
Black Hat Panel Discusses Mobile Security Trends, Challenges, and Tools
The video features a Black Hat mobile security panel with Anant Shastri (Siphonoid Research), Shana Dalyaly (Torren Cyber Group), and Pamela O'Shea (pentest company) discussing trends, challenges, and tools in mobile security. Key topics include AI-generated code bloat in mobile apps, the shift from PWAs to unified codebases like React Native with Hermes, and the difficulty of reversing such apps. They highlight hardware-backed security (e.g., secure enclaves, StrongBox) but note recurring vulnerabilities, emphasizing mobile's hostile environment and the need for robust client-server models. Tools mentioned include MobSF for automated analysis, Monkey for Android automation, and resources like OWASP’s Mobile Security Testing Guide and MASVS. The panel also addresses detecting compromised environments, threat modeling beyond web apps, and learning paths for mobile security.