Reading time:
~17 min
Posted
by Leon Jacobs
on
28 May 2022
Doing iOS mobile assessments without macOS around is not exactly fun. This can be for many reasons that include code...
Reading time:
~18 min
Posted
by Michael Higgo
on
16 November 2021
With the release of windows 11, Microsoft announced the Windows Subsystem for Android or WSA. This following their previous release,...
Reading time:
~11 min
Posted
by Leon Jacobs
on
02 March 2021
I just got off a call with a client, and realised we need to think about how we report binary...
Reading time:
~7 min
Posted
by Szymon Ziolkowski
on
29 January 2021
In this post I want to share two things. First, a quick primer on how you would you go about...
Reading time:
~6 min
Posted
by Szymon Ziolkowski
on
29 June 2020
I was recently on a mobile assessment where you could only register one profile on the app, per device. To...
Reading time:
~4 min
Posted
by Leon Jacobs
on
11 July 2017
introduction In this post, I want to introduce you to a toolkit that I have been working on, called objection....
Reading time:
~3 min
Posted
by chris
on
20 June 2016
Everyone has a mobile phone (ok some have two) and the wealth of information people put into them is staggering....
Reading time:
~3 min
Posted
by Dane Goodwin
on
27 March 2016
When assessing web applications, we typically look for vulnerabilities such as SQLi and XSS, which are generally a result of...
Reading time:
~8 min
Posted
by Dominic White
on
23 March 2016
With the recent buzz around the iMessage crypto bug from the John’s Hopkins team, several people pointed out that you...
Reading time:
~9 min
Posted
by etienne
on
18 March 2016
Mobile assessments are always fun as the environment is constantly evolving. A recent trend has been the use of custom...
Reading time:
~8 min
Posted
by symeon
on
10 March 2016
Here’s my first blog where I’ll try to write up how I’ve managed to set up the Introspy framework for...
Reading time:
~2 min
Posted
by glenn
on
06 February 2014
This evening we were featured on Channel 4’s DataBaby segment (link to follow). Channel 4 bought several second hand mobile...
Reading time:
~3 min
Posted
by etienne
on
19 August 2013
West Coast in the house, well actually more like an African visiting Seattle for Blackhat’s West Coast Trainings. We’ve had...
Reading time:
~15 min
Posted
by behrang
on
04 June 2013
Introduction: New types of mobile applications based on Trusted Execution Environments (TEE) and most notably ARM TrustZone micro-kernels are emerging which...
Reading time:
~3 min
Posted
by etienne
on
20 May 2013
Monday morning, raring for a week of pwnage and you see you’ve just been handed a new assessment, awesome. The...
Reading time:
~5 min
Posted
by etienne
on
11 February 2013
Taking inspiration from Vlad’s post I’ve been playing around with alternate means of viewing traffic/data generated by Android apps. The...
Reading time:
~3 min
Posted
by Charl van der Walt
on
08 May 2012
This year, for the fourth time, myself and some others here at SensePost have worked together with the team from...
Reading time:
~6 min
Posted
by Charl van der Walt
on
06 March 2012
By the year 2015 sub-Saharan Africa will have more people with mobile network access than with access to electricity at...
Reading time:
~1 min
Posted
by saurabh
on
01 November 2011
This week, Charl van der Walt and I (Saurabh) spoke at Mobile Security Summit organized by IIR (http://www.iir.co.za/detail.php?e=2389). Charl was...
Reading time:
~2 min
Posted
by behrang
on
14 September 2011
Runtime analysis is an integral part of most application security assessment processes. Many powerful tools have been developed to perform...