Discover curated AppSec articles, guides, and research on mobile app and API security, covering rooting, hooking, Flutter security, RASP, AppiCrypt, and practical threat detection techniques.
Articles by our team members and guest experts (become one of them) that explore practical mobile security and threat defense topics for the developer community.
White-Box Cryptography: Hiding Keys in Plain Sight
What's New in freeRASP: Bootloader Detection
Breaking the Android Sandbox and How to Defend Against It
Case Study: How Rogue Malware Apps Attack Your Users (and What Our Data Shows)
EUDI - App Attestation Choices: AppiCrypt vs. Google Play Integrity & Apple App Attest
EUDI Developer Guide: Secure EUDI Wallet Integration for Mobile Developers (ARF, DCQL, 2026-2027)
EUDI Wallet Integration: A CTO's Decision Guide
Build a Secure EUDI Wallet Relying Party
Frida: Hacking and protecting mobile apps
New features in Talsec Portal
How Our Partnership With Gen Digital Enabled Malware Detection v2 Powered by Avast and Norton DBs
Talsec Global Threat Report 2025
Panel: Engineers vs. Reverse Engineers
The AI Impersonator: Runtime Defense Against Machine-Generated Deception with Dmitri Bogatenkov
How to Stop Bots Without CAPTCHA
Opening Keynote: Safety/Security Equilibrium with Sergiy Yakymchuk (Talsec)
TechTalk: Predictive Apps Protection with Sergiy Yakymchuk (Talsec)
TechTalk: Best Practices for Keeping Your App Safe with Majid Hajian (Microsoft)
OWASP Top 10 For Flutter – M10: Insufficient Cryptography in Flutter & Dart
Android Malware Detection SDK for Your App: Detect Risky & Suspicious Apps and Known Malware
OWASP Top 10 For Flutter – M9: Insecure Data Storage in Flutter & Dart





















OWASP Top 10 For Flutter – M8: Security Misconfiguration in Flutter & Dart
OWASP Top 10 For Flutter – M7: Insufficient Binary Protection in Flutter & Dart
Talsec RASP+ and AppiCrypt for Apple TV Apps
TechTalk: Threshold Cryptography with Jan Kvapil (MUNI)
Keynote: Fingerprinting, Device Intel & Context with Martin Makarský (Fingerprint)
How To Detect Video Injection for KYC
Keynote: Cloudflare for AppSec with Anatol Nikiforov (Cloudflare)
Keynote: Communty-Driven Security as Collective Defense with Tomáš Soukal (Talsec)
Keynote: 20 Minutes to Banking-Grade Security with Mateusz Wojtczak (LeanCode)
Keynote: Raising the Bar with Software Protection with Béatrice Creusillet (Quarkslab)
Keynote: Red Teaming in Practice with Adam Žilla (Haxoris)
Keynote: Discovering the Power of AI Pentesting with Pedro Conde (Ethiack)
How to Detect Jailbreak using Capacitor
How to Detect Hooking using Capacitor
freeRASP for Kotlin Multiplatform Guide
Achieving Cloudflare Outage Resilience using AppiCryptWeb
How to Detect Root on React Native
How to Detect Jailbreak on React Native
How to Prevent Magisk Root Hiding and Security Bypass
How to Detect Hooking (Frida) on React Native
How to Detect a Weak Wi-Fi: Guide to In-App Network Security Checks
Future-Proofing for the Data-Driven Ecosystem: Securing Your Application and Data APIs
freeRASP for Unreal Engine: Secure Your Revenue
How to Detect Screen Capture & Recording using Kotlin
How to Detect Developer Mode on Android using Kotlin
How to Detect App Tampering & Repackaging using Kotlin
How to Detect Jailbreak on Flutter
How to Detect Root on Flutter
How to Detect Hooking (Frida) on Flutter
How Secure Are Flutter Apps?
How to Detect Emulator in Kotlin
How to Detect Root using Kotlin
How to Detect Jailbreak using Swift
How to Detect Hooking (Frida) using Kotlin
How to Detect Hooking (Frida) using Swift
How to Detect VPN using Swift
How to Detect VPN using Kotlin
AppiCrypt Against Time Spoofing: From Free Trial Abuse to License Fraud and Audit Log Corruption
Preventing Piracy and Cheating in Games: A Guide to Countering GameGuardian with Talsec
iOS Keychain vs. Android Keystore
Introducing Multi-Instancing Detection for freeRASP
Introducing the Talsec Portal: A New Way to Monitor Your App — Try It Now!
How to Achieve Root-Like Control Without Rooting: Shizuku's Perils & Talsec's Root Detection
freeRASP for Unity Guide [new!]
ApkSignatureKiller: How it Works and How Talsec Protects Your Apps
AI Device Risk Summary Demo | Threat Protection | Risk Scoring | Malware Detection | Android & iOS
Podcast: iOS Keychain vs Android Keystore
Obfuscation of Mobile Apps
OWASP Top 10 For Flutter – M6: Inadequate Privacy Controls in Flutter & Dart
Simple Root Detection: Implementation and verification
Flutter - M5: Insecure Communication for Flutter and Dart
OWASP Top 10 For Flutter – M4: Insufficient Input/Output Validation in Flutter
OWASP Top 10 For Flutter – M3: Insecure Authentication and Authorization in Flutter
OWASP Top 10 For Flutter – M2: Inadequate Supply Chain Security in Flutter
OWASP Top 10 For Flutter - M1: Mastering Credential Security in Flutter
🚀A Developer’s Guide to Implement End-to-End Encryption in Mobile Apps 🛡️
Flutter Security 101: Restricting Installs to Protect Your App from Unofficial Sources
Learn how to implement the Secure Storage in Flutter and understand storage restrictions.
Dive into our full guide as Himesh Panchal walks you through creating a robust and secure authentication flow!
Introduction: Root Detection Basics
OWASP Top 10 For Flutter – M2: Inadequate Supply Chain Security in Flutter
Hook, Hack, Defend: Frida's Impact on Mobile Security & How to Fight Back
Emulators in Gaming: Threats and Detections
Exclusive Research: Unlocking Reliable Crash Tracking with PLCrashReporter for iOS SDKs
How to Block Screenshots, Screen Recording, and Remote Access Tools in Android and iOS Apps
How do you test a RASP? This guide will walk you through the entire process of RASP evaluation. It is written for penetration testers and RASP integrators.
Fact about the origin of the Talsec name
React Native Secure Boilerplate 2024: Ignite with freeRASP
Hacking and protection of Mobile Apps and backend APIs | 2024 Talsec Threat Modeling Exercise
Flutter CTO Report 2024: Flutter App Security Trends
Mobile API Anti-abuse Protection with AppiCrypt®: A New Play Integrity and DeviceCheck Alternative
Detect system VPNs with freeRASP
Introducing Talsec’s advanced malware protection!
Fraud-Proofing an Android App: Choosing the Best Device ID for Promo Abuse Prevention
Enhancing Capacitor App Security with freeRASP: Your Shield Against Threats 🛡️
Safeguarding Your Data in React Native: Secure Storage Solutions
Secure Storage: What Flutter can do, what Flutter could do
🔒 Flutter Plugin Attack: Mechanics and Prevention
Protecting Your API from App Impersonation: Token Hijacking Guide and Mitigation of JWT Theft
Build secure apps in React Native
How to Hack & Protect Flutter Apps — Simple and Actionable Guide (Pt. 1/3)
How to Hack & Protect Flutter Apps — OWASP MAS and RASP. Use them and your project will cut the mustard! (Pt. 2/3)
How to Hack & Protect Flutter Apps — Steal Firebase Auth token and attack the API. (Pt. 3/3)
freeRASP meets Cordova
Philosophizing security in a mobile-first world
5 Things John Learned Fighting Hackers of His App — A must-read for PM’s and CISO’s
Missing Hero of Flutter World




















































































