Presentation: Android Apps, an Attacker’s Perspective
Abstract
You finished your last line of code ahead of schedule, confirmed the app builds properly, passed all your quality tests and now it’s time for that celebratory pizza and beer! A week after launch, you get a call at 3 AM…it’s your boss. Some teenager is tweeting about how your company sucks at security and spelling out all the gory details of where you failed at securing your Android app. How did this happen? Where did you go wrong? Must be some wunderkind hacker, using some serious ninja, 0 day, blackhat stuff, right!? Sorry, this ain’t Hollywood. The answer is almost always that you’ve made the same mistake many developers before you did … you failed to think like an attacker. This talk will focus on how to apply an adversarial perspective to the work that you do, when building Android applications. We’ll focus on how to identify attack surfaces, paths to exploitation and the thought processes penetration testers, as well as attackers, apply to identify weaknesses in your apps.
Similar Talks
Tracks
Covering innovative topics
Monday Nov 16
-
Architectures You've Always Wondered About
Silicon Valley to Beijing: Exploring some of the world's most intrigiuing architectures
-
Applied Machine Learning
How to start using machine learning and data science in your environment today. Latest and greatest best practices.
-
Browser as a platform (Realizing HTML5)
Exciting new standards like Service Workers, Push Notifications, and WebRTC are making the browser a formidable platform.
-
Modern Languages in Practice
The rise of 21st century languages: Go, Rust, Swift
-
Org Hacking
Our most innovative companies reimagining the org structure
-
Design Thinking
Level up your approach to problem solving and leave everything better than you found it.
Tuesday Nov 17
-
Containers in Practice
Build resilient, reactive systems one service at a time.
-
Architecting for Failure
Your system will fail. Take control before it takes you with it.
-
Modern CS in the Real World
Real-world Industry adoption of modern CS ideas
-
The Amazing Potential of .NET Open Source
From language design in the open to Rx.NET, there is amazing potential in an Open Source .NET
-
Optimizing You
Keeping life in balance is always a challenge. Learning lifehacks
-
Unlearning Performance Myths
Lessons on the reality of performance, scale, and security
Wednesday Nov 18
-
Streaming Data @ Scale
Real-time insights at Cloud Scale & the technologies that make them happen!
-
Taking Java to the Next Level
Modern, lean Java. Focuses on topics that push Java beyond how you currently think about it.
-
The Dark Side of Security
Lessons from your enemies
-
Taming Distributed Architecture
Reactive architectures, CAP, CRDTs, consensus systems in practice
-
JavaScript Everywhere!
Javascript is Everywhere. Learn why
-
Culture Reimagined
Lessons on building highly effective organizations