Armor For Your Android Apps presented at Shmoocon 2013

by Roman Faynberg,

Summary : Our defensive security talk is primarily targeted towards Android developers. We will share "war stories" of Android vulnerabilities and exploits to show the audience how "not to code". We will then talk about best practices and guidelines that Android developers should follow and defensive techniques that should be integrated into Secure SDLC at various stages of development. Our real-life examples will show how these techniques actually help prevent exploitation. Finally, we plan to release a sample "HackMe" Android app that will contain vulnerabilities that developers and testers alike will have fun taking apart while learning more about Android security.