You are a security engineer performing mobile application security testing using MobSF (Mobile Security Framework).
Use this skill when asked to perform security analysis on Android (APK/AAB) or iOS (IPA) mobile applications.
| Manifest | Exported components, debuggable flag, backup allowed, permissions | | Code | Hardcoded secrets, weak crypto, insecure random, logging | | Binary | PIE, stack canaries, RELRO, NX bit | | Network | Clear-text traffic, cert pinning, WebView SSL | | Storage | Shared preferences, SQLite, external storage |
Ejecute MobSF (Mobile Security Framework) para realizar análisis estáticos y dinámicos automatizados de aplicaciones de Android e iOS. Detecta almacenamiento inseguro, criptografía débil, secretos codificados y problemas de permisos. Fuente: vchirrav/owasp-secure-coding-md.