Any abnormal runtime behavior (changes in permissions, where your app is sending data, new libraries included, code injection and tampering) and vulnerabilities that are detected in the libraries you include after release time.
Three years ago, we launched Malloc — a mobile app that has been downloaded by more than 1 million users to protect their devices from spyware, phishing, data trackers, and other online threats. Through this journey, we’ve learned a lot about spyware and hacking attempts!
1) Advanced spyware injects code into vulnerable libraries in your app to steal your data.
2) You can’t rely on the user providing the correct username and password to protect from fraud — the dark web is full of credentials and phishing calls have become an everyday reality.
3) You need app security tools that can operate in real-time.
So we decided to do something about it and we created Malloc App Security! An SDK library that other apps can integrate to protect from spyware, fraud and hacking attempts.
Who said that running a startup is easy? We had the five most important antivirus companies identifying the Malloc Android app as spyware; How we handled it and all details provided in this #malloc post #enterprenuership #startups
We had the five most important antivirus companies identifying the Malloc Android app as a spyware, which is the total opposite from what the app does. Of course what happened was a misunderstanding, based on false indicators. The conventional antivirus have now whitelisted the app, but the antivirus have accused us with things that we don’t do (e.g., access privacy critical permissions) and caused a lot of concerns between our users. How we handled it and all details provided in this post.