43 Followers
28 Following
55 Posts
Comprehensive Mobile Application Risk Management with continuous testing to discover, assess, and mitigate security and compliance risks.

#ShadowAI isn't really a tech problem. It's a visibility problem.

If your org can't see where #AI is being used, you can't manage the #risk..or the opportunity.

Check out this thoughtful discussion on how to govern AI without slowing innovation: https://loom.ly/evtMxXg

MAScon is coming and it’s exactly what mobile #AppSec needed! A practitioner-first event centered on real-world techniques: offensive research, tooling, and runtime analysis.

Learn more about the inaugural event: https://loom.ly/60fJxAw

#MAScon #OWASP #OWASPMAScon

A compromised #AI tool led to the Vercel breach via employee access and exposed variables.

That’s not just infra risk.. it’s the same pattern we see in #mobile supply chains every day.

Learn more about the #Vercel #hack: https://loom.ly/wbHv0jI

🚨LEGENDARY DROP TOMORROW... Pancake 🤝 Paul’s Security Weekly

Reverse engineering, radare, and NowSecure - you won't want to miss this one

#PaulsSecurityWeekly #radare @pancake @securityweekly

NowSecure + iVerify 🤝

Security teams can now see #mobileapp risk directly inside #iVerify Enterprise—from malicious #apps to risky SDK supply-chains.

More visibility. Faster action.

Learn more: https://loom.ly/aalDN3w

Most mobile DAST tools stall at login, leaving real risk untested.

APIs. Data flows. SDKs. AI. Privileged functions.

NowSecure AI-Navigator changes the game: Authenticated dynamic testing — no scripts, no fragile automation.

Finally test past login: https://loom.ly/PvvVuiA

#AI#DAST#AppSec#MobileSecurity#CyberSecurity

The Privacy + Security Forum last week underscored just how dynamic #privacy has become. With new and updated state laws emerging & the Bulk Data Transfer rule stirring debate, building strong data foundations is more important than ever. What steps are you taking to stay ahead?

#CyberSecurity #DataPrivacy #MobilePrivacy

#r2con2025 is BACK October 24-25, streamed fully online for the first time! Whether you’re using #radare2 or curious, we’ve got sessions on emulators, Rust binaries, shellcode morphing & more. See the full agenda here: https://loom.ly/eFyEuVY

#r2 #radare #r2con #reverseengineering @pancake

Last call to be speak at r2con 2025! Check out the details on the new virtual format and submit your talk by this Sunday 10/12 to be considered: https://loom.ly/eFyEuVY #r2con #r2con2025 #radare #r2 @pancake
Mobile apps may look clean, but if your backend or dev tooling is compromised, your app is at risk too. The latest #NPM attack shows why #supplychain #security matters end to end. Details: https://www.nowsecure.com/blog/2025/09/16/new-npm-supply-chain-attack-hits-187-packages-heres-why-mobile-apps-are-still-at-risk/?utm_source=mastodon