All pages
Powered by GitBook
1 of 1

Loading...

Introduction

Discover curated AppSec articles, guides, and research on mobile app and API security, covering rooting, hooking, Flutter security, RASP, AppiCrypt, and practical threat detection techniques.

Featured AppSec Collections

Mobile and API Threat Detection & Defense (Rooting, Hooking, Reverse Engineering)

Technical articles focused on advanced strategies to detect and defend against mobile threats, including rooting, hooking, reverse engineering, and API abuse.

Talsec RASP+, AppiCrypt and freeRASP Guides and Features

This collection highlights cutting-edge tools and resources from Talsec designed to secure mobile apps through runtime application self-protection (RASP), API integrity checks, and anti-abuse measures.

OWASP TOP 10 for Flutter

Series of artiles written by Majid Hajian discussing each threat of OWASP TOP 10, in context of Flutter and its security.

Flutter Security

At Talsec, we’re proud to lead the way as the #1 Flutter Security SDK, and our commitment to this growing framework runs deep. This curated collection showcases our ongoing efforts to protect Flutter apps.

Reports & Original Research

In-depth reports and original research articles focused on mobile app security, fraud prevention, and API protection.

Talsec Mobile App Security Conference 2025

Summary of talks and keynotes from Talsec Mobile App Security Conference 2025 in shortened article form with video attached as well.

Latest Articles

Articles by our team members and guest experts (become one of them) that explore practical mobile security and threat defense topics for the developer community.

White-Box Cryptography: Hiding Keys in Plain Sight

What's New in freeRASP: Bootloader Detection

Breaking the Android Sandbox and How to Defend Against It

Case Study: How Rogue Malware Apps Attack Your Users (and What Our Data Shows)

EUDI - App Attestation Choices: AppiCrypt vs. Google Play Integrity & Apple App Attest

EUDI Developer Guide: Secure EUDI Wallet Integration for Mobile Developers (ARF, DCQL, 2026-2027)

EUDI Wallet Integration: A CTO's Decision Guide

Build a Secure EUDI Wallet Relying Party

Frida: Hacking and protecting mobile apps

New features in Talsec Portal

How Our Partnership With Gen Digital Enabled Malware Detection v2 Powered by Avast and Norton DBs

Talsec Global Threat Report 2025

Panel: Engineers vs. Reverse Engineers

The AI Impersonator: Runtime Defense Against Machine-Generated Deception with Dmitri Bogatenkov

How to Stop Bots Without CAPTCHA

Opening Keynote: Safety/Security Equilibrium with Sergiy Yakymchuk (Talsec)

TechTalk: Predictive Apps Protection with Sergiy Yakymchuk (Talsec)

TechTalk: Best Practices for Keeping Your App Safe with Majid Hajian (Microsoft)

OWASP Top 10 For Flutter – M10: Insufficient Cryptography in Flutter & Dart

Android Malware Detection SDK for Your App: Detect Risky & Suspicious Apps and Known Malware

OWASP Top 10 For Flutter – M9: Insecure Data Storage in Flutter & Dart

How to Block Screenshots, Screen Recording, and Remote Access Tools in Android and iOS Apps
Flutter Security 101: Restricting Installs to Protect Your App from Unofficial Sources
Emulators in Gaming: Threats and Detections
Hacking and protection of Mobile Apps and backend APIs | 2024 Talsec Threat Modeling Exercise
Detect system VPNs with freeRASP
Safeguarding Your Data in React Native: Secure Storage Solutions
React Native Secure Boilerplate 2024: Ignite with freeRASP
Mobile API Anti-abuse Protection with AppiCrypt®: A New Play Integrity and DeviceCheck Alternative
Introducing Talsec’s advanced malware protection!
Enhancing Capacitor App Security with freeRASP: Your Shield Against Threats 🛡️
Build secure apps in React Native
OWASP Top 10 For Flutter - M1: Mastering Credential Security in Flutter
OWASP Top 10 For Flutter – M2: Inadequate Supply Chain Security in Flutter
OWASP Top 10 For Flutter – M3: Insecure Authentication and Authorization in Flutter
OWASP Top 10 For Flutter – M4: Insufficient Input/Output Validation in Flutter
OWASP Top 10 For Flutter - M5: Insecure Communication for Flutter and Dart
OWASP Top 10 For Flutter – M6: Inadequate Privacy Controls in Flutter & Dart
OWASP Top 10 For Flutter – M7: Insufficient Binary Protection in Flutter & Dart
Flutter Security 101: Restricting Installs to Protect Your App from Unofficial Sources
User Authentication Risks Coverage in Flutter Mobile Apps | TALSEE
Secure Storage: What Flutter can do, what Flutter could do
🔒 Flutter Plugin Attack: Mechanics and Prevention
How to Hack & Protect Flutter Apps — Simple and Actionable Guide (Pt. 1/3)
How to Hack & Protect Flutter Apps — OWASP MAS and RASP. (Pt. 2/3)
Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs
How to test a RASP? OWASP MAS: RASP Techniques Not Implemented [MASWE-0103]
Flutter CTO Report 2024: Flutter App Security Trends
Fraud-Proofing an Android App: Choosing the Best Device ID for Promo Abuse Prevention
Protecting Your API from App Impersonation: Token Hijacking Guide and Mitigation of JWT Theft
5 Things John Learned Fighting Hackers of His App — A must-read for PM’s and CISO’s
Case Study: How Rogue Malware Apps Attack Your Users (and What Our Data Shows)
Keynote: Discovering the Power of AI Pentesting with Pedro Conde (Ethiack)
Keynote: Red Teaming in Practice with Adam Žilla (Haxoris)
Keynote: Raising the Bar with Software Protection with Béatrice Creusillet (Quarkslab)
Keynote: 20 Minutes to Banking-Grade Security with Mateusz Wojtczak (LeanCode)
Keynote: Communty-Driven Security as Collective Defense with Tomáš Soukal (Talsec)
Keynote: Cloudflare for AppSec with Anatol Nikiforov (Cloudflare)
Keynote: Fingerprinting, Device Intel & Context with Martin Makarský (Fingerprint)
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover

OWASP Top 10 For Flutter – M8: Security Misconfiguration in Flutter & Dart

OWASP Top 10 For Flutter – M7: Insufficient Binary Protection in Flutter & Dart

Talsec RASP+ and AppiCrypt for Apple TV Apps

TechTalk: Threshold Cryptography with Jan Kvapil (MUNI)

Keynote: Fingerprinting, Device Intel & Context with Martin Makarský (Fingerprint)

How To Detect Video Injection for KYC

Keynote: Cloudflare for AppSec with Anatol Nikiforov (Cloudflare)

Keynote: Communty-Driven Security as Collective Defense with Tomáš Soukal (Talsec)

Keynote: 20 Minutes to Banking-Grade Security with Mateusz Wojtczak (LeanCode)

Keynote: Raising the Bar with Software Protection with Béatrice Creusillet (Quarkslab)

Keynote: Red Teaming in Practice with Adam Žilla (Haxoris)

Keynote: Discovering the Power of AI Pentesting with Pedro Conde (Ethiack)

How to Detect Jailbreak using Capacitor

How to Detect Hooking using Capacitor

freeRASP for Kotlin Multiplatform Guide

Achieving Cloudflare Outage Resilience using AppiCryptWeb

How to Detect Root on React Native

How to Detect Jailbreak on React Native

How to Prevent Magisk Root Hiding and Security Bypass

How to Detect Hooking (Frida) on React Native

How to Detect a Weak Wi-Fi: Guide to In-App Network Security Checks

Future-Proofing for the Data-Driven Ecosystem: Securing Your Application and Data APIs

freeRASP for Unreal Engine: Secure Your Revenue

How to Detect Screen Capture & Recording using Kotlin

How to Detect Developer Mode on Android using Kotlin

How to Detect App Tampering & Repackaging using Kotlin

How to Detect Jailbreak on Flutter

How to Detect Root on Flutter

How to Detect Hooking (Frida) on Flutter

How Secure Are Flutter Apps?

How to Detect Emulator in Kotlin

How to Detect Root using Kotlin

How to Detect Jailbreak using Swift

How to Detect Hooking (Frida) using Kotlin

How to Detect Hooking (Frida) using Swift

How to Detect VPN using Swift

How to Detect VPN using Kotlin

AppiCrypt Against Time Spoofing: From Free Trial Abuse to License Fraud and Audit Log Corruption

Preventing Piracy and Cheating in Games: A Guide to Countering GameGuardian with Talsec

iOS Keychain vs. Android Keystore

Introducing Multi-Instancing Detection for freeRASP

Introducing the Talsec Portal: A New Way to Monitor Your App — Try It Now!

How to Achieve Root-Like Control Without Rooting: Shizuku's Perils & Talsec's Root Detection

freeRASP for Unity Guide [new!]

ApkSignatureKiller: How it Works and How Talsec Protects Your Apps

AI Device Risk Summary Demo | Threat Protection | Risk Scoring | Malware Detection | Android & iOS

Podcast: iOS Keychain vs Android Keystore

Obfuscation of Mobile Apps

OWASP Top 10 For Flutter – M6: Inadequate Privacy Controls in Flutter & Dart

Simple Root Detection: Implementation and verification

Flutter - M5: Insecure Communication for Flutter and Dart

OWASP Top 10 For Flutter – M4: Insufficient Input/Output Validation in Flutter

OWASP Top 10 For Flutter – M3: Insecure Authentication and Authorization in Flutter

OWASP Top 10 For Flutter – M2: Inadequate Supply Chain Security in Flutter

OWASP Top 10 For Flutter - M1: Mastering Credential Security in Flutter

🚀A Developer’s Guide to Implement End-to-End Encryption in Mobile Apps 🛡️

Flutter Security 101: Restricting Installs to Protect Your App from Unofficial Sources

Learn how to implement the Secure Storage in Flutter and understand storage restrictions.

Dive into our full guide as Himesh Panchal walks you through creating a robust and secure authentication flow!

Introduction: Root Detection Basics

OWASP Top 10 For Flutter – M2: Inadequate Supply Chain Security in Flutter

Hook, Hack, Defend: Frida's Impact on Mobile Security & How to Fight Back

Emulators in Gaming: Threats and Detections

Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs

How to Block Screenshots, Screen Recording, and Remote Access Tools in Android and iOS Apps

How do you test a RASP? This guide will walk you through the entire process of RASP evaluation. It is written for penetration testers and RASP integrators.

Fact about the origin of the Talsec name

React Native Secure Boilerplate 2024: Ignite with freeRASP

Hacking and protection of Mobile Apps and backend APIs | 2024 Talsec Threat Modeling Exercise

Flutter CTO Report 2024: Flutter App Security Trends

Mobile API Anti-abuse Protection with AppiCrypt®: A New Play Integrity and DeviceCheck Alternative

Detect system VPNs with freeRASP

Introducing Talsec’s advanced malware protection!

Fraud-Proofing an Android App: Choosing the Best Device ID for Promo Abuse Prevention

Enhancing Capacitor App Security with freeRASP: Your Shield Against Threats 🛡️

Safeguarding Your Data in React Native: Secure Storage Solutions

Secure Storage: What Flutter can do, what Flutter could do

🔒 Flutter Plugin Attack: Mechanics and Prevention

Protecting Your API from App Impersonation: Token Hijacking Guide and Mitigation of JWT Theft

Build secure apps in React Native

How to Hack & Protect Flutter Apps — Simple and Actionable Guide (Pt. 1/3)

How to Hack & Protect Flutter Apps — OWASP MAS and RASP. Use them and your project will cut the mustard! (Pt. 2/3)

How to Hack & Protect Flutter Apps — Steal Firebase Auth token and attack the API. (Pt. 3/3)

freeRASP meets Cordova

Philosophizing security in a mobile-first world

5 Things John Learned Fighting Hackers of His App — A must-read for PM’s and CISO’s

Missing Hero of Flutter World

Obfuscation of Mobile Apps
OWASP Top 10 For Flutter – M8: Security Misconfiguration in Flutter & Dart
OWASP Top 10 For Flutter – M9: Insecure Data Storage in Flutter & Dart
OWASP Top 10 For Flutter – M10: Insufficient Cryptography in Flutter & Dart
How to Hack & Protect Flutter Apps — Steal Firebase Auth token and attack the API. (Pt. 3/3)
Missing Hero of Flutter World
TechTalk: Threshold Cryptography with Jan Kvapil (MUNI)
TechTalk: Best Practices for Keeping Your App Safe with Majid Hajian (Microsoft)
TechTalk: Predictive Apps Protection with Sergiy Yakymchuk (Talsec)
Opening Keynote: Safety/Security Equilibrium with Sergiy Yakymchuk (Talsec)
TT: The AI Impersonator: Runtime Defense Against Machine-Generated Deception with Dmitri Bogatenkov
Panel: Engineers vs. Reverse Engineers
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover
Cover