FileInject.java 5.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144
  1. package de.tudarmstadt.informatik.hostage.protocol.cifs;
  2. import android.content.Context;
  3. import android.content.SharedPreferences;
  4. import android.net.DhcpInfo;
  5. import android.net.wifi.WifiManager;
  6. import android.preference.PreferenceManager;
  7. import java.net.InetAddress;
  8. import de.tudarmstadt.informatik.hostage.Hostage;
  9. import de.tudarmstadt.informatik.hostage.Listener;
  10. import de.tudarmstadt.informatik.hostage.R;
  11. import de.tudarmstadt.informatik.hostage.commons.HelperUtils;
  12. import de.tudarmstadt.informatik.hostage.location.MyLocationManager;
  13. import de.tudarmstadt.informatik.hostage.logging.AttackRecord;
  14. import de.tudarmstadt.informatik.hostage.logging.Logger;
  15. import de.tudarmstadt.informatik.hostage.logging.MessageRecord;
  16. import de.tudarmstadt.informatik.hostage.logging.NetworkRecord;
  17. import de.tudarmstadt.informatik.hostage.logging.SyncDevice;
  18. import de.tudarmstadt.informatik.hostage.ui.activity.MainActivity;
  19. /**
  20. * Class to detect file injection
  21. */
  22. public class FileInject {
  23. private Listener fListener;
  24. SharedPreferences fpref;
  25. private int attack_id;
  26. private String externalIP;
  27. private String BSSID;
  28. private String SSID;
  29. private int subnetMask;
  30. private int internalIPAddress;
  31. private boolean logged;
  32. //Sets listener for file injection attacks
  33. public Listener getListener() {
  34. return fListener;
  35. }
  36. public void startListner(Listener fListener) {
  37. this.fListener = fListener;
  38. Hostage service = fListener.getService();
  39. fpref = PreferenceManager.getDefaultSharedPreferences(service);
  40. getAndIncrementAttackID(fpref);
  41. SharedPreferences connInfo = service.getSharedPreferences(service.getString(R.string.connection_info), Context.MODE_PRIVATE);
  42. BSSID = connInfo.getString(service.getString(R.string.connection_info_bssid), null);
  43. SSID = connInfo.getString(service.getString(R.string.connection_info_ssid), null);
  44. externalIP = connInfo.getString(service.getString(R.string.connection_info_external_ip), null);
  45. // we need this info to find out whether the attack was internal
  46. subnetMask = connInfo.getInt(service.getString(R.string.connection_info_subnet_mask), 0);
  47. internalIPAddress = connInfo.getInt(service.getString(R.string.connection_info_internal_ip), 0);
  48. logged = false;
  49. }
  50. public int getLocalIp() {
  51. WifiManager wifi = (WifiManager) MainActivity.context.getSystemService(Context.WIFI_SERVICE);
  52. DhcpInfo dhcp = wifi.getDhcpInfo();
  53. return dhcp.ipAddress;
  54. }
  55. private synchronized void getAndIncrementAttackID(SharedPreferences pref) {
  56. SharedPreferences.Editor editor = pref.edit();
  57. attack_id = pref.getInt("ATTACK_ID_COUNTER", 0);
  58. editor.putInt("ATTACK_ID_COUNTER", attack_id + 1);
  59. editor.commit();
  60. }
  61. public MessageRecord createMessageRecord(MessageRecord.TYPE type, String packet) {
  62. MessageRecord record = new MessageRecord(true);
  63. record.setAttack_id(attack_id);
  64. record.setType(type);
  65. record.setTimestamp(System.currentTimeMillis());
  66. record.setPacket(packet);
  67. return record;
  68. }
  69. public AttackRecord createAttackRecord(int localPort, InetAddress remoteIP, int remotePort) {
  70. AttackRecord record = new AttackRecord();
  71. record.setAttack_id(attack_id);
  72. record.setSync_id(attack_id);
  73. record.setDevice(SyncDevice.currentDevice().getDeviceID());
  74. record.setProtocol("FILE INJECTION");
  75. record.setExternalIP(externalIP);
  76. record.setLocalIP(CifsServer.intToInetAddress(getLocalIp()).getHostAddress());
  77. record.setLocalPort(localPort);
  78. record.setWasInternalAttack((HelperUtils.packInetAddress(remoteIP.getAddress()) & subnetMask) == (internalIPAddress & subnetMask));
  79. record.setRemoteIP(remoteIP.getHostAddress());
  80. record.setRemotePort(remotePort);
  81. record.setBssid(BSSID);
  82. return record;
  83. }
  84. public NetworkRecord createNetworkRecord() {
  85. NetworkRecord record = new NetworkRecord();
  86. record.setBssid(BSSID);
  87. record.setSsid(SSID);
  88. if (MyLocationManager.getNewestLocation() != null) {
  89. record.setLatitude(MyLocationManager.getNewestLocation().getLatitude());
  90. record.setLongitude(MyLocationManager.getNewestLocation().getLongitude());
  91. record.setAccuracy(MyLocationManager.getNewestLocation().getAccuracy());
  92. record.setTimestampLocation(MyLocationManager.getNewestLocation().getTime());
  93. } else {
  94. record.setLatitude(0.0);
  95. record.setLongitude(0.0);
  96. record.setAccuracy(Float.MAX_VALUE);
  97. record.setTimestampLocation(0);
  98. }
  99. return record;
  100. }
  101. public void log(MessageRecord.TYPE type, String packet, int localPort, InetAddress remoteIP, int remotePort) {
  102. if (!logged) {
  103. Logger.log(Hostage.getContext(), createNetworkRecord());
  104. Logger.log(Hostage.getContext(), createAttackRecord(localPort, remoteIP, remotePort));
  105. logged = true;
  106. }
  107. if (packet != null && packet.length() > 0) { // prevent logging empty packets
  108. Logger.log(Hostage.getContext(), createMessageRecord(type, packet));
  109. }
  110. }
  111. }