Skip to content

Instantly share code, notes, and snippets.

@dweinstein
Created August 27, 2019 16:00
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save dweinstein/b35b829719080a4dd8cd942d4a1c7f2a to your computer and use it in GitHub Desktop.
Save dweinstein/b35b829719080a4dd8cd942d4a1c7f2a to your computer and use it in GitHub Desktop.
onMessage
onMessage
automation
onMessage
ispy-console 2019-08-27 10:34:23.706613-0500 OfferUp[3150:69885] TIC SSL Trust Error [79:0x1c4376c80]: 3:0
ispy-console 2019-08-27 10:34:23.707447-0500 OfferUp[3150:69885] NSURLSession/NSURLConnection HTTP load failed (kCFStreamErrorDomainSSL, -9813)
2019-08-27 10:34:23.707847-0500 OfferUp[3150:69885] Task <85C2A93B-4CDD-4AE5-98FA-A42808ACDCD2>.<1> HTTP load failed (error code: -1202 [3:-9813])
ispy-console 2019-08-27 10:34:23.708246-0500 OfferUp[3150:70071] Task <85C2A93B-4CDD-4AE5-98FA-A42808ACDCD2>.<1> finished with error - code: -1202
ispy-console 2019-08-27 10:34:23.716173-0500 OfferUp[3150:69885] TIC SSL Trust Error [80:0x1c037e840]: 3:0
ispy-console 2019-08-27 10:34:23.716880-0500 OfferUp[3150:69885] NSURLSession/NSURLConnection HTTP load failed (kCFStreamErrorDomainSSL, -9813)
ispy-console 2019-08-27 10:34:23.717402-0500 OfferUp[3150:69885] Task <8DE67010-F13C-464C-AED7-DBCE46769105>.<1> HTTP load failed (error code: -1202 [3:-9813])
ispy-console 2019-08-27 10:34:23.717911-0500 OfferUp[3150:70017] Task <8DE67010-F13C-464C-AED7-DBCE46769105>.<1> finished with error - code: -1202
onMessage
automation
onMessage
onMessage
automation
ispy-console 2019-08-27 10:34:26.884417-0500 OfferUp[3150:68856] [Crashlytics:Crash] WARNING: CLSLog has been used before (or concurrently with) Crashlytics initialization and cannot be recorded. The message was:
User: Login-Select Tap OULogin
ispy-console 2019-08-27 10:34:27.057241-0500 OfferUp[3150:70071] TIC SSL Trust Error [81:0x1c4376c80]: 3:0
ispy-console 2019-08-27 10:34:27.057629-0500 OfferUp[3150:70071] NSURLSession/NSURLConnection HTTP load failed (kCFStreamErrorDomainSSL, -9813)
2019-08-27 10:34:27.057750-0500 OfferUp[3150:70071] Task <C328F76A-1733-4B1C-B598-5C84E5F63C10>.<16> HTTP load failed (error code: -1202 [3:-9813])
2019-08-27 10:34:27.057932-0500 OfferUp[3150:70066] Task <C328F76A-1733-4B1C-B598-5C84E5F63C10>.<16> finished with error - code: -1202
ispy-console 2019-08-27 10:34:27.058817-0500 OfferUp[3150:70066] ERROR: R:0x1c01cbb80 token auth failed with Error Domain=NSURLErrorDomain Code=-1202 "The certificate for this server is invalid. You might be connecting to a server that is pretending to be “api.offerup.com” which could put your confidential information at risk." UserInfo={NSURLErrorFailingURLPeerTrustErrorKey=<SecTrustRef: 0x1c0118c90>, NSLocalizedRecoverySuggestion=Would you like to connect to the server anyway?, _kCFStreamErrorDomainKey=3, _kCFStreamErrorCodeKey=-9813, NSErrorPeerCertificateChainKey=(
"<cert(0x108976000) s: *.offerup.com i: mitmproxy>",
"<cert(0x108976600) s: mitmproxy i: mitmproxy>"
), NSUnderlyingError=0x1c0a4c4e0 {Error Domain=kCFErrorDomainCFNetwork Code=-1202 "(null)" UserInfo={_kCFStreamPropertySSLClientCertificateState=0, kCFStreamPropertySSLPeerTrust=<SecTrustRef: 0x1c0118c90>, _kCFNetworkCFStreamSSLErrorOriginalValue=-9813, _kCFStreamErrorDomainKey=3, _kCFStreamErrorCodeKey=-9813, kCFStreamPropertySSLPeerCertificates
ispy-console =(
"<cert(0x108976000) s: *.offerup.com i: mitmproxy>",
"<cert(0x108976600) s: mitmproxy i: mitmproxy>"
)}}, NSLocalizedDescription=The certificate for this server is invalid. You might be connecting to a server that is pretending to be “api.offerup.com” which could put your confidential information at risk., NSErrorFailingURLKey=https://api.offerup.com/api/auth/v1/channel_auth?, NSErrorFailingURLStringKey=https://api.offerup.com/api/auth/v1/channel_auth?, NSErrorClientCertificateStateKey=0}
onMessage
onMessage
automation
onMessage
automation
ispy-console 2019-08-27 10:34:30.451224-0500 OfferUp[3150:70066] TIC SSL Trust Error [82:0x1c4378300]: 3:0
ispy-console 2019-08-27 10:34:30.452293-0500 OfferUp[3150:70066] NSURLSession/NSURLConnection HTTP load failed (kCFStreamErrorDomainSSL, -9813)
2019-08-27 10:34:30.452957-0500 OfferUp[3150:70066] Task <8D8A4449-FC70-4FA3-B1FB-E89C8753949A>.<6> HTTP load failed (error code: -1202 [3:-9813])
ispy-console 2019-08-27 10:34:30.453348-0500 OfferUp[3150:70087] Task <8D8A4449-FC70-4FA3-B1FB-E89C8753949A>.<6> finished with error - code: -1202
ispy-console 2019-08-27 10:34:30.455029-0500 OfferUp[3150:70066] W/Apptentive: [Apptentive Main Queue] [NETWORK] POST https://api.apptentive.com/conversations failed with error (Error Domain=NSURLErrorDomain Code=-1202 "The certificate for this server is invalid. You might be connecting to a server that is pretending to be “api.apptentive.com” which could put your confidential information at risk." UserInfo={NSURLErrorFailingURLPeerTrustErrorKey=<SecTrustRef: 0x1c430ce70>, NSLocalizedRecoverySuggestion=Would you like to connect to the server anyway?, _kCFStreamErrorDomainKey=3, _kCFStreamErrorCodeKey=-9813, NSErrorPeerCertificateChainKey=(
"<cert(0x105a24800) s: *.apptentive.com i: mitmproxy>",
"<cert(0x1059de200) s: mitmproxy i: mitmproxy>"
), NSUnderlyingError=0x1c0a4f6f0 {Error Domain=kCFErrorDomainCFNetwork Code=-1202 "(null)" UserInfo={_kCFStreamPropertySSLClientCertificateState=0, kCFStreamPropertySSLPeerTrust=<SecTrustRef: 0x1c430ce70>, _kCFNetworkCFStreamSSLErrorOriginalValue=-9813, _kCFStreamErrorDoma
ispy-console inKey=3, _kCFStreamErrorCodeKey=-9813, kCFStreamPropertySSLPeerCertificates=(
"<cert(0x105a24800) s: *.apptentive.com i: mitmproxy>",
"<cert(0x1059de200) s: mitmproxy i: mitmproxy>"
)}}, NSLocalizedDescription=The certificate for this server is invalid. You might be connecting to a server that is pretending to be “api.apptentive.com” which could put your confidential information at risk., NSErrorFailingURLKey=https://api.apptentive.com/conversations, NSErrorFailingURLStringKey=https://api.apptentive.com/conversations, NSErrorClientCertificateStateKey=0}).
ispy-console 2019-08-27 10:34:30.456721-0500 OfferUp[3150:70066] I/Apptentive: [Apptentive Main Queue] POST https://api.apptentive.com/conversations will retry in 70.066940 seconds.
onMessage
onMessage
automation
onMessage
onMessage
onMessage
onMessage
ispy error
onError
error running app
cleaning up
error running pass
Cleaning up after pass
mitm disconnected
all analysis passes complete
analysis aggregate errors collected
PARENT got done message from task child
handled passes
handled nsq message
uninstalling app
Job complete
signaling done back to parent
Job handled
child process should be exiting now
disconnect received from parent
child process should be exiting
child disconnect event
Uninstalling
Uninstalled
uninstalled
setProxy
Performing child cleanup
CHILD ran successfully
discarding job due to attempt count
config
handling nsq, sending ready to parent
PARENT got ready message
CHILD got parent message
mounted disk image
Task initialized
preparing job job
prepared filesystem for task
Using AppStore (INTEL) workflow
prepared job, re-signing ipa if needed...
Skipping re-signing app as app is coming from appstore
Skipping re-signing runner due to: No runner to sign
re-signed ipa if needed
got task message for device
starting pass
Running pass
running job pass
setProxy
installing app
running appmgr to install app
Logging in iosintel002@gmail.com...
Logging in
Logged in
Purchasing
Purchased
Downloading
download progress
download progress
download progress
download progress
download progress
download progress
download progress
download progress
download progress
download progress
Downloaded
Patching
Patched
Installing
Installed
Removing /tmp/appmgr/724c96d2-c835-4ca0-a696-58f2a288e5d8
running unfair
stdout [*] Dumping Payload
stdout [i] Requesting app's file listing...
stdout [i] Found 1176 files.
stdout [i] Found 0 appex.
stderr Unhandled Rejection at: Promise Promise { <rejected> Error: Script is destroyed } reason: [Error: Script is destroyed]
dump all exit event
closed
unfair failure
stderr Error: Cannot spawn app
at AppDumper.<anonymous> (/opt/node_modules/@viaforensics/unfair/lib/appdumper.js:233:15)
at Generator.next (<anonymous>)
at onFulfilled (/opt/node_modules/co/index.js:65:19)
dump all exit event
closed
unfair failure
stderr Error: Cannot spawn app
at AppDumper.<anonymous> (/opt/node_modules/@viaforensics/unfair/lib/appdumper.js:233:15)
at Generator.next (<anonymous>)
at onFulfilled (/opt/node_modules/co/index.js:65:19)
dump all exit event
closed
unfair failure
dumping app
setProxy
starting analysis
logo
using config path
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
onMessage
ispy error
onError
error running app
cleaning up
Cleaning up after pass
mitm disconnected
failed to handle passes
child process indicated frida-server is hosed, will try rebooting device for re-jb
giving up on job
giving up on job
handled nsq message
uninstalling app
Job complete
signaling done back to parent
Job handled
child process should be exiting now
disconnect received from parent
disconnected from the distributor
child process indicated a job failure
giving up on job
child process should be exiting
child disconnect event
stdout Restarting device.
reboot executable exited
closed
reboot executed successfully
sent reboot command, now waiting for device to reboot
Appmgr error
Unhandled Rejection
Performing child cleanup
CHILD had non-zero exit
giving up on job
task config
Initializing task
polling port 22
polling port 22
polling port 22
polling port 22
polling port 22
gave up trying to get tunnel
check jb status
device does not appear jailbroken (no SSH connectivity)
running app org.coolstar.electra '/opt/node_modules/.bin/lldb-launch' -t 30000 9a2051447bb570e66330676d4ac3e7bd7423f2b4 'org.coolstar.electra'
polling port 22
polling port 22
polling port 22
polling port 22
polling port 22
polling port 22
polling port 22
polling port 22
status after autoJb
SSH
uname irelay 2222
Status for pkgs: frida
Package manifest after actions
Verified packages
OK
mounted patched disk image
device networking info
Obtained healthy looking frida device
task connecting to distributor
client connected successfully
discarding job due to attempt count
config
handling nsq, sending ready to parent
PARENT got ready message
CHILD got parent message
Uninstalling
Uninstalled
mounted disk image
Task initialized
preparing job job
prepared filesystem for task
Using AppStore (INTEL) workflow
prepared job, re-signing ipa if needed...
Skipping re-signing app as app is coming from appstore
Skipping re-signing runner due to: No runner to sign
re-signed ipa if needed
got task message for device
starting pass
Running pass
running job pass
setProxy
installing app
running appmgr to install app
Logging in iosintel002@gmail.com...
Logging in
Logged in
Purchasing
Server dialog: [MZCommerce.ConfirmPaymentSheet.Auth] Sign In to App Store
Logging in iosintel002@gmail.com again...
Logging in
Logged in
Purchasing
Purchased
Downloading
download progress
download progress
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment