Who am I

  • Next Generation problem Solver
  • Researcher & Reader in free time
  • Speaker at  Null  & OWASP Community
  • Facilitator at Weekend Testing
  • Crowd Tester (AKA. Bug bounty Hunter)  
  • Reported Security Vulnerabilities for 50+ unique customers all over the world  inlcluding Apple, yahoo, Outlook, adobe & etc.
  • Love to develop nasty code  & Hack it :)
  • Works as Security Researcher  at Accenture Digital Mobility 
  • AKA. Bug Wrangler




Disclaimer


  • This Presentation is intended for educational purposes only and I cannot be held liable for any kind of damages done whatsoever to your machine, or other damages. 
  • Please - Don't try this attack on any others system without having context knowledge or permission, this may harm to someone directly or indirectly.
  • Feel free to use this presentation for practice or education purpose.
  • It's no way related to my employer - its my own research and  ideas. 


^ I hope - You gotcha ^

Social Media feed


Hashtag for this session

     #BarCampBlr,  #MobileSecurity



: Twitter handle for feedback :

 @barcampbng  @Abhinav_Sejpal




The Mobile market is fragmented, stakeholders want their better cheaper faster mobile app - Correct? 


What is if it's has Vulnerable code? WOW :D 

Android Package - APK



Agenda





Android Architecture 



My home is your APK 




















I Love Appie >> 5k+ downloads :D 




Security is not taken seriously 


So your IP is at risk !! 


~ Game done  ~



Yes - I'm Done!


Feel free to write me at bug.wrangler at outlook.com

License and Copyrights


https://slides.com/abhinavsejpal/owasp-androidsecurity

copyrights 2015-2016 Abhinav Sejpal

-----

 (CC BY-NC-ND 3.0)

Attribution-NonCommercial-NoDerivs 3.0 Unported

 Dedicated to my lovely daddy


Aha, We Design Better, Cheaper, Faster And Vulnerable Mobile Apps!

By Abhinav Sejpal

Aha, We Design Better, Cheaper, Faster And Vulnerable Mobile Apps!

The growing consumer demand for smartphones applications, including banking, trading, e-commerce. Stakeholders needs to accept that forthcoming era will be mobile computing centric w.r.t corresponding hugh apps development. As per Gartner prediction, mobile app projects will outnumber PC projects 4-to-1 by middle of 2015. Hacker-Abhinav As we know mobile apps spreading faster than any other consumer technology in history. It’s not surprising that securing mobile apps, particularly around consumer privacy, is moving onto the front page. This needs to be done with highly disciplined mobile apps security expert with mature threat handling matrix, a great toolkits, and experienced mobile applications testers. The Mobile applications often deal with personal identifiable information, credit cards and other sensitive data including IMs & mail client from giant enterprises. I shall be talking pointers which denotes why mobile application hasty development suffering w.r.t security. Session difficulty level: In-depth talks

  • 2,767