Mobile API Anti-abuse Protection: AppiCrypt® Is a New SafetyNet and DeviceCheck Attestation Alternative (crosspost)

Mobile API Anti-abuse Protection: AppiCrypt® Is a New SafetyNet and DeviceCheck Attestation Alternative (crosspost)

The authenticity and integrity of the device and the application must be verified to determine whether the application’s backends are communicating with a legitimate application running on an approved/genuine mobile device. An attestation is a technique and process leading to evidence or proof of authenticity.

Check this link to learn more about AppiCrypt, a powerful tool that provides proof of app and device integrity for backends:
https://medium.com/@talsec/mobile-api-anti-abuse-protection-appicrypt-is-a-new-safetynet-and-devicecheck-alternative-20cf7a07dfb0

5 Things John Learned Fighting Hackers of His App — A must-read for PM’s and CISO’s (crosspost)

5 Things John Learned Fighting Hackers of His App — A must-read for PM’s and CISO’s (crosspost)

John is the creator of a popular app BetterVision, for the blind and visually impaired. There is a good reason for the over 100K installations John’s creation has achieved. BetterVision can turn a phone’s camera into a powerful assistant easing a daily routine for disabled users worldwide. With success, however, soon came difficulties. John’s app suffered a cloning attack, and his In-App purchases got stolen.

Check this link:
https://medium.com/@talsec/5-things-john-learned-fighting-hackers-of-his-app-a-must-read-for-pms-and-ciso-s-463379b49410

#1 Flutter Security Library: How to Build Secure App using freeRASP | freeRASP Implementation Guide (crosspost)
freeRASP: In-App protection SDK and app security monitoring service (crosspost)