This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Next revision Both sides next revision | ||
faq:dataleakage:chatter [2017/08/10 07:34] czokie |
faq:dataleakage:chatter [2017/09/09 22:52] czokie [https://mydjiflight.dji.com] |
||
---|---|---|---|
Line 72: | Line 72: | ||
==== TCP Port 7001 ==== | ==== TCP Port 7001 ==== | ||
TCP traffic has been oberved talking to 103.229.215.31 on port 7001. [[https:// | TCP traffic has been oberved talking to 103.229.215.31 on port 7001. [[https:// | ||
+ | |||
+ | This IP and PORT changes, but it is the first address in the answer paket of the UDP chatter on port 9000. This payload is not readable and we have no idea what it is used for. Very strange, if anyone has more info about this please add it here. For now this is " | ||
< | < | ||
Line 91: | Line 93: | ||
==== https:// | ==== https:// | ||
+ | Multiple requests during startup | ||
+ | * / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * /api/msg/ | ||
+ | * GET / | ||
+ | * / | ||
+ | * GET / | ||
+ | * / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * GET / | ||
+ | * / | ||
+ | * GET / | ||
+ | * /api/ | ||
+ | * GET / | ||
==== https:// | ==== https:// | ||
- | An unknown DJI service | + | * / |
+ | * GET / | ||
+ | * / | ||
+ | * profile? | ||
+ | * / | ||
+ | * geoip? | ||
+ | * geoip? | ||
+ | * geoip? | ||
+ | * /api/v2/ | ||
+ | * POST register_device (Four times) | ||
+ | |||
+ | ^device_sn|[[device_sn]]| | ||
+ | ^app_version|[[4.1.9]]| | ||
+ | ^lang|en| | ||
+ | ^os_platform|ios| | ||
+ | ^operator|[[my-carrier]]| | ||
+ | ^os_version|[[10.3.2]]| | ||
+ | ^api_version|1| | ||
+ | ^sign|[[hash-value]]| | ||
+ | ^app_name|djigo_ios| | ||
+ | ^app_datetime|[[timestamp]]| | ||
+ | |||
+ | * / | ||
+ | * POST / | ||
+ | |||
+ | ^app_version|[[4.1.9]]| | ||
+ | ^lang|en| | ||
+ | ^nation_code|AU| | ||
+ | ^notify_type|0| | ||
+ | ^os_platform|ios| | ||
+ | ^signature|[[hash-value]]| | ||
+ | ^time|[[timestamp]]| | ||
+ | |||
+ | * / | ||
+ | * POST / | ||
+ | |||
+ | ^os|ios| | ||
+ | ^signature|[[hash-value]]| | ||
+ | ^time|[[timestamp]]| | ||
+ | ^version|[[4.1.9]]| | ||
+ | |||
+ | * / | ||
+ | * GET / | ||
+ | * /getfile/ | ||
+ | * https:// | ||
+ | |||
+ | ^language|en| | ||
+ | ^product_id|wm331| | ||
+ | ^signature|[[hash-value]]| | ||
+ | ^token|[[session-key]]| | ||
==== https:// | ==== https:// | ||
An unknown DJI service | An unknown DJI service | ||
Line 110: | Line 183: | ||
[[https:// | [[https:// | ||
==== https:// | ==== https:// | ||
- | Some form of push notification interface | + | Some form of push notification interface. |
+ | **This one sends a list of all installed apps on your phone to the service! Atleast on Android.** | ||
==== http:// | ==== http:// | ||
This is related to the DJI.com website | This is related to the DJI.com website |