Talsec's Avatar

Talsec

@talsecofficial.bsky.social

Mobile Application Security company, RASP and API protection for iOS and Android apps

18 Followers  |  20 Following  |  164 Posts  |  Joined: 20.11.2024
Posts Following

Posts by Talsec (@talsecofficial.bsky.social)

Post image

Explore how threshold cryptography redefines key security beyond singleโ€‘device trust โ€” with insights from Jan Kvapil (MUNI).
๐Ÿ” Multiโ€‘device signing, shareโ€‘based key protection, and realโ€‘world defenses.
๐Ÿ“– Read here: docs.talsec.app/appsec-artic...

#Security #Crypto #AppSec

04.03.2026 12:55 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿ“Œ Read article on fingerprinting & device intelligence at Talsec AppSec โ€” and itโ€™s a must-think for anti-fraud strategy.

๐ŸŽฏ Itโ€™s not enough to collect data โ†’ you must interpret it with context + business logic to balance risk mitigation with user experience.

๐Ÿ”— Article: buff.ly/LOEY9Ny

02.03.2026 12:55 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Video injection is one of the main attacks in KYC. Letting attackers feed fake video streams into verification systems to steal identities at scale.

Our latest article describes how Talsec can help against this attack.
๐Ÿ‘‰ docs.talsec.app/appsec-artic...

13.02.2026 16:08 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Cloudflareโ€™s Anatol Nikiforov shared powerful insights on todayโ€™s AppSec challenges โ€” from AI-powered bots to the rise of residential proxies.

If you care about real-world security trends and how defenders are responding, check out this recap:
๐Ÿ”— docs.talsec.app/appsec-artic...

09.02.2026 14:57 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Security works best as a team sport. ๐Ÿค๐Ÿ”
Tomรกลก Soukalโ€™s keynote breaks down community-driven security as collective defenseโ€”and why sharing insights strengthens mobile protection at scale.
docs.talsec.app/appsec-artic...

30.01.2026 14:49 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Keynote: 20 Minutes to Banking-Grade with Mateusz Wojtczak (LeanCode) | AppSec Articles The Talsecarrow-up-right Mobile App Security Conference in Prague was a two-day, invite-only event on fraud, malware, and API abuse in modern mobile apps, held at Chateau St. Havel on November 3โ€“4,โ€ฆ

๐Ÿš€ Can Flutter really be banking-grade secure?

In this keynote recap from Talsecโ€™s Mobile App Security Conference (Prague, Nov 3โ€“4, 2025), Mateusz Wojtczak (Leancode) breaks down why the biggest โ€œFlutter isnโ€™t secureโ€ argument is mostly a misconception.

๐Ÿ“Œ Article: docs.talsec.app/appsec-artic...

22.01.2026 15:10 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Keynote: Raising the Bar with Software Protection with Bรฉatrice Creusillet (Quarkslab) | AppSec Articles The Talsecarrow-up-right Mobile App Security Conference in Prague was a two-day, invite-only event on fraud, malware, and API abuse in modern mobile apps, held at Chateau St. Havel on November 3โ€“4,โ€ฆ

In Bรฉatrice Creusilletโ€™s (Quarkslab) case study: Pwn2Own EV charger attack took ~33 person-days with only light protection. Layering defenses changes everything.

Read the article:

15.01.2026 14:30 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Year in Talsec RASP SDK: Highlights from 2025 | AppSec Articles This year, we confirmed our position as #1 RASP with top root detection. We embraced Kotlin Multiplatform and gaming engines like Unity and Unreal Engine, while finally delivering the long-awaitedโ€ฆ

New platforms, smarter tools, and stronger security. In 2025, we brought Talsec to gaming engines and introduced the Talsec Portal for real-time security intelligence.

We are ready for the next big thing in mobile development. Here is to a secure 2026! ๐Ÿฅ‚

Full summary here:

08.01.2026 14:04 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Keynote: Red Teaming in Practice with Adam ลฝilla (Haxoris) | AppSec Articles The Talsec Mobile App Security Conference in Prague was a two-day, invite-only event on fraud, malware, and API abuse in modern mobile apps, held at Chateau St. Havel on November 3โ€“4, 2025, andโ€ฆ

How do you hack a network with a perfect firewall? You walk in the front door. ๐Ÿšช

Adam ลฝilla from Haxoris reveals how a "fire safety inspector" disguise and a hidden Raspberry Pi led to total domain compromise.

Read the full attack chain๐Ÿ‘‡
docs.talsec.app/appsec-artic...

05.01.2026 15:21 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Keynote: Discovering the Power of AI Pentesting with Pedro Conde (Ethiack) | AppSec Articles The Talsec Mobile App Security Conference in Prague was a two-day, invite-only event on fraud, malware, and API abuse in modern mobile apps, held at Chateau St. Havel on November 3โ€“4, 2025, andโ€ฆ

AI Pentesting isnโ€™t the future. Itโ€™s already here.

@ethiack.com Hackian hackbot compromised a genetics platform in <4h, finding critical bugs humans missed.

Key takeaway: AI finds different vulnerabilities. Test before โ€œbad guysโ€ do.

02.01.2026 14:58 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

New in this version:
๐Ÿ›ก๏ธ Anti-Tamper: New killOnBypass config to terminate the app if callbacks are hooked (Android).
โฐ Time Spoofing: Detect if device time is manipulated.
๐Ÿ“ถ Unsecure WiFi: Detect open/risky networks.
โœ… State Management: New allChecksFinished callback.

12.12.2025 12:16 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Release freeRASP 4.3.0 ยท talsec/Free-RASP-ReactNative Android SDK version: 17.0.1 iOS SDK version: 6.13.0 React Native Added Added killOnBypass to TalsecConfig that configures if the app should be terminated when the threat callbacks are suppressed/...

๐Ÿš€ Big Update for freeRASP React Native!

Secure your app against smarter threats with our latest release.

Update now
github.com/talsec/Free-...

What's new?๐Ÿ‘‡

12.12.2025 12:16 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

Jailbroken devices break the security model your Capacitor app relies on โ€” sandboxing, code signing, filesystem integrity.

freeRASP adds reliable jailbreak detection to Capacitor with zero native hassle.

Full guide: docs.talsec.app/appsec-artic...

10.12.2025 15:05 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Frida is one of the easiest ways to hook, patch, and reverse-engineer mobile apps โ€” including Capacitor apps.

FreeRASP for Capacitor lets you detect Frida and fight against it.

Hybrid doesnโ€™t have to mean unprotected.
๐Ÿ”— docs.talsec.app/appsec-artic...

09.12.2025 14:10 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿš€ Securing Kotlin Multiplatform apps just got easier!

You can now integrate freeRASP directly into your KMP projects. Detect threats like tampering, hooking, and code injection, whether on Android or iOS.

๐Ÿ”— Start protecting your KMP apps today:
docs.talsec.app/appsec-artic...

08.12.2025 15:26 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

#Cloudflare went down today. Again.

Your security doesnโ€™t have to go down with it.

AppiCryptWeb = cryptographic trust for your API, independent of your CDN or WAF ๐Ÿ”

Full article here:
๐Ÿ”— docs.talsec.app/appsec-artic...

05.12.2025 11:37 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

React Native apps need reliable detection to prevent data extraction, tampering, and traffic manipulation.

This guide explains the basic detection methods and the integration of our SDK.

Read more:
๐Ÿ”— docs.talsec.app/appsec-artic...

04.12.2025 10:43 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

React Native apps are great... until they run on a jailbroken device.

Hereโ€™s a clear, high-level look at how to detect it and why RASP fills the gaps iOS leaves open:

๐Ÿ”— docs.talsec.app/appsec-artic...

01.12.2025 15:20 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿ“ฑ Still relying on basic root checks for your Android app? Magisk's "systemless" root can easily bypass them.

Learn why standard detection fails and how to implement robust protection against modern root hiding techniques. ๐Ÿ›ก๏ธ

Read the guide here: ๐Ÿ‘‡ docs.talsec.app/appsec-artic...

28.11.2025 12:57 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Frida is one of the go-to tools attackers use to hook into mobile apps, bypass logic, or extract sensitive data.

If your React Native app isnโ€™t monitoring for these attacks, itโ€™s basically running with the doors unlocked.

๐Ÿ”’ Learn how to detect Frida:
docs.talsec.app/appsec-artic...

26.11.2025 15:14 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Your app may be secure โ€” but the Wi-Fi your users connect to might not be.

Weak networks = MITM risks, data leaks, and broken trust.

Hereโ€™s how to detect unsafe Wi-Fi inside your app ๐Ÿ‘‡
docs.talsec.app/appsec-artic...

25.11.2025 14:42 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

If your Android app handles sensitive data, Developer Mode shouldnโ€™t go unnoticed.

A simple check can help you spot risky, debuggable environments before attackers do.

Learn how ๐Ÿ‘‰
docs.talsec.app/appsec-artic...

24.11.2025 14:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿ’ก The future is data-driven, but is your app ready for it?

As more systems shift toward data-centric architectures, one thing becomes clear: your application is only as secure as the APIs it talks to. And todayโ€™s attackers know it.

๐Ÿ”— Full article:
docs.talsec.app/appsec-artic...

21.11.2025 14:47 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

App tampering and repackaging allow attackers to inject malware or bypass in-app purchases in your Android app.

Learn how to detect integrity breaches and block repackaged apps in our latest article:
๐Ÿ”— docs.talsec.app/appsec-artic...

#AndroidDev #AppSec #Kotlin #MobileDevelopment #InfoSec

19.11.2025 14:47 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐ŸŽฎ Game devs, are you leaving your revenue exposed?

Discover FreeRASP for Unreal Engine โ€“ a free, lightweight RASP solution that protects your games from runtime attacks without slowing them down. ๐Ÿ”’โšก

Read more:
docs.talsec.app/appsec-artic...

18.11.2025 11:23 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Magisk and Shamiko might sound coolโ€ฆ but in the wrong hands, theyโ€™re dangerous.

Your Flutter app could be tampered with in seconds.

Find out how to secure it:
docs.talsec.app/appsec-artic...

#Flutter #Android #Security #Root

18.11.2025 10:51 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

New article out: How to Detect Jailbreak on Flutter โ€” ideal for devs and AppSec pros who want to keep their Flutter apps secure on compromised devices.

๐ŸŒ docs.talsec.app/appsec-artic...

#Flutter #MobileSecurity #AppSec #DevSecOps #Jailbreak

14.11.2025 13:42 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Exciting news for all Kotlin Multiplatform developers!

๐Ÿš€ Weโ€™re proud to announce that freeRASP for Kotlin Multiplatform is launching soon. We heard the communityโ€™s call for a security solution built specifically for your KMP projects.

Stay tuned!

#kotlin #kmp #multiplatform

14.11.2025 09:24 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
How to Detect Screen Capture & Recording using Kotlin | AppSec Articles Stop data leaks before they happen. Protect your Android app from unwanted screenshots and recordings.

Your appโ€™s screen might not be as private as you think ๐Ÿ‘€

Learn how to detect screen capture & recording in Kotlin. Protect sensitive data before itโ€™s too late.

๐Ÿ”— docs.talsec.app/appsec-artic...

#Kotlin #AndroidDev #AppSec #Cybersecurity #MobileSecurity

13.11.2025 10:01 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
How to Detect Emulator in Kotlin | AppSec Articles Fake users, fraudsters, and reverse engineers love emulators. Hereโ€™s how to stop them.

๐Ÿ›ก๏ธ Emulators make attacks easier โ€” unless your app knows how to detect them.

Learn how to identify emulator environments in Kotlin and protect your app.
๐Ÿ”— docs.talsec.app/appsec-artic...

#CyberSecurity #AppSecurity #Kotlin #AndroidApps #Talsec

12.11.2025 15:05 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0