NowSecure Marketing
At NowSecure, we believe in referencing open-source standards and industry guidelines when evaluating mobile risk. With the ever-changing mobile landscape, we believe these guidelines offer incredible benefit to security leaders when identifying and prioritizing the remediation of code defects and vulnerabilities as well as tracking metrics to show company leadership. Industry-standard guidelines create the framework for our reporting and serve as powerful guides for our team when we add new vulnerability tests and code checks.
I’ve helped a number of organizations decipher HIPAA but found clear information hard to come by. I tried to remedy that for the mobile app development community with this blog post about HIPAA and mobile apps.
NowSecure Researcher Francesco Tamagni recently made significant improvements to R2Frida’s memory-search capabilities, and he answered some questions about those updates and how they make R2Frida (an integration of the Frida and Radare open-source tools/frameworks) even better.
A detailed HOWTO of getting ‘sys_call_table’ on an Android device.
Learn how you can leverage existing automation frameworks to integrate mobile app security testing into your DevOps practice.
When analyzing the behavior of specific applications or services it is useful to understand how the execution directly or indirectly affects the filesystem.