Research & Threat Intel
The convenience of Instant Apps is appealing, but attackers will view it as a shiny new attack vector, and for me the security jury is still out.
In this post I explain step-by-step how I solved the OWASP Mobile Security Testing Guide (MSTG) Crackme Level 1 using Frida (and how I then automated it).
This article will show you step by step how to obtain, decrypt and extract a binary version of the iOS kernel
NowSecure Researcher Francesco Tamagni recently made significant improvements to R2Frida’s memory-search capabilities, and he answered some questions about those updates and how they make R2Frida (an integration of the Frida and Radare open-source tools/frameworks) even better.
A detailed HOWTO of getting ‘sys_call_table’ on an Android device.
Learn what the Cloudflare “Cloudbleed” bug is, how it impacts mobile apps, and review a list of 200 of the 3,500 most popular iOS apps that may be affected.
When analyzing the behavior of specific applications or services it is useful to understand how the execution directly or indirectly affects the filesystem.
The NowSecure team plunged into the depths of our mobile security intelligence to gather and correlate data in order to present a snapshot of the current state of mobile security.
Auditing Bluetooth software for security vulnerabilities.
The Corrupdate patch corrects the vulnerabilities discovered in Samsung Account and Samsung GALAXY Apps.