IOS Security

Secure Boot Chain

Secure Enclave

Code Singing

Process Level SandBoxing

Data at rest Encryption

Exploit Mitigation

File Crypto

Jailbreak detection

Bypassing apple apps store review:

Automatic reference counting

App file system layout

Security testing

Analyzing Android Apps

Android development kit (SDK)

$ android avd # create virtual device
$ emulator -adv kitkat # start virtual device
$ adb devices # list devices

BusyBox

Drozer

Attacking Android Apps

Intent: Data object that defines a task to be perfomed

Activity Graphical interface of app for users