Contact
DMCA
Privacy
Robuta
Sponsor of the Day:
Jerkmate
https://mas.owasp.org/MASTG/knowledge/android/MASVS-STORAGE/MASTG-KNOW-0041/
MASTG-KNOW-0041: Internal Storage - OWASP Mobile Application Security
owasp mobile application
internal storage
mastg
know
0041
https://mas.owasp.org/MASTG/tests/android/MASVS-RESILIENCE/MASTG-TEST-0249/
MASTG-TEST-0249: Runtime Use of Secure Screen Lock Detection APIs - OWASP Mobile Application...
owasp mobile application
mastg test
screen lock
0249
runtime
https://mas.owasp.org/MASTG/tools/android/MASTG-TOOL-0124/
MASTG-TOOL-0124: aapt2 - OWASP Mobile Application Security
owasp mobile application
mastg tool
0124
security
https://mas.owasp.org/MASWE/MASVS-AUTH/MASWE-0046/
MASWE-0046: Crypto Keys Not Invalidated on New Biometric Enrollment - OWASP Mobile Application...
owasp mobile application
crypto keys
new biometric
maswe
0046
https://mas.owasp.org/MASVS/controls/MASVS-CRYPTO-1/
MASVS-CRYPTO-1 - OWASP Mobile Application Security
owasp mobile application
crypto 1
masvs
security
https://mas.owasp.org/MASTG/best-practices/MASTG-BEST-0006/
MASTG-BEST-0006: Use Up-to-Date APK Signing Schemes - OWASP Mobile Application Security
owasp mobile application
date apk
mastg
best
0006
https://mas.owasp.org/MASWE/MASVS-CRYPTO/MASWE-0020/
MASWE-0020: Improper Encryption - OWASP Mobile Application Security
owasp mobile application
maswe
0020
improper
encryption
https://mas.owasp.org/MASTG/tools/ios/MASTG-TOOL-0062/
MASTG-TOOL-0062: Plutil - OWASP Mobile Application Security
owasp mobile application
mastg tool
0062
security
https://mas.owasp.org/MASTG/tools/network/MASTG-TOOL-0076/
MASTG-TOOL-0076: bettercap - OWASP Mobile Application Security
owasp mobile application
mastg tool
0076
bettercap
security
https://mas.owasp.org/MASTG/tests/android/MASVS-NETWORK/MASTG-TEST-0021/
MASTG-TEST-0021: Testing Endpoint Identify Verification - OWASP Mobile Application Security
owasp mobile application
mastg test
0021
testing
endpoint
https://mas.owasp.org/MASTG/techniques/ios/MASTG-TECH-0112/
MASTG-TECH-0112: Obtaining the Code Signature Format Version - OWASP Mobile Application Security
owasp mobile application
mastg tech
format version
0112
obtaining
https://mas.owasp.org/MASTG/demos/ios/MASVS-RESILIENCE/MASTG-DEMO-0026/MASTG-DEMO-0026/
MASTG-DEMO-0026: Runtime Use of LAContext.canEvaluatePolicy with Frida - OWASP Mobile Application...
owasp mobile application
mastg demo
0026
runtime
use
https://mas.owasp.org/MASTG/tests/android/MASVS-CODE/MASTG-TEST-0034/
MASTG-TEST-0034: Testing Object Persistence - OWASP Mobile Application Security
owasp mobile application
mastg test
0034
testing
object
https://owasp.org/www-project-mobile-app-security/
OWASP Mobile Application Security | OWASP Foundation
The OWASP Mobile Application Security (MAS) project consists of a series of documents that establish a security and privacy standard for mobile apps and a...
owasp mobile application
security foundation
https://mas.owasp.org/MASTG/demos/android/MASVS-PLATFORM/MASTG-DEMO-0029/MASTG-DEMO-0029/
MASTG-DEMO-0029: Uses of WebViews Allowing Content Access with semgrep - OWASP Mobile Application...
owasp mobile application
mastg demo
content access
0029
uses
https://mas.owasp.org/MASTG/techniques/ios/MASTG-TECH-0113/
MASTG-TECH-0113: Obtaining Debugging Symbols - OWASP Mobile Application Security
owasp mobile application
mastg tech
0113
obtaining
debugging
https://mas.owasp.org/MASTG/techniques/ios/MASTG-TECH-0067/
MASTG-TECH-0067: Dynamic Analysis on iOS - OWASP Mobile Application Security
owasp mobile application
mastg tech
dynamic analysis
0067
ios
https://mas.owasp.org/donate/
Donations - OWASP Mobile Application Security
owasp mobile application
donations
security
https://mas.owasp.org/MASTG/techniques/android/MASTG-TECH-0109/
MASTG-TECH-0109: Intercepting Flutter HTTPS Traffic - OWASP Mobile Application Security
owasp mobile application
mastg tech
0109
intercepting
flutter
https://mas.owasp.org/MASTG/tests/android/MASVS-CODE/MASTG-TEST-0223/
MASTG-TEST-0223: Stack Canaries Not Enabled - OWASP Mobile Application Security
owasp mobile application
mastg test
0223
stack
canaries
https://mas.owasp.org/MASTG/techniques/android/MASTG-TECH-0043/
MASTG-TECH-0043: Method Hooking - OWASP Mobile Application Security
owasp mobile application
mastg tech
0043
method
hooking
https://mas.owasp.org/MASTG/apps/android/MASTG-APP-0009/
MASTG-APP-0009: DVHMA - OWASP Mobile Application Security
owasp mobile application
mastg
0009
security
https://mas.owasp.org/MASWE/MASVS-RESILIENCE/MASWE-0098/
MASWE-0098: App Virtualization Environment Detection Not Implemented - OWASP Mobile Application...
owasp mobile application
environment detection
maswe
0098
virtualization
https://mas.owasp.org/MASWE/MASVS-AUTH/MASWE-0043/
MASWE-0043: App Custom PIN Not Bound to Platform KeyStore - OWASP Mobile Application Security
owasp mobile application
maswe
0043
custom
pin
https://mas.owasp.org/news/
Blog - OWASP Mobile Application Security
owasp mobile application
blog
security
https://mas.owasp.org/MASTG/techniques/android/MASTG-TECH-0014/
MASTG-TECH-0014: Static Analysis on Android - OWASP Mobile Application Security
owasp mobile application
mastg tech
static analysis
0014
android
https://mas.owasp.org/MASTG/tests/android/MASVS-PLATFORM/MASTG-TEST-0315/
MASTG-TEST-0315: Sensitive Data Exposed via Notifications - OWASP Mobile Application Security
owasp mobile application
mastg test
sensitive data
exposed via
0315
https://mas.owasp.org/MASWE/MASVS-PLATFORM/MASWE-0071/
MASWE-0071: WebViews Loading Content from Untrusted Sources - OWASP Mobile Application Security
owasp mobile application
loading content
maswe
0071
webviews
https://mas.owasp.org/MASVS/controls/MASVS-PRIVACY-3/
MASVS-PRIVACY-3 - OWASP Mobile Application Security
owasp mobile application
masvs
privacy
3
security
https://mas.owasp.org/contributing/writing-content/mastg-best-practice.instructions/
Writing MASTG Best Practices Files - OWASP Mobile Application Security
owasp mobile application
best practices
writing
mastg
files
https://mas.owasp.org/MASTG/knowledge/ios/MASVS-RESILIENCE/MASTG-KNOW-0086/
MASTG-KNOW-0086: File Integrity Checks - OWASP Mobile Application Security
owasp mobile application
file integrity
mastg
know
0086
https://mas.owasp.org/MASTG/tools/ios/MASTG-TOOL-0135/
MASTG-TOOL-0135: PlistBuddy - OWASP Mobile Application Security
owasp mobile application
mastg tool
0135
security
https://mas.owasp.org/MASTG/tests/android/MASVS-RESILIENCE/MASTG-TEST-0039/
MASTG-TEST-0039: Testing whether the App is Debuggable - OWASP Mobile Application Security
owasp mobile application
mastg test
0039
testing
whether
https://mas.owasp.org/MASTG/tests/android/MASVS-PLATFORM/MASTG-TEST-0024/
MASTG-TEST-0024: Testing for App Permissions - OWASP Mobile Application Security
owasp mobile application
mastg test
0024
testing
permissions
https://mas.owasp.org/MASTG/tests/android/MASVS-RESILIENCE/MASTG-TEST-0265/
MASTG-TEST-0265: References to StrictMode APIs - OWASP Mobile Application Security
owasp mobile application
mastg test
0265
references
strictmode