mit einem Klick
mobile-security-skills
mobile-security-skills enthält 12 gesammelte Skills von dweinstein, mit Repository-Berufsabdeckung und Skill-Detailseiten auf SkillsMP.
Skills in diesem Repository
Assess mobile app authentication and authorization mechanisms against MASVS-AUTH controls and MASTG tests. Use when reviewing login flows, biometric auth, session management, MFA implementation, or access control in Android or iOS apps.
Generate a mobile app penetration testing plan based on MASTG methodology and NowSecure practices. Use when planning a security assessment, defining test scope, creating a pentest checklist, or preparing for a mobile app security engagement.
Check mobile app network communication security against MASVS-NETWORK controls and MASTG tests. Use when reviewing TLS configuration, certificate pinning, cleartext traffic, or API communication security in Android or iOS apps.
Assess mobile app resilience against reverse engineering and tampering per MASVS-RESILIENCE controls and MASTG tests. Use when evaluating anti-tampering, root/jailbreak detection, obfuscation, anti-debugging, or integrity verification in Android or iOS apps.
Scan mobile app code quality and security against MASVS-CODE controls and MASTG tests. Use when checking for vulnerable dependencies, input validation issues, injection flaws, outdated platform requirements, or third-party library risks in Android or iOS apps.
Generate a MASVS v2 compliance checklist with MASTG test mappings for a mobile app. Use when you need a complete security checklist, compliance tracking document, or gap analysis against OWASP MASVS for Android or iOS apps.
Review mobile app platform interaction security against MASVS-PLATFORM controls and MASTG tests. Use when auditing IPC mechanisms, WebViews, deep links, URL schemes, permissions, content providers, or UI security in Android or iOS apps.
Provide secure mobile development guidance based on the NowSecure Secure Mobile Development guide, MASVS, and MASTG. Use when developers ask how to implement a feature securely, need security code review guidance, or want best practices for a specific mobile development pattern.
Audit mobile app source code for insecure data storage vulnerabilities per MASVS-STORAGE controls and MASTG tests. Use when reviewing how an app stores sensitive data locally, checks for data leakage, or assesses data-at-rest protection on Android or iOS.
Review mobile app cryptographic implementations against MASVS-CRYPTO controls and MASTG tests. Use when auditing encryption, key management, hashing, random number generation, or cryptographic protocol usage in Android or iOS apps.
Create a comprehensive threat model for a mobile application using STRIDE methodology mapped to MASVS controls. Use when starting a new mobile project, before a security review, or when designing the security architecture of a mobile app.
Audit mobile app privacy practices against MASVS-PRIVACY controls and MASTG tests. Use when reviewing data minimization, user tracking, consent mechanisms, data collection transparency, or user data control in Android or iOS apps.