sgInnora / alipay-deeplink-research
PublicAlipay DeepLink + JSBridge Security Research - 17 Verified Vulnerabilities | 支付宝DeepLink安全研究 | Full Report: innora.ai/zfb
This project shares details of security weaknesses found in how Alipay handles special links and web pages inside the app, with safe example demos and a responsible reporting history.
How It Works
You hear about security issues in the Alipay app from a news article or friend.
Click over to the project's website or GitHub page to check it out.
Scan the clear summary, tables of problems found, and story of what was discovered.
Open the harmless demo pages that show how tricky links could cause trouble, all displayed right on your screen.
Tap the example links in your browser to see them launch safely in Alipay without any real risk.
Follow the timeline of how the finder responsibly shared findings with the company first.
You now grasp these app risks and value good security practices in everyday apps.
Star Growth
Repurpose is a Pro feature
Generate ready-to-use prompts for X threads, LinkedIn posts, blog posts, YouTube scripts, and more -- with full repo context baked in.
Unlock RepurposeSimilar repos coming soon.