Mobile Application Security

Mobile Design (Architecture) Review

  • High-level examination of application artifacts such as security requirements, secure development standards, and specific application specifications to ensure security has been implemented throughout the development lifecycle of the mobile application.
  • Identify weaknesses in proposed design and recommend appropriate countermeasures to mitigate threats.

Mobile Application Threat Modeling

  • Comprehensive threat assessment delivered with FishNet Security's proven, STRIDE-based methodology.
  • Determine data flows and examine entry and exit points in the application, exposing opportunities to subvert security controls.
  • Recommend countermeasures to eliminate threats and vulnerabilities.

Mobile Application Security Assessment

  • Analysis of a mobile application's security posture within a run-time environment on its native platform, focused on identifying security vulnerabilities, insecure configuration, and other threats.

Mobile Application Security Code Review

  • Examine applications at the code-level, and identify hard-to-find technical bugs that can be missed in run-time assessments.
  • Identify logic flaws and other weaknesses that are impossible to locate and analyze without access to the application's source code.

Mobile Vulnerability Assessment

  • Test the security of the mobile device from an end user's perspective to determine if the mobile device could allow leakage of confidential data, denial of service, or other attacks.