Mobile app analysis with Santoku Linux

Presented at AppSec USA 2013, Nov. 21, 2013, 9 a.m. (50 minutes)

Video of session: https://www.youtube.com/watch?v=cmVRCWbo0jU&list=PLpr-xdpM8wG8ODR2zWs06JkMmlRiLyBXU&index=26 Did you think there were a lot of mobile devices and platforms out there?  Check out the hundreds of mobile tools being developed.  We calculated it would take more time to install, test and maintain the various mobile tools than to actually fuzz the hell out all existing mobile operating systems.  So, we created Santoku Linux, a F/OSS, bootable Linux distro to make life easier for mobile hackers.  We pre-install not only the mobile platforms but promising tools in development.  Santoku covers mobile forensics, mobile malware analysis and mobile security testing.  The distribution is based on Lubuntu 12.04 x86_64 and we recently moved to .deb support for simplified upgrades.  The Santoku website contains useful information on Santoku, notable: • Tools: https://santoku-linux.com/features • HOWTOs: https://santoku-linux.com/howtos • Changelog: https://santoku-linux.com/download/changelog This talk will introduce Santoku and provide live demos of 1) how to forensically acquire and analyze Android and iOS devices, 2) several tools to perform security audits of mobile devices and apps, and 3) how to analyze mobile malware analysis.  All demos will leverage tools preinstalled on Santoku Linux and will cover both the iOS and Android  platforms.

Presenters:

  • Andrew Hoog - CEO/Co-founder - NowSecure
    Andrew is the Co-founder and CEO of NowSecure. As a former CIO, Andrew has unique insight into solving enterprise mobile security problems and is driven by NowSecure's mission to advance mobile security worldwide. He is responsible for the vision, strategy and growth of the company.

Links:

Similar Presentations: