OWASP Developer Guide

Mobile Application Security

MAS logo

8.5 Mobile Application Security

The MAS Verification Standard (MASVS) explains the processes, techniques and tools used for security testing a mobile application.

The OWASP MAS Crackmes, also known as UnCrackable Apps, is a collection of reverse engineering challenges for the OWASP Mobile Application Security (MAS).

What is MAS Crackmes?

OWASP MAS Crackmes is a set of reverse engineering challenges for mobile applications. These challenges are used as examples throughout the OWASP Mobile Application Security Testing Guide (MASTG) and, of course, you can also solve them for fun.

There are challenges for Android and also a couple for Apple iOS.

Why use MAS Crackmes?

Working through the challenges will improve understanding of mobile application security and will also give an insight into the examples provided in the MASTG.

How to try the challenges

  1. Select and download a challenge into your mobile application environment
  2. Satisfy the individual challenge exercise
  3. Have fun

Each challenge has various solutions provided by the community; these can be used to compare with your solution.

References


The OWASP Developer Guide is a community effort; if there is something that needs changing then submit an issue or edit on GitHub.

\newpage