Industry News
AI Security in Mobile Apps: The Hidden Threat Multiplying Faster Than You Think Mobile applications have become the primary gateway to enterprise data, customer information and business operations. But there’s a rapidly evolving threat that most organizations are completely blind to: artificial intelligence (AI) embedded throughout their mobile app ecosystem. Recent analysis reveals a startling […]
Apple continues to double down on security and privacy in iOS 26. This release introduces new frameworks, expands cryptographic protections and strengthens parental controls in ways both end users and developers will notice. Below is a breakdown of the most important updates, with a focus on how they work under the hood and what developers […]
Executive Summary Last week, we reported on a near-miss incident involving npm software supply-chain attacks impacting mobile applications. Unfortunately, a new wave of NPM supply chain compromises has been discovered affecting 187 packages including critical frameworks used in mobile app development. The good news? Our ongoing analysis of public mobile apps from the Google Play […]
Today, security researchers revealed details of a massive supply-chain attack affecting some of the most popular NPM packages in the JavaScript ecosystem. The attack, which compromised packages including chalk, debug, ansi-styles and others with a combined 2+ billion weekly downloads, represents one of the most significant supply-chain incidents in recent memory. This is a big […]
How CISOs, AppSec leaders and DevSecOps teams can secure mobile apps, safeguard privacy, reduce risk and prove compliance. Executive Summary Most enterprises already have risk management programs for cloud, network and web applications. However, many lack a comparable framework for mobile apps even though apps often are the primary way customers, partners and employees interact […]
NowSecure has once again demonstrated its leadership in mobile app security by achieving SOC 2 Type 2 compliance for the fifth consecutive year. This accomplishment reinforces NowSecure’s standing as the only enterprise-grade mobile application security testing (MAST) platform to consistently deliver clean SOC 2 Type 2 compliance year after year. The independent SOC 2 audit […]
Mobile app risk is not just a technical issue, it poses a serious business threat. That’s the central message speakers amplify in NowSecure Connect 2025: Avoid the APPocalypse, a virtual event at which industry leaders, security professionals and app development leaders gathered to confront the rising tide of mobile risk. In his opening keynote, NowSecure […]
NowSecure recently celebrated three years of contributing to the OWASP Mobile App Security Project which produces globally recognized standards for secure mobile app development and mobile app security testing. The company’s industry leadership as an OWASP MAS Advocate has advanced mobile security and provided mobile application risk management solutions that align with OWASP standards to […]
Traditional penetration testing wasn’t built for today’s mobile release cycles. Annual, semi-annual or even quarterly pen tests don’t cut it anymore. If your mobile app updates weekly, that’s a dozen untested versions before your next scheduled assessment. That’s a dozen chances for a data leak or privacy flaw to slip through. Mobile Penetration Testing as […]
App Store Security Myths: Why Enterprises Can’t Solely Rely on Apple and Google for Security Reviews
When enterprise mobility managers, end-user computing (EUC) managers and IT security teams evaluate third-party mobile app risk for business use, a common misconception arises: If an app is available in the Apple App Store or Google Play Store, it must be secure and free of privacy risks. The reality is that Apple and Google app […]