[{"data":1,"prerenderedAt":72},["ShallowReactive",2],{"content-query-KLIRk5yoM5":3},{"_path":4,"_dir":5,"_draft":6,"_partial":6,"_locale":7,"title":8,"description":9,"head":10,"banner":27,"sides":34,"_id":67,"_type":68,"_source":69,"_file":70,"_stem":71,"_extension":68},"\u002Fservices\u002Ftechnical-services\u002Fmobile-app-penetration-test","technical-services",false,"","Mobile App Penetration Test - Cybermode","A Cybermode Mobile App Penetration Test evaluates the security of mobile apps to verify proper secure design & implementation via static & dynamic analysis.",{"meta":11,"link":23},[12,14,16,19,21],{"hid":13,"property":13,"content":8},"twitter:title",{"hid":15,"name":15,"content":9},"twitter:description",{"hid":17,"name":17,"content":18},"twitter:image","https:\u002F\u002Fcybermode.io\u002Fpromotion-graphic.png",{"hid":20,"property":20,"content":8},"og:title",{"hid":22,"name":22,"content":18},"og:image",[24],{"rel":25,"href":26},"canonical","https:\u002F\u002Fcybermode.io\u002Fservices\u002Ftechnical-services\u002Fmobile-app-penetration-test",{"title":28,"desc":29,"img":30},"Mobile App Penetration Test","A Mobile App Penetration Test from Cybermode evaluates the security of mobile apps to verify proper secure design and implementation via static and dynamic analysis.",{"alt":31,"sm":32,"md":32,"lg":33},"mobile app penetration test banner illustration",null,"\u002Fmobile-app-penetration-test-banner-lg.png",{"img":35,"text":37},{"alt":36,"sm":32,"md":32,"lg":33},"mobile app penetration test illustration",[38,45],{"title":39,"content":40},"Securing The Front Door",[41,43],{"content":42},"Mobile Applications are a \u003Cb>necessary component of how many companies interact with customers.\u003C\u002Fb> They compliment the technology stack acting as the “front door” to the customer in fulfilling their business mission.",{"content":44},"This critical asset is \u003Cb>often overlooked in terms of security.\u003C\u002Fb> In the mobile application development process, it is common for security to be neglected, tacked on at the end, or even completely forgotten.",{"title":46,"content":47},"A Specialized Approach",[48,50,52,54,56,58],{"content":49},"The storage of critical data, the proper use of user credentials, the method of communication with external resources, the implementation of cryptographic APIs - \u003Cb>all of these components should be assessed\u003C\u002Fb> for their security posture.",{"content":51},"Due to the locked down environment in which they operate, mobile applications are often more secure than their desktop and server counterparts. Mobile applications normally have a smaller attack surface in the classical sense. This \u003Cb>changes the focus\u003C\u002Fb> of the Mobile App Penetration Test to the protection of data on the device and how the application interacts with external resources.",{"content":53},"Mobile apps often interact with protocols and complex systems such as third party APIs, cars, servers on external networks across the world, Bluetooth devices, a broad variety of IoT devices. These \u003Cb>external systems are potentially susceptible to vulnerabilities,\u003C\u002Fb> network and web application attacks.",{"content":55},"This expanded attack surface should be included in the mobile application’s Threat Model.",{"content":57},"The Cybermode Comprehensive Mobile App Penetration Test is informed by the excellent \u003Cb>OWASP Mobile Application Security Standard (MASVS)\u003C\u002Fb> and the \u003Cb>OWASP Mobile Security Testing Guide (MASTG).\u003C\u002Fb> The following is representative of the testing methodology.",{"content":59},[60,61,62,63,64,65,66],"Data Storage and Privacy","Cryptography","Authentication and Authorization","Network Communication","Interaction with the Mobile Platform","Code Quality and Exploit Mitigation","Anti-Tampering and Anti-Reversing","content:services:technical-services:mobile-app-penetration-test.json","json","content","services\u002Ftechnical-services\u002Fmobile-app-penetration-test.json","services\u002Ftechnical-services\u002Fmobile-app-penetration-test",1785277054245]