Where to store sensitive global information such as API keys in Android application?

前端 未结 3 632
臣服心动
臣服心动 2021-01-12 02:07

I need to store some sensitive information in an Android application. If I put it in a resource file, it appears that it is trivial for another app to be able to browse and

3条回答
  •  孤城傲影
    2021-01-12 02:29

    Google has some good recommendations on this under billing. To summarize: use remote server, obfuscate and use secure random nonces. Nothing is safe in your apk as it always can be reverse engineered and obfuscation only works against simple attacks.

提交回复
热议问题