Automated Mobile Application Security Assessment – MAS
Mobile Application market is growing like anything and so is the Mobile Security industry. With lots of frequent application releases and updates happening, conducting the security analysis of mobile applications becomes time consuming mainly because of the overheads in setting up and maintaining a mobile application testing environment. This course will introduce an extendable web framework called MobSF for Automated Security analysis of Mobile Applications.
Modules
Performing Static Analysis with MobSF
-
Overview: MobSF Static Analyzer 3m
-
Static Analysis of Android Binary and Report Walkthrough Part 1 8m
-
Static Analysis of Android Binary and Report Walkthrough Part 2 7m
-
Static Analysis of Android Source Code 2m
-
Static Analysis of iOS Binary 5m
-
Static Analysis of iOS Source Code 3m
-
Static Analysis of Windows Binary 2m
-
Additional Feature: Diffing Results 3m
-
Additional Feature: VirusTotal Integration 4m
Performing Dynamic Analysis with MobSF
-
Overview: MobSF Dynamic Analyzer 2m
-
Setting up Android Dynamic Analyzer 5m
-
Dynamic Analysis of Android Binaries 6m
-
Live API Monitor 3m
-
Shell Access and Frida Code Editor 3m
-
Auxiliary Frida Scripts 6m
-
Android Dynamic Analysis Report Walkthrough 3m
-
Exercise 1: Runtime Instrumentation with Frida Scripts 6m
-
Exercise 2: Bypassing business logic of a real world app – Identifying the method to hook 6m
-
Exercise 2: Bypassing business logic of a real world app – Writing Frida Script 4m