Solution Briefs

Application Protection for Android Solution Brief

Issue link: https://read.uberflip.com/i/1254755

Contents of this Issue

Navigation

Page 0 of 1

Solution Brief Digital.ai | Digtial.ai Application Protection for Android Digital.ai Application Protection for Android (formerly Arxan) Mobile computing continues to grow across all industries, and at the same time it's creating an even bigger attack surface. Public app stores enable end users to download them to their own devices — outside the business perimeter — and run them in untrusted environments. Today's cybercriminals are exploiting this distribution environment and have expanded their operations to attack mobile apps for financial gain by stealing customer identities, intellectual property, or by gaining access to back office systems. A recent report from Accenture Consulting found that more than 60% of mobile banking apps are at risk for reverse engineering attacks. Mobile app attacks are all executed through reverse engineering — the disassembly of apps back to the original code through the use of commonly available tools. Once disassembled bad actors can uncover critical algorithms, understand how to best tamper with code, uncover keys, sensitive data, and obtain API access. To counteract these threats, apps must be hardened to protect against reverse engineering, defend against compromises, and respond to threats. Additionally, to close the loop and prevent threats from becoming large scale attacks, apps need to be able to report back to the business about the kinds of threats being encountered. Android app protection Digital.ai Application Protection for Android features automated, comprehensive, and customizable protections for applications developed using Java or Kotlin. Digital.ai's application protection solutions go beyond traditional runtime application self-protection (RASP) by providing rooted device detection, layered and adaptive app protection, data encryption, and threat alerting and analytics. Android code protection Digital.ai code protection hardens Android applications with patented guarding technology, enabling RASP, tamper resistance, and self-healing measures using a unique, configurable guard network methodology. This not only protects against attacks, but also detects and alerts the business at the first sign of code compromise. Digital.ai code protection consists of interconnected code protection units that together create a protection blueprint. This protection blueprint is applied to the final application after the build process without requiring source code modifications. Initial code protection can deliver an essential level of protection within minutes that includes threat detection and be applied without app security expertise. Digital.ai's protection process is straightforward to implement and has minimal impact on the software development lifecycle and can be easily integrated into DevSecOps production environments. Once created, protection blueprints can be automatically updated for inclusion in successive builds — improving follow-on app security without requiring additional development resources. -[LockScreenViewController confirmPinBtn sub sp, sp, #0x50 ; Objective C stp x20, x19, [sp, #0x30] atp x29, x30, [sp, #0x40] add x29, sp, #0x40 str x1, [sp, #0x40 + var_20] str xzr, [sp, #0x40 + var_28] add x0, sp, #0x18 ; argumant "add mov x1, x2 ; argument "value bl imp___stubs__objc_storeStrong adrp x8, #0x100033000 ; 0x1000332 add x8, x8, #0x2b8 ; 0x1000332b8g adrp x9, x9, #0x5d0 ; 0x1000335d00 ldur x10, [x29, var_18] -[LockScreenViewController confirmPinBtn sub sp, sp, #0x50 ; Objective C stp x20, x19, [sp, #0x30] atp x29, x30, [sp, #0x40] add x29, sp, #0x40 str x1, [sp, #0x40 + var_20] str xzr, [sp, #0x40 + var_28] add x0, sp, #0x18 ; argumant "add mov x1, x2 ; argument "value bl imp___stubs__objc_storeStrong adrp x8, #0x100033000 ; 0x1000332 add x8, x8, #0x2b8 ; 0x1000332b8g adrp x9, x9, #0x5d0 ; 0x1000335d00 ldur x10, [x29, var_18]

Articles in this issue

Links on this page

view archives of Solution Briefs - Application Protection for Android Solution Brief