Did you know that Google Play Store is the most popular channel for threat actors to distribute #malware to target mobile banking apps? Learn more here: https://t.co/p9HQ1Fw7iq
#FinTech#Android#AppSec
SQL Injection is still present in 2023 on mobile platforms 📱. If you think iOS is more secure than Android because it’s difficult to misconfigure, this article will change your mind! Happy to share my very first CVE-2023-41387.
#MobileSecurity#flutter
https://t.co/4dNWJdsHe6
In our latest blog post, we delve into some intricacies of the Android permission system. Check out how we pushed the boundaries of custom permissions and unveiled CVE-2023-20947 by harnessing a solver approach! 🔓
https://t.co/dOromiFfhE
The Accessibility Service on Android is an impactful feature for people with disabilities. However, it also comes with security risks. Here, you can learn how to protect against them: https://t.co/1EbcSnOUcY
#MobileAppSecurity#Accessibility#CyberSecurity
I've ported SiMBA (MBA Simplification Tool) to C/C++, added enhancements, multithreading support and boosted the performance 🚀🚀🚀 (https://t.co/akR8RA5zXX)
Our new decompiler plugin is now available! gooMBA is here to help when you’re struggling with a ‘'mixed boolean arithmetic”-obfuscated binary. Read more 🌐 https://t.co/4hEfOZjbei
#HexRays#HexRaysDecompiler#IDAPro
Our new decompiler plugin is now available! gooMBA is here to help when you’re struggling with a ‘'mixed boolean arithmetic”-obfuscated binary. Read more 🌐 https://t.co/4hEfOZjbei
#HexRays#HexRaysDecompiler#IDAPro
Another great Plugin Focus blog post is out! Marc-Étienne Léveillé introduces the IPyIDA plugin. Learn how this IDA add-on makes prototyping and Python plugin and script development friendlier 🌐 https://t.co/625Kw4ricN
#PluginFocus#IDAPro#IDAPython#IDAPlugin
IDA handles direct calls and adds cross-references automatically. What could you do when you are dealing with indirect calls? Check how to set callee addresses manually 🌐 https://t.co/zxZlcqueiv
#IgorsTipOfTheWeek#IDAtips#IDAPro#IndirectCalls
Time for a brief thread on one of @HexRaysSA most powerful classes provided as part of their IDA Python API
The humble insn_t class
Understanding this type will help you in all sorts of ways, including my favorite, generating YARA signatures
Let's begin...
Lets goo. Made some additions to https://t.co/ebe1NiBY5l and voila🥳 Finally a good blog post subject + will be explaining some ida internal errors I encounter while playing with hexray microcode api👽Blog post soon🤠
In the final blog of our Flutter app reverse engineering series, we look at how classical attacks apply to Flutter apps. Follow along as we investigate using techniques like code patching and hooking for cheating: https://t.co/ksODLAa8qj
#reverseengineering#Flutter#FlutterDev
TrollStore, a new iOS tool, prompts developers to rethink their #MobileAppSec as they can no longer rely on #Jailbreak or repackaging detection to stop modded #iOS apps. See how #TrollStore is impacting the industry.
https://t.co/ahnVX5O2W3
#iOSDev
The results are out!
We are very honoured to have won first place🥇in the Hex-Rays plugin contest 2022 🎉
Our entry was "ttddbg", a time-travel debugging plugin for IDA already presented at #SSTIC 2022.
Many congratulations to all the other entrants!
📝New research by @lmpact_l: "Fork Bomb for Flutter"
There are more and more Flutter applications, and security analysis of these apps is in high demand. Our member Phil shares his knowledge and presents his reFlutter tool.
Read the article: https://t.co/8sLDdgB8Ul
We investigate a bootloader on the #android13 update that increments an anti-roll back version and might put the users of Google Pixel 6 at risk.
https://t.co/IWcqybiQrW