NowSecure Connect 2025: Trends in Mobile Applications: Security & Privacy

 

Session Description

Trends in mobile applications as main business channel.

 

Session Highlights

  • Mobile apps are critical to business success but pose significant security and privacy risks.

     

  • Mobile apps now generate more revenue than web apps, emphasizing their importance to business operations.

  • Lack of visibility into third-party components and data flows is a primary cause of mobile app vulnerabilities.

  • AI is rapidly being integrated into mobile apps and third-party components, increasing complexity and risk.

     

     

Session Transcript

 

 

 

In a world flooded with mobile apps. Not all are built to survive, insecure code, unknown SDKs, leaky data, and unpatched vulnerabilities. The threats hiding in your mobile apps are real. And they're not just technical issues. They're business risks. Risks to your revenue, your reputation, your compliance. Now secure connect 2025, your front row seat to the survival guide for the mobile threat landscape. Learn from the leaders who are rewriting the rules of mobile application risk management before the risks. Rewrite your story. Whether you're a risk executive, app-sec engineer, or compliance manager, this event is built for you. Discover how to shift from reactive testing to proactive mobile risk management. Measure impact and scale your defenses across every app built for bought with expert led sessions, fireside chats, customer spotlights, and open Q&A. You'll leave equipped, not just informed. The apocalypse is coming, but you don't have to face it alone. Get prepared to survive the apocalypse now. Secure Connect 2025. Avoid the apocalypse because mobile app risk is business risk. Hello and welcome to Now Secure Connect 2025. I'm Alan Snyder. I'm the CEO of Now Secure and we're really excited to have everyone here with us. We're going to go through how we're going to help you avoid the mobile app apocalypse and this is something that we want to very near and dear to our heart because our mission is to save the world from unsafe mobile apps and what we see in the market in terms of cyber security and the risk of mobile apps, the importance of the business. Basically, the data says to us that the next big uh breach, the next big cyber security incident will involve mobile apps. And we want to help you avoid that. Uh we want to make sure that you're not a part of that and you're not a victim of that. And so let's get started and let's uh talk a little bit more about what is what are we talking about when we talk about the mobile app apocalypse. And fundamentally it is a cyber security incident that actually causes disruption to your business as a result of the mobile app. It could be a vulnerability in a mobile app leads to either an app or a back-end system uh breach which leads to data loss which then would impact your revenues or and would most certainly impact brand damage. And that is actually probably the one thing that we see uh companies most concerned about is the damage to the brand as a result of the breach of trust with their consumers, their partners, their customers. It could be an operational disruption because a cyber security incident requires you to take the app offline to make changes or a business disruption where uh let's just say the data has become corrupted that leads to revenue loss again leads to brand damage because of that. And finally, one of the things we see is most important in the marketplace right now is privacy. And this is particularly relevant to mobile apps because mobile apps have become the best and greatest surveillance product um of all kind. And the reason for that is they have so many sensors. They know where you are. They know what you're doing. They're getting more sensors and understanding it. And so there is a real and legitimate concern around privacy and data leakage. This is particularly true since mobile apps have a lot of third-party components. You need to know who has access to that data. Where is it going? Because you need to protect your company IP. You need to protect your customers and their information because if something happens and there's a privacy issue again, not only do you have the risk of a compliance violation, but you also have brand damage and we want to avoid that. So to us that's what we want to make sure that doesn't happen and make sure that you can avoid that apocalypse. Let's talk about mobile apps for a second. They have become absolutely critical to the business. They are important in terms of revenue generation. They are important in terms of how you run the business. Whether that's how you restock shelves, whether that's how customers find products in your stores, whether that's how they discover and interact with you from your consumer loyalty or your news distribution or your media distribution programs, mobile apps have become essential. And it makes sense that they would. That's because they're always with the customer. They have all the sensors. They provide real legitimate value and capabilities that you just can't get through any other form factor. I cannot call a car service uh unless it knows where I am, right? Those things really add real value. And so it makes sense that mobile apps are critical to the business. Let's just take a look at some of the stats. When you look at uh the data from Adobe Analytics, fantastic data that shows that mobile apps have now surpassed web apps uh in the last holiday shopping season in terms of generating more revenue than web apps. And what we see is every year that's gone up about 2 to 3%. We would expect it to do the same this year. You look at what Starbucks found, right? 26% increase in transactions. It's now 70% of their total sales. You look at what Walmart found, right? Mobile app users came in the store twice as many times and spent 40% more. All of those things again lead to the same conclusion. Mobile apps are absolutely essential to the business. And as a result, if something happens to them, it will have a business impact. So they're worthy of protection. And so again, let's talk about what I think is the fundamental question that everybody here that is in the application security domain, whether you're a developer, whether you're a security analyst, whether you're um a security manager, we must all look at this question and say, does your mobile app security investment align with the business impact of a breach of a cyber security incident? What we're seeing is it does not. folks are underinvesting in the mobile app security. Now, the good news in this is it is easy to fix and it's easy to fix because mobile apps are very easy to secure. What we see is it's often a lack of knowledge and a lack of information and visibility into what the third party components are doing into where the data is going into um used the wrong um API or forgot the flip a switch on a setting. uh whether I left debug symbols on. These things are easy to fix, but it's a visibility and understanding that they exist and need to be fixed. So that's what we love about mobile apps is they're built on a much more secure foundation. Therefore, securing them, while it does require some effort, is significantly easier to get them and keep them secure. You just have to actually invest the time and energy. And that's what we're going to talk about here at Connect is to allow you to go do that because we think that you need to make sure that this extends to not just the mobile apps you build but also the mobile apps you use because if you're putting critical information c you know customer information company um intellectual property and it's critical to your business doesn't matter who built it. You really need to secure it and protect that information because again it all comes back to business risk. You don't want something to damage your brand. don't want something to disrupt your operations. And with automation and with a thoughtful program that is based on risk, all of this is easy to do. It can be cost-effective to do. And it can provide other benefits beyond just reducing risk, but can also improve the speed at which you get your mobile apps into production. And you make those changes and turns so that you can deliver value to your customers. So all of this is what we're going to try and deliver uh at connect is really the process, the programs, the understanding, the things that you need to both avoid the apocalypse, but also to learn and get the best practices and lessons learned. You're going to hear from our customers. You're going to hear from partners. You're going to hear from friends of ours in the industry that are all going to give you this experience and knowledge to help you do better in your own programs. We're going to do some technical deep dives. That's going to be a lot of fun because it is really interesting to see how mobile app security is changing and evolving. There's lots of fun things coming. This is so true with AI. We see AI just exploding in mobile apps. Our view is because mobile apps are 60 70% third party components. You're going to see AI that the development team put into uh your mobile app, but you're also going to see AI from your third party components. We think you're going to see, you know, three or four different uses of AI because of this the number of components in each mobile app. It's going to take time, but it's going to get there. And so all of this, we're going to give you that expert advice that you need to both reduce your risk, make sure that you can improve your speed, and how do you do all this and still gain efficiency because we get it. Everybody's under pressure to go faster and to reduce cost. Our view is that automation will allow you to do this. So, with that said, let's get started. We're really excited to have you here. We really hope that you participate and provide feedback and input. And then we'd also encourage folks, not just this year, but next year, please come back and join us. We're always looking for great uh input and feedback. So, with that, thank you and let's go.

 

16 results found