I just published "The Ultimate Decision Tree for Mobile App Network Testing aka 'The Squirrel in the middle'"
This blog post is for everyone that would like to follow a methodology for intercepting the network communication of a mobile app! bit.ly/3qcZ0JP
Happy hacking!
Manicode Security is now offering a full 8-hr, full day class on just AI Security. We believe that AI Security is the future of secure coding education and have invested a great deal to build this class for you all.
🙏
📢 RELEASE ALERT: OWASP MASTG v1.7.0
One of its highlights is the MASTG Refactor Part 2: Techniques, Tools & Reference Apps. Learn more:
github.com/OWASP/owasp-mastg…
Thanks @NowSecureMobile, all our contributors and donators!
🎃 Happy Halloween everyone!
What an insightful experience yesterday during the "Scams and Mobile Security" panel at #SICW in Singapore, where I could share some more insights from the OWASP MAS project. If you are interested you can find more information on mas.owasp.org/.
sicw.gov.sg/events/18-octobe…
I will be in Vienna at DeepSec in Austria, on 14th/15th November to deliver my mobile AppSec training 📱 🔨
The training is offered hybrid, so you can be on-site but also join conveniently remotely!
A detailed syllabus can be found here:
deepsec.net/speaker.html#WSL…
Less than two weeks till I will be in Washington DC to deliver another iteration of my mobile app training. Do you want to learn how to attack and asses iOS and Android apps? Then see you there! It on-site but you can also join virtually.
Syllabus:
owasp2023globalappsecwashin.…
My mobile training will be offered hybrid, so in-person but you can also join remote! We will have different hands-on labs each day, including how to utilise Frida and we will play a CTF at the end of each day to practice your new skills! See you there
owasp2023globalappsecwashin.…
Join @bsd_daemon at #OWASP Global #Appsec DC for his 2-day course aimed to teach you to analyze Android and iOS apps for security vulnerabilities by going through the phases of testing, including dynamic testing, static analysis & reverse engineering. dc.globalappsec.org/
Join @bsd_daemon at #OWASP Global #Appsec DC for his 2-day course aimed to teach you to analyze Android and iOS apps for security vulnerabilities by going through the phases of testing, including dynamic testing, static analysis & reverse engineering. dc.globalappsec.org/
PayPal has blocked our business account and is holding $1.3M for more than 2 months without explaining what exactly they are not happy with. Even @PayPal support doesn't know what's going on. ⚠️This endangers the production of Flipper Zero in general. More details in thread 1/5
@grepharder shared lots of NEWS today @OWASP AppSec APAC, one of them was ..
🎉 Our brand new website!
You can access all our info and read the MASTG/MASVS from it. Everything MAS in one place.
mas.owasp.org