0/63

Threat

com.microsoft.todos

To Do

Analyzed on 2021-10-18T07:41:57.169021

16

permissions

49

activities

21

services

18

receivers

59

domains

File sums

MD5 3caba41095fa212d7c55cf6fb403bfc6
SHA1 771a13131af9f6465040e38fd009bc1d9e9c7dc8
SHA256 32fcc4b4101b27b5c4cdfe2cb2c4c50054613f5ea8a211138af7933ac168a8dc
Size 20.01MB

APKiD

Information computed with APKiD.

/tmp/tmp56dut3if!classes.dex
anti_vm
  • Build.FINGERPRINT check
  • Build.MODEL check
  • Build.MANUFACTURER check
  • Build.PRODUCT check
  • possible Build.SERIAL check
  • network operator name check
anti_debug
  • Debug.isDebuggerConnected() check
compiler
  • r8
/tmp/tmp56dut3if!classes2.dex
anti_vm
  • Build.MANUFACTURER check
compiler
  • r8 without marker (suspicious)

SSdeep

Information computed with ssdeep.

APK file 393216:Z2Vy9NoVbEG2m9FdarJoKD7p9iL8aGmS3PS4ZZV3Ag0JStfEAtH:ZxuVb92CiND7p9iE5PSiZVd0JEfTtH
Manifest 768:fIeey8y6AkRxcKE6XHBbi5WMIxSbqUQt+ITmOefW+J3yNMAav1opcKFBQcJGCp7W:…
classes.dex 98304:an9YgoO/tRdQv3pEvmR8uuuGj/amhQxg4azM/z99HT:a91rRdQPpYmRlOCU+7T
classes2.dex 24576:UaJMocFCInLs6FhClJ6vVhtzodpHxzXZCiQ9xxWPh6nQQ5sWrZxd1DVr/4JVGb6…

Dexofuzzy

Information computed with Dexofuzzy.

APK file 12288:pP2pe0c7lq7Va67Pt0XWljPPxnIhXa1c9zzM:J2pt7400epIhXa1F
classes.dex 6144:pQN7usYgTM2nGagD076SFM7lq7B68HVa6d5dtZr0ErSeuGfUXHk:pP2pe0c7lq7V…
classes2.dex 3072:kptsljmltqNVvPxn/H/lyU4hXa96uxc2tMmGecNbzzUIkL:hljddPxnkfhXaCYc9…

APK details

Information computed with AndroGuard and Pithus.

Package com.microsoft.todos
App name To Do
Version name 2.54.219
Version code 219
SDK 21 - 30
UAID 6327395baa48c63fe665e29b2874e048d257d8c3
Signature Signature V1 Signature V2
Frosting Not frosted
Blocks found within V2 signature:
  • 0x7109871a: Unknown

Certificate details

Information computed with AndroGuard.

MD5 bc7de72f3fe2e0645233efb9917c6bcd
SHA1 05861fde0ccacd6eec8d91db6e0f22c257748532
SHA256 2848361a9c1e32df1d3e2ed6a7b9e67a525cf8a13b164f8006c9479578f746de
Issuer Common Name: Microsoft Corporation Third Party Marketplace Root, Organization: Microsoft Corporation, Locality: Redmond, State/Province: Washington, Country: US
Not before 2010-10-05T22:02:28+00:00
Not after 2035-10-05T22:09:33+00:00
MD5 128b29dcfc10059a52c2b7c8a39504b5
SHA1 20183796ab8b63add2bc4ebf512008ba6279cb42
SHA256 5fa5e6be06d6fb983f262ece6134c52608450cb11dc30612f78059d8e769aca1
Issuer Common Name: Microsoft Corporation Third Party Marketplace PCA, Organization: Microsoft Corporation, Locality: Redmond, State/Province: Washington, Country: US
Not before 2015-12-10T22:01:58+00:00
Not after 2034-09-26T22:01:58+00:00
MD5 8439748a4d2c09e95e2b8acdab653c6d
SHA1 155d434f0e34f140a795a4864a2531133e528f3a
SHA256 b17e8201b128e1e74cc023510ab7ea03ac27dde50d32d810ea1577758f1cc098
Issuer Common Name: Microsoft Corporation Third Party Marketplace Root, Organization: Microsoft Corporation, Locality: Redmond, State/Province: Washington, Country: US
Not before 2010-10-08T23:15:35+00:00
Not after 2034-10-08T23:25:35+00:00

File Analysis

Information computed with MobSF.

Findings Files
Certificate/Key files hardcoded inside the app. okhttp3/internal/publicsuffix/NOTICE

Manifest analysis

Information computed with MobSF.

High Activity (com.microsoft.todos.deeplinks.DeepLinkActivity) is not Protected.An intent-filter exists.
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported.
High Activity (com.microsoft.todos.search.SearchActivity) is not Protected.An intent-filter exists.
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported.
High Activity (com.microsoft.todos.ui.takenote.NoteToSelfActivity) is Protected by a permission, but the protection level of the permission should be checked.
Permission: com.google.android.gm.permission.AUTO_SEND [android:exported=true]
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.
High Activity (com.microsoft.todos.ui.newtodo.NewTodoActivity) is not Protected.An intent-filter exists.
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported.
High Activity (com.microsoft.todos.widget.configuration.WidgetConfigurationActivity) is not Protected.An intent-filter exists.
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported.
High Broadcast Receiver (com.microsoft.todos.sync.AlarmSyncBootReceiver) is not Protected.An intent-filter exists.
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported.
High Broadcast Receiver (com.microsoft.todos.reminder.AlarmReceiver) is not Protected. [android:exported=true]
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
High Broadcast Receiver (com.microsoft.todos.reminder.AlarmBootReceiver) is not Protected.An intent-filter exists.
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported.
High Broadcast Receiver (com.microsoft.todos.widget.WidgetProvider) is not Protected.An intent-filter exists.
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported.
High Service (com.microsoft.todos.tile.ToDoTile) is Protected by a permission, but the protection level of the permission should be checked.
Permission: android.permission.BIND_QUICK_SETTINGS_TILE [android:exported=true]
A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.
High Service (com.microsoft.intune.mam.client.notification.MAMNotificationReceiverService) is not Protected. [android:exported=true]
A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
High Broadcast Receiver (com.microsoft.intune.mam.client.service.MAMBackgroundReceiver) is not Protected.An intent-filter exists.
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported.
High Service (com.microsoft.tokenshare.TokenSharingService) is not Protected. [android:exported=true]
A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
High Service (androidx.work.impl.background.systemjob.SystemJobService) is Protected by a permission, but the protection level of the permission should be checked.
Permission: android.permission.BIND_JOB_SERVICE [android:exported=true]
A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.
High Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) is Protected by a permission, but the protection level of the permission should be checked.
Permission: com.google.android.c2dm.permission.SEND [android:exported=true]
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.

Browsable activities

Information computed with MobSF.

com.microsoft.todos.deeplinks.DeepLinkActivity

Hosts: to-do.microsoft.com sharing settings search myday inbox list wunderlist-import-code

Schemes: https:// ms-to-do://

Main Activity

Information computed with AndroGuard.

com.microsoft.todos.ui.LaunchActivity

Activities

Information computed with AndroGuard.

com.microsoft.todos.ui.LaunchActivity
com.microsoft.todos.deeplinks.DeepLinkActivity
com.microsoft.todos.ui.ShortcutLaunchActivity
com.microsoft.todos.onboarding.StartActivity
com.microsoft.todos.ui.TodoMainActivity
com.microsoft.todos.search.SearchActivity
com.microsoft.todos.auth.MsaSignInActivity
com.microsoft.todos.detailview.DetailViewActivity
com.microsoft.todos.settings.SettingsActivity
com.microsoft.todos.account.ManageAccountsActivity
com.microsoft.todos.onboarding.AddAccountActivity
com.microsoft.todos.sharing.options.SharingOptionsActivity
com.microsoft.todos.settings.termsprivacy.TermsAndPrivacyActivity
com.microsoft.todos.settings.diagnostic.DiagnosticsActivity
com.microsoft.todos.settings.licenses.SettingsLicensesActivity
com.microsoft.todos.settings.developer.SettingsDeveloperActivity
com.microsoft.todos.settings.notifications.RoutineSettingsActivity
com.microsoft.todos.settings.developer.IntentSenderActivity
com.microsoft.todos.ui.ForceLogoutActivity
com.microsoft.todos.onboarding.fre.FirstRunFolderPickerActivity
com.microsoft.todos.ui.takenote.NoteToSelfActivity
com.microsoft.aad.adal.AuthenticationActivity
com.microsoft.todos.ui.newtodo.NewTodoActivity
com.microsoft.todos.ui.newtodo.IntelligentTasksActivity
com.microsoft.todos.inappupdate.ImmediateUpdateActivity
com.microsoft.todos.inappupdate.FlexibleUpdateActivity
com.microsoft.todos.widget.folderpicker.FolderPickerActivity
com.microsoft.todos.analytics.AnalyticsConsentActivity
com.microsoft.todos.aadc.MinorUserPrivacyNoticeActivity
com.microsoft.todos.widget.configuration.WidgetConfigurationActivity
com.microsoft.todos.reminder.snooze.SnoozeReminderActivity
com.microsoft.todos.ui.error.NoRecoveryErrorActivity
com.microsoft.office.feedback.floodgate.MainActivity
com.microsoft.office.feedback.inapp.MainActivity
com.microsoft.intune.mam.client.app.offline.OfflineStartupBlockedActivity
com.microsoft.intune.mam.client.app.offline.OfflineRestartRequiredActivity
com.microsoft.intune.mam.client.app.startup.MAMStartupActivity
com.microsoft.intune.mam.client.app.resolver.MAMResolverActivity
com.microsoft.intune.mam.client.app.offline.OfflineInstallCompanyPortalDialogActivity
com.microsoft.intune.mam.client.app.offline.OfflineNotifyWipeActivity
com.microsoft.intune.mam.client.app.startup.MAMComplianceBlockActivity
com.helpshift.support.activities.ParentActivity
com.helpshift.support.HSReview
com.google.android.play.core.missingsplits.PlayCoreMissingSplitsActivity
com.google.android.play.core.common.PlayCoreDialogWrapperActivity
com.microsoft.identity.common.internal.providers.oauth2.AuthorizationActivity
com.microsoft.identity.common.internal.providers.oauth2.CurrentTaskAuthorizationActivity
com.microsoft.identity.common.internal.broker.BrokerActivity
com.google.android.gms.common.api.GoogleApiActivity

Receivers

Information computed with AndroGuard.

com.microsoft.todos.notification.NotificationDismissReceiver
com.microsoft.todos.reminder.receiver.CompleteTaskNotificationReceiver
com.microsoft.todos.sync.AlarmSyncBootReceiver
com.microsoft.todos.reminder.AlarmReceiver
com.microsoft.todos.reminder.AlarmBootReceiver
com.microsoft.todos.widget.WidgetProvider
com.microsoft.intune.mam.client.service.MAMBackgroundReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.evernote.android.job.v14.PlatformAlarmReceiver
com.evernote.android.job.JobBootReceiver
androidx.work.impl.utils.ForceStopRunnable$BroadcastReceiver
androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy
androidx.work.impl.background.systemalarm.RescheduleReceiver
androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver

Services

Information computed with AndroGuard.

com.microsoft.todos.notification.TodoFirebaseMessagingService
com.microsoft.todos.widget.UpdateWidgetService
com.microsoft.todos.widget.WidgetService
com.microsoft.todos.files.FileDownloadService
com.microsoft.todos.files.FileUploadService
com.microsoft.todos.tile.ToDoTile
com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.microsoft.intune.mam.client.notification.MAMNotificationReceiverService
com.microsoft.intune.mam.client.service.MAMBackgroundService
com.microsoft.intune.mam.client.service.MAMBackgroundJobService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
com.microsoft.tokenshare.TokenSharingService
com.evernote.android.job.v21.PlatformJobService
com.evernote.android.job.v14.PlatformAlarmService
com.evernote.android.job.v14.PlatformAlarmServiceExact
com.evernote.android.job.JobRescheduleService
androidx.work.impl.background.systemalarm.SystemAlarmService
androidx.work.impl.background.systemjob.SystemJobService
androidx.room.MultiInstanceInvalidationService

Sample timeline

Certificate valid not before Oct. 5, 2010, 10:02 p.m.
First submission on VT Oct. 3, 2021, 6:04 p.m.
Last submission on VT Oct. 3, 2021, 6:04 p.m.
Upload on Pithus Oct. 18, 2021, 7:41 a.m.
Certificate valid not after Oct. 5, 2035, 10:09 p.m.

NIAP analysis

Information computed with MobSF.

FCS_RBG_EXT.1.1 The application implement DRBG functionality for its cryptographic operations.
Random Bit Generation Services
FCS_STO_EXT.1.1 The application invoke the functionality provided by the platform to securely store credentials to non-volatile memory.
Storage of Credentials
FCS_CKM_EXT.1.1 The application implement asymmetric key generation.
Cryptographic Key Generation Services
FDP_DEC_EXT.1.1 The application has access to ['network connectivity'].
Access to Platform Resources
FDP_DEC_EXT.1.2 The application has access to no sensitive information repositories.
Access to Platform Resources
FDP_NET_EXT.1.1 The application has user/application initiated network communications.
Network Communications
FDP_DAR_EXT.1.1 The application implement functionality to encrypt sensitive data in non-volatile memory.
Encryption Of Sensitive Application Data
FMT_MEC_EXT.1.1 The application invoke the mechanisms recommended by the platform vendor for storing and setting configuration options.
Supported Configuration Mechanism
FTP_DIT_EXT.1.1 The application does encrypt some transmitted data with HTTPS/TLS/SSH between itself and another trusted IT product.
Protection of Data in Transit
FCS_RBG_EXT.2.1
FCS_RBG_EXT.2.2
The application perform all deterministic random bit generation (DRBG) services in accordance with NIST Special Publication 800-90A using Hash_DRBG. The deterministic RBG is seeded by an entropy source that accumulates entropy from a platform-based DRBG and a software-based noise source, with a minimum of 256 bits of entropy at least equal to the greatest security strength (according to NIST SP 800-57) of the keys and hashes that it will generate.
Random Bit Generation from Application
FCS_CKM.1.1(1) The application generate asymmetric cryptographic keys not in accordance with FCS_CKM.1.1(1) using key generation algorithm RSA schemes and cryptographic key sizes of 1024-bit or lower.
Cryptographic Asymmetric Key Generation
FCS_COP.1.1(2) The application perform cryptographic hashing services in accordance with a specified cryptographic algorithm SHA-1/SHA-256/SHA-384/SHA-512 and message digest sizes 160/256/384/512 bits.
Cryptographic Operation - Hashing
FCS_COP.1.1(3) The application perform cryptographic signature services (generation and verification) in accordance with a specified cryptographic algorithm RSA schemes using cryptographic key sizes of 2048-bit or greater.
Cryptographic Operation - Signing
FCS_COP.1.1(4) The application perform keyed-hash message authentication with cryptographic algorithm ['HMAC-SHA-256'] .
Cryptographic Operation - Keyed-Hash Message Authentication
FCS_HTTPS_EXT.1.1 The application implement the HTTPS protocol that complies with RFC 2818.
HTTPS Protocol
FCS_HTTPS_EXT.1.2 The application implement HTTPS using TLS.
HTTPS Protocol
FCS_HTTPS_EXT.1.3 The application notify the user and not establish the connection or request application authorization to establish the connection if the peer certificate is deemed invalid.
HTTPS Protocol
FIA_X509_EXT.1.1 The application invoked platform-provided functionality to validate certificates in accordance with the following rules: ['The certificate path must terminate with a trusted CA certificate'].
X.509 Certificate Validation
FIA_X509_EXT.2.1 The application use X.509v3 certificates as defined by RFC 5280 to support authentication for HTTPS , TLS.
X.509 Certificate Authentication
FIA_X509_EXT.2.2 When the application cannot establish a connection to determine the validity of a certificate, the application allow the administrator to choose whether to accept the certificate in these cases or accept the certificate ,or not accept the certificate.
X.509 Certificate Authentication
FPT_TUD_EXT.2.1 The application shall be distributed using the format of the platform-supported package manager.
Integrity for Installation and Update

Code analysis

Information computed with MobSF.

High
CVSS:7.4
Files may contain hardcoded sensitive informations like usernames, passwords, keys etc.
MASVS: MSTG-STORAGE-14
CWE-312 Cleartext Storage of Sensitive Information
M9: Reverse Engineering
Files:
 com/microsoft/identity/common/adal/internal/AuthenticationConstants.java
com/microsoft/identity/common/internal/broker/BrokerResult.java
com/microsoft/identity/common/internal/platform/RawKeyAccessor.java
com/microsoft/aad/adal/AuthenticationParameters.java
com/microsoft/identity/common/internal/providers/oauth2/TokenRequest.java
com/microsoft/identity/common/internal/dto/AccountRecord.java
com/microsoft/aad/adal/Discovery.java
com/microsoft/todos/auth/i4/m.java
com/microsoft/identity/common/internal/dto/PrimaryRefreshTokenRecord.java
com/microsoft/intune/mam/client/telemetry/TelemetryEvent.java
com/microsoft/identity/common/internal/dto/Credential.java
f/e/a/k/c.java
com/microsoft/identity/common/internal/providers/oauth2/IDToken.java
com/microsoft/identity/common/exception/ClientException.java
com/microsoft/intune/mam/client/app/backup/BackupAgentBehavior.java
com/microsoft/aad/adal/AuthenticationConstants.java
com/microsoft/identity/common/internal/eststelemetry/SchemaConstants.java
com/microsoft/intune/mam/policy/MAMServiceLookupThread.java
com/microsoft/identity/common/internal/eststelemetry/SharedPreferencesLastRequestTelemetryCache.java
com/microsoft/identity/common/internal/broker/BrokerRequest.java
com/microsoft/todos/powerlift/GetPowerLiftIdUseCaseKt.java
com/microsoft/todos/notification/NotificationPayload.java
com/microsoft/aad/adal/BasicWebViewClient.java
com/microsoft/todos/auth/MsaSignInActivity.java
com/microsoft/tokenshare/AccountInfo.java
High
CVSS:5.9
App uses SQLite Database and execute raw SQL query. Untrusted user input in raw SQL queries can cause SQL Injection. Also sensitive information should be encrypted and written to the database.
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
M7: Client Code Quality
Files:
 f/a/a/a/i/v/j/z.java
f/c/x0/d.java
f/c/t0/a/a.java
f/c/e0/g/c/b.java
com/microsoft/todos/o1/p1.java
com/evernote/android/job/n.java
com/helpshift/support/b0/c.java
f/c/n0/h/a.java
f/a/a/a/i/v/j/e0.java
f/e/a/o/l/c.java
com/microsoft/todos/o1/g0.java
e/s/a/g/a.java
f/a/a/a/i/v/j/d0.java
com/helpshift/support/a0/c/a.java
f/c/e0/g/c/c.java
com/microsoft/applications/telemetry/core/q0.java
com/helpshift/support/b0/l.java
f/e/a/n/a.java
f/c/v/c/l.java
f/c/n0/h/c.java
f/c/e0/g/a.java
f/c/v/c/o/a.java
Low
CVSS:7.5
The App logs information. Sensitive information should never be logged.
MASVS: MSTG-STORAGE-3
CWE-532 Insertion of Sensitive Information into Log File
Files:
 e/h/m/a0.java
com/microsoft/todos/tasksview/richentry/j.java
com/microsoft/todos/h1/c.java
e/h/e/k.java
e/t/e0.java
l/i0/b.java
e/a/k/a/a.java
f/h/d.java
f/a/a/d/m/a.java
com/microsoft/todos/o1/p.java
e/h/e/f.java
e/a/o/g.java
f/e/a/o/a.java
com/microsoft/tokenshare/h.java
f/a/c/c.java
f/c/y0/o.java
com/microsoft/applications/telemetry/core/d0.java
e/t/d0.java
e/h/m/i.java
e/s/a/c.java
e/o/a/b.java
com/microsoft/todos/widget/WidgetProvider.java
e/j/b/c.java
e/q/a.java
f/a/a/c/d/b/a.java
e/t/f0.java
f/g/b/f0.java
butterknife/ButterKnife.java
f/a/a/c/c/c/l.java
e/u/a/a/i.java
com/microsoft/office/feedback/floodgate/SurveyFragment.java
e/t/z.java
e/p/a/a.java
f/a/a/a/i/t/a.java
com/microsoft/intune/mam/log/LogCatHandler.java
e/h/e/h.java
f/c/n0/d.java
e/h/m/g.java
e/q/c.java
e/h/i/b.java
f/e/f/a/a.java
e/h/m/b.java
e/h/k/b.java
e/t/g0.java
f/a/a/d/s/b.java
e/t/y.java
f/a/a/c/e/a.java
e/h/m/y.java
e/h/m/f0.java
f/a/a/d/l/h.java
f/e/e/p/i.java
f/c/n0/h/c.java
com/microsoft/todos/net/d.java
com/microsoft/identity/common/adal/internal/cache/DateTimeAdapter.java
e/h/e/l.java
e/h/l/c.java
l/i0/j/i/c.java
f/a/a/d/x/d.java
f/c/n0/h/a.java
com/microsoft/todos/s1/q.java
f/c/n0/f.java
com/microsoft/identity/common/adal/internal/util/StringExtensions.java
f/a/a/e/a/e/a.java
com/microsoft/identity/common/logging/Logger.java
e/h/e/d.java
e/h/e/g.java
e/h/m/x.java
f/c/y/a/a/f/g.java
com/microsoft/todos/sync/t4/m.java
f/e/d/a/a/h/b/a.java
e/h/m/g0/d.java
com/microsoft/todos/o1/q.java
High
CVSS:7.5
The App uses an insecure Random Number Generator.
MASVS: MSTG-CRYPTO-6
CWE-330 Use of Insufficiently Random Values
M5: Insufficient Cryptography
Files:
 com/microsoft/applications/telemetry/core/m.java
com/microsoft/applications/experimentation/common/d.java
kotlinx/coroutines/q1/a.java
com/microsoft/office/feedback/floodgate/g.java
h/b/e0/j/r.java
m/r.java
f/a/b/b/h.java
j/a0/x.java
com/microsoft/todos/b1/z1/g.java
j/a0/d.java
f/a/b/b/l.java
f/e/a/l/h.java
com/microsoft/applications/experimentation/common/e.java
j/a0/v.java
com/microsoft/office/feedback/floodgate/core/n.java
Low
CVSS:0
This App copies data to clipboard. Sensitive data should not be copied to clipboard as other applications can access it.
MASVS: MSTG-STORAGE-10
Files:
 com/microsoft/intune/mam/client/content/offline/OfflineClipboardBehavior.java
com/helpshift/support/fragments/MainFragment.java
com/microsoft/intune/mam/client/content/MAMClipboard.java
com/microsoft/intune/mam/client/content/ClipboardBehavior.java
com/microsoft/todos/detailview/note/NoteCardView.java
com/microsoft/todos/settings/SettingsFragment.java
Info
CVSS:0
This App uses SSL certificate pinning to detect or prevent MITM attacks in secure communication channel.
MASVS: MSTG-NETWORK-4
Files:
 l/i0/j/d.java
com/microsoft/todos/syncnetgsw/h5.java
com/microsoft/todos/powerlift/PowerLiftModule.java
com/microsoft/todos/p1/f.java
l/i0/j/c.java
l/i0/j/g.java
com/microsoft/todos/auth/i1.java
l/i0/j/h.java
com/microsoft/todos/syncnetgsw/j5.java
com/microsoft/intune/mam/http/MAMTrustManager.java
com/microsoft/todos/net/t.java
High
CVSS:5.5
App creates temp file. Sensitive information should never be written into a temp file.
MASVS: MSTG-STORAGE-2
CWE-276 Incorrect Default Permissions
M2: Insecure Data Storage
Files:
 e/q/c.java
j/e0/o.java
High
CVSS:5.5
App can read/write to External Storage. Any App can read data written to External Storage.
MASVS: MSTG-STORAGE-2
CWE-276 Incorrect Default Permissions
M2: Insecure Data Storage
Files:
 f/c/e0/l/a.java
com/microsoft/todos/s1/p1/c.java
com/helpshift/support/s.java
f/c/y/a/a/f/c.java
f/c/y/a/a/f/b.java
com/microsoft/todos/files/f.java
com/microsoft/intune/mam/client/MAMInfo.java
Medium
CVSS:4.3
IP Address disclosure
MASVS: MSTG-CODE-2
CWE-200 Information Exposure
Files:
 f/f/a/a0/b.java
com/microsoft/applications/telemetry/BuildConfig.java
High
CVSS:5.9
SHA-1 is a weak hash known to have hash collisions.
MASVS: MSTG-CRYPTO-4
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
M5: Insufficient Cryptography
Files:
 f/e/f/a/a.java
com/microsoft/identity/common/internal/providers/microsoft/MicrosoftClientAssertion.java
f/b/a/a.java
Low
CVSS:3.9
App can write to App Directory. Sensitive Information should be encrypted.
MASVS: MSTG-STORAGE-14
CWE-276 Incorrect Default Permissions
Files:
 com/microsoft/todos/reminder/m.java
Pygal China: 200 Germany: 700 United Kingdom: 300 Ireland: 500 Netherlands: 1000 United States: 2400

Map computed by Pithus.

Domains analysis

Information computed with MobSF.

GB config.edge.skype.net 52.113.194.132
US sas3.office.microsoft.com 13.66.202.41
CN login.chinacloudapi.cn 52.130.17.194
au.pipe.aria.microsoft.com
NL to-do.microsoft.com 52.233.164.195
US login.microsoftonline.us 52.126.195.1
DE login.microsoftonline.de 51.5.145.147
NL login.windows.net 20.190.160.4
NL substrate.office.com 52.97.135.66
US microsoft-todo.helpshift.com 3.229.144.91
export.wunderlist.com
NL test-exp-s2s.msedge.net 13.107.5.88
IE login.microsoftonline.com 20.190.159.132
US devicemgmt.teams.microsoft.com 52.112.95.32
US powerlift.acompli.net 20.40.202.3
US xmlpull.org 74.50.62.60
DE schemas.microsoft.com 104.111.237.228
www.wunderlist.com
GB signup.live.com 13.107.42.22
US pf.pipe.aria.microsoft.com 52.245.136.46
IE sas.office.microsoft.com 52.169.12.182
US to-do-65345.firebaseio.com 35.201.97.85
US in.appcenter.ms 52.232.209.85
IE odc.officeapps.live.com 52.109.76.69
NL outlook.office365.com 52.97.137.194
US storage.live.com 13.105.28.32
GB config.edge.skype.com 13.107.42.16
a.wunderlist.com
US pipe.int.trafficmanager.net 52.167.109.66
DE go.microsoft.com 104.111.242.51
NL eu.pipe.aria.microsoft.com 52.178.17.2
NL outlook.office.com 52.97.157.162
US mobile.pipe.aria.microsoft.com 13.89.179.9
US www.apache.org 151.101.2.132
IE login.windows-ppe.net 40.126.31.0
de.pipe.aria.microsoft.com
IE todosupport.microsoft.com 52.109.76.2
JP jp.pipe.aria.microsoft.com 40.74.98.193
schemas.android.com
US api.helpshift.com 52.71.199.241
US to-do.office.com 52.98.152.194
US www.example.com 93.184.216.34
NL login.live.com 20.190.160.134
US us.pipe.aria.microsoft.com 20.189.173.13
US www.teams.com 104.43.221.31
DE privacy.microsoft.com 184.30.21.171
DE www.microsoft.com 184.30.21.171
US mobile.events.data.microsoft.com 13.89.178.26
NL tasks.office.com 13.107.6.160
NL graph.microsoft.com 20.190.160.97
US play.google.com 142.250.185.206
CN login.partner.microsoftonline.cn 52.130.2.33
DE account.microsoft.com 23.37.44.103
DE oneclient.sfx.ms 2.18.234.129
intunemam.microsoftonline.com
US tb.pipe.aria.microsoft.com 52.247.169.1
US powerlift-frontdesk.acompli.net 104.214.20.35
US github.com 140.82.121.4
US developer.android.com 142.250.181.238

URL analysis

Information computed with MobSF.

https://sas.office.microsoft.com/upload.ashx
https://sas3.office.microsoft.com/upload.ashx
Defined in f/e/d/a/a/h/c/a.java
https://sas.office.microsoft.com/upload.ashx
https://sas3.office.microsoft.com/upload.ashx
Defined in f/e/d/a/a/h/c/a.java
https://mobile.events.data.microsoft.com/OneCollector/1.0
Defined in f/e/a/m/c.java
https://in.appcenter.ms
Defined in f/e/a/m/a.java
https://developer.android.com/reference/com/google/android/play/core/install/model/InstallErrorCode
Defined in f/a/a/e/a/b/e/a.java
https://substrate.office.com/todo
Defined in com/microsoft/todos/x0/a.java
https://powerlift-frontdesk.acompli.net/api/
Defined in com/microsoft/todos/powerlift/PowerLiftModule.java
https://powerlift.acompli.net/#/incidents/
Defined in com/microsoft/todos/powerlift/PowerLiftHelpShiftMetaDataCallable.java
https://powerlift-frontdesk.acompli.net/api/
Defined in com/microsoft/todos/powerlift/PowerLiftApi.java
https://substrate.office.com/todo/api/v1/
Defined in com/microsoft/todos/syncnetgsw/y4.java
https://powerlift.acompli.net/#/incidents/
Defined in com/microsoft/todos/p1/c.java
https://api.helpshift.com/v1/microsoft-todo/
Defined in com/microsoft/todos/p1/f.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=try-signing-in-again-error-on-to-do-on-android
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-do-i-receive-the-message-that-my-license-for-to-do-is-disabled
https://go.microsoft.com/fwlink/?linkid=2156231
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=why-can-t-i-join-a-shared-list
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-is-not-available-for-my-version-of-office-365
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?s=troubleshoot&f=why-do-i-receive-the-message-that-to-do-requires-an-exchange-online-mailbox
https://microsoft-todo.helpshift.com/a/microsoft-to-do/?p=all&s=troubleshoot&f=i-m-unable-to-sign-in-to-microsoft-to-do
https://todosupport.microsoft.com/support?product_id=todo
Defined in com/microsoft/todos/p1/d.java
https://play.google.com/store/apps/details?id=
Defined in com/microsoft/todos/homeview/HomeViewFragment.java
https://outlook.office.com/api/v2.0/Users/%s/photos('120x120')/$value
Defined in com/microsoft/todos/auth/y3.java
https://substrate.office.com/User-Internal.ReadWrite
Defined in com/microsoft/todos/auth/c4.java
https://storage.live.com/users/0x%s/myprofile/expressionprofile/profilephoto:UserTileMedium/avatar?ck=1&ex=1&fofoff=1
Defined in com/microsoft/todos/auth/w2.java
https://graph.microsoft.com/
Defined in com/microsoft/todos/auth/y0.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://substrate.office.com/todo-internal.readwrite
https://outlook.office.com
https://login.microsoftonline.com/common
https://substrate.office.com/
https://odc.officeapps.live.com/odc/emailhrd/
https://login.live.com/
Defined in com/microsoft/todos/auth/i1.java
https://storage.live.com/users/0x%s/myprofile/expressionprofile/profilephoto:UserTileMedium/avatar?ck=1&ex=1&fofoff=1
Defined in com/microsoft/todos/auth/m3.java
https://login.live.com/oauth20_desktop.srf
https://signup.live.com/signup.aspx?
https://login.live.com/oauth20_authorize.srf?
https://login.live.com/oauth20_authorize.srf
https://signup.live.com/signup.aspx
Defined in com/microsoft/todos/auth/MsaSignInActivity.java
https://login.live.com/oauth20_desktop.srf
https://signup.live.com/signup.aspx?
https://login.live.com/oauth20_authorize.srf?
https://login.live.com/oauth20_authorize.srf
https://signup.live.com/signup.aspx
Defined in com/microsoft/todos/auth/MsaSignInActivity.java
https://login.live.com/oauth20_desktop.srf
https://signup.live.com/signup.aspx?
https://login.live.com/oauth20_authorize.srf?
https://login.live.com/oauth20_authorize.srf
https://signup.live.com/signup.aspx
Defined in com/microsoft/todos/auth/MsaSignInActivity.java
https://login.live.com/oauth20_desktop.srf
https://signup.live.com/signup.aspx?
https://login.live.com/oauth20_authorize.srf?
https://login.live.com/oauth20_authorize.srf
https://signup.live.com/signup.aspx
Defined in com/microsoft/todos/auth/MsaSignInActivity.java
https://login.live.com/oauth20_desktop.srf
https://signup.live.com/signup.aspx?
https://login.live.com/oauth20_authorize.srf?
https://login.live.com/oauth20_authorize.srf
https://signup.live.com/signup.aspx
Defined in com/microsoft/todos/auth/MsaSignInActivity.java
https://to-do.office.com/
Defined in com/microsoft/todos/auth/i4/j.java
https://graph.microsoft.com/
https://substrate.office.com/todo/api/v1/
Defined in com/microsoft/todos/auth/i4/t.java
https://graph.microsoft.com/
https://substrate.office.com/todo/api/v1/
Defined in com/microsoft/todos/auth/i4/t.java
https://to-do.microsoft.com/sharing?InvitationToken=
Defined in com/microsoft/todos/analytics/f0/h.java
https://config.edge.skype.net/config/v1/
Defined in com/microsoft/todos/d1/b.java
https://outlook.office.com/
Defined in com/microsoft/todos/net/h.java
https://graph.microsoft.com/
https://outlook.office365.com
Defined in com/microsoft/todos/net/t.java
https://graph.microsoft.com/
https://outlook.office365.com
Defined in com/microsoft/todos/net/t.java
https://a.wunderlist.com/api/v1/avatar?user_id=
Defined in com/microsoft/todos/importer/i0.java
https://www.wunderlist.com/oauth/authorize
https://to-do.microsoft.com/importer-success
Defined in com/microsoft/todos/importer/WunderlistAuthFragment.java
https://www.wunderlist.com/oauth/authorize
https://to-do.microsoft.com/importer-success
Defined in com/microsoft/todos/importer/WunderlistAuthFragment.java
https://a.wunderlist.com/api/v1/avatar?user_id=
Defined in com/microsoft/todos/importer/StartImportFragment.java
https://export.wunderlist.com/?action=summary-file-screen
Defined in com/microsoft/todos/importer/importresult/h.java
https://tasks.office.com
https://www.teams.com
Defined in com/microsoft/todos/detailview/j/b.java
https://tasks.office.com
https://www.teams.com
Defined in com/microsoft/todos/detailview/j/b.java
https://outlook.office.com
Defined in com/microsoft/todos/sync/s4/x0.java
https://go.microsoft.com/fwlink/?LinkId=512132
https://privacy.microsoft.com/privacystatement
Defined in com/microsoft/todos/settings/termsprivacy/s.java
https://go.microsoft.com/fwlink/?LinkId=512132
https://privacy.microsoft.com/privacystatement
Defined in com/microsoft/todos/settings/termsprivacy/s.java
https://account.microsoft.com
Defined in com/microsoft/todos/settings/preference/AccountPreference.java
https://substrate.office.com
Defined in com/microsoft/todos/files/FileDownloadService.java
http://schemas.microsoft.com/rel/trusted-realm
Defined in com/microsoft/aad/adal/ADFSWebFingerValidator.java
https://login.microsoftonline.com/common/oauth2/v2.0/logout
https://go.microsoft.com/fwlink/?linkid=2138180
Defined in com/microsoft/identity/common/adal/internal/AuthenticationConstants.java
https://login.microsoftonline.com/common/oauth2/v2.0/logout
https://go.microsoft.com/fwlink/?linkid=2138180
Defined in com/microsoft/identity/common/adal/internal/AuthenticationConstants.java
https://login.microsoftonline.com/consumers
https://login.windows.net/common
Defined in com/microsoft/identity/common/adal/internal/tokensharing/TokenShareUtility.java
https://login.microsoftonline.com/consumers
https://login.windows.net/common
Defined in com/microsoft/identity/common/adal/internal/tokensharing/TokenShareUtility.java
https://devicemgmt.teams.microsoft.com/.default
Defined in com/microsoft/identity/common/internal/migration/TokenCacheItemMigrationAdapter.java
https://go.microsoft.com/fwlink/?linkid=2138180
Defined in com/microsoft/identity/common/internal/ui/webview/OAuth2WebViewClient.java
http://www.example.com
Defined in com/microsoft/identity/common/internal/ui/browser/BrowserSelector.java
https://login.microsoftonline.com/common/oauth2/v2.0/authorize
Defined in