Tuesday, October 31, 2017

Using OstorLab for Mobile Application Analysis

Using OstorLab for Mobile Application Analysis



For using Ostorlab tools, You have do the following steps
1. Download the APK
2. Now go the main page of OStrolab
3. Enter the email, select the type of application (android or IOS) and then upload an APK
4. Click Scan,

The result will be sent to your email, but don't close the screen till it says "that sever is busy , we will email you the results"

Link for website is  https://www.ostorlab.co/scan/ssl/






Tuesday, October 17, 2017

Using Find Bugs for web application Security Analysis


Important Links

  • https://github.com/WebGoat/WebGoat
  • http://plugins.netbeans.org/plugin/912/findbugs-tm-plugin


First of all open the Netbeans

Also download project from Webgoat GitHub


And import the project in Netbeans

If following screen appears Click Resolve to solve maven Problem

Click Inspect to start FindBugs


Find FindBugs and Select it


and Click Install

Once install Click Inspect through FindBugs and you will be able to see vulnerabilities




The video below shows how to use findbugs a tool in net beans for security analysis.




Important Links

  1. https://github.com/WebGoat/WebGoat
  2. http://plugins.netbeans.org/plugin/912/findbugs-tm-plugin


Tuesday, February 7, 2017

Using NVISO Tool for Malware Detection

This video tutorial shows how to use NVISO tool for malware detection in mobile apps

Here important things are
Virus,
Hardcoded links,
Cryptographic activity ,
Information leakage