mobile app – Privacy Design® / [protecting people by good design, solid security, efficient processes and trusted services] Thu, 13 Jun 2019 21:20:59 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.4 /wp-content/uploads/2018/02/cropped-favicon-32x32.jpg mobile app – Privacy Design® / 32 32 Spanish DPA (AEPD): Analysis of Information Flows in Android – Tools for compliance with Accountability /2019/06/13/spanish-dpa-aepd-analysis-of-information-flows-in-android-tools-for-compliance-with-accountability/ Thu, 13 Jun 2019 21:20:59 +0000 /?p=889 Continue reading "Spanish DPA (AEPD): Analysis of Information Flows in Android – Tools for compliance with Accountability"

]]>

The objectives of the study focus on:

  • Defining the context and conceptual framework of the detection of the personal data communications in applications executed on an Android operating system.
  • Demonstrating the elevated risk in the mobile application environment of leaks of personal data and the need to carry out an evaluation of data flows
  • Studying the existing techniques for the detection and analysis of personal information flows in Android Applications.

https://www.aepd.es/media/estudios/estudio-flujos-informacion-android-en.pdf

]]>
Collection of Android Security Resources /2019/05/26/collection-of-android-security-resources/ Sun, 26 May 2019 19:24:52 +0000 /?p=704 https://github.com/ashishb/android-security-awesome

]]>
Free mobile app scanning services /2019/05/26/free-mobile-app-scanning-services/ Sun, 26 May 2019 19:23:39 +0000 /?p=702 More free mobile application scanning services

https://www.ostorlab.co/

https://www.immuniweb.com/mobile/

]]>
Exodus – mobile app privacy scanner /2018/04/02/exodus-mobile-app-privacy-scanner/ Mon, 02 Apr 2018 20:16:24 +0000 /?p=516 εxodus is a privacy auditing platform for Android applications. It detects behaviors which can be dangerous for user privacy like ads, tracking, analytics, …

https://reports.exodus-privacy.eu.org/analysis/submit/

It can be run locally via https://github.com/exodus-privacy/exodus

 

]]>
iOS Web Proxy App (CharlesProxy) /2018/03/28/ios-web-proxy-app-charlesproxy/ Wed, 28 Mar 2018 18:30:36 +0000 /?p=510 Charles proxy is a web debugging proxy application for iOS.

https://www.charlesproxy.com/documentation/ios/

I hope this is simpler than running things in an emulator, or installing a TLS-breaking man-in-the-middle proxy on the wifi access point.

]]>
MobFS – Mobile Security Framework /2018/02/25/mobfs-mobile-security-framework/ Sun, 25 Feb 2018 08:44:44 +0000 /?p=392 Mobile Security Framework is an intelligent, all-in-one open source mobile application (Android/iOS/Windows) automated pen-testing framework capable of performing static, dynamic analysis and web API testing. https://opensecurity.in

https://github.com/MobSF/Mobile-Security-Framework-MobSF

also

https://androidtamer.com/tamer4-release

https://blackarch.org/mobile.html

]]>
[htbridge] Mobile app scanner (free) /2018/02/21/htbridge-mobile-app-scanner/ Wed, 21 Feb 2018 18:35:31 +0000 /?p=258 https://www.htbridge.com/mobile/

]]>
OWASP mobile security project /2018/02/21/owasp-mobile-security-testing-guide/ Wed, 21 Feb 2018 12:59:13 +0000 /?p=240 https://www.owasp.org/index.php/OWASP_Mobile_Security_Project

]]>
[hackapp] Mobile application security scanner /2018/02/21/hackapp-mobile-application-security-scanner/ Wed, 21 Feb 2018 12:49:32 +0000 /?p=235 I can’t vouch for the comprehensiveness or correctness of their results.

https://hackapp.com/scanner

]]>