Overview
Mobile Security provides a one-stop scenario-based security solution for apps. Based on Tencent's years of technical experience and over 1.2 billion mobile device end users, Mobile Security offers various services such as app reinforcement, security assessment and compatibility testing for many industries including finance, Internet, Internet of Vehicles, Internet of Things, ISP and government affairs. With its stable, simple and effective services, Mobile Security greatly simplifies mobile security construction.
Benefits
Scenario-based Protection
Reinforcement
Stability and Reliability
Risk Identification
Practice-driven Development
Features
App reinforcement integrates various reinforcement and protection technologies targeted at different security defects into the APK without modifying the source code of the Android app, thereby improving the overall security level of the app through the following features: decompilation prevention for DEX, decompilation prevention for .so files, anti-tampering for apps, and anti-debugging for apps.
To ensure that the source code is not leaked, source code obfuscation improves the overall app security through various methods such as obfuscation, encryption, and virtualization. It makes the source code more scalable, stable, and analysis-resistant. In addition, it supports string encryption, symbol encryption, and logic scrambling.
Based on Tencent's massive amounts of security big data and leading security detection engines, app security scan covers six dimensions: app security, app source file security, component security, communication data transfer security, local data storage security, and risk prevention. It comprehensively detects mobile app risks to ensure a smooth user experience.
In-app third-party SDK detection dynamically monitors integrated third-party SDKs while the app is running. When a third-party SDK requests sensitive permissions or accesses sensitive data files, it will analyze whether such behaviors are legal and compliant, and if they are not, it will block, log, and report them to the backend management system to prevent sensitive information, user privacy, and application permissions from being stolen. In-app third-party SDK detection has five major features: permission monitoring, user information collection monitoring, traffic monitoring, backdoor monitoring, and malicious SDK detection.
Based on the core capabilities of Tencent WeTest, Tencent Cloud compatibility testing provides one-stop compatibility testing services and solutions for Mobile Security.
An APK can be quickly submitted, with a test report returned within an hour on average. During testing, first-hand data is provided for problem backtracking. Testing data is also presented in multiple dimensions such as problem type, severity, frequency of occurrence, and impacted users.
- App Reinforcement
- Security Evaluation
- Compatibility Testing
App reinforcement integrates various reinforcement and protection technologies targeted at different security defects into the APK without modifying the source code of the Android app, thereby improving the overall security level of the app through the following features: decompilation prevention for DEX, decompilation prevention for .so files, anti-tampering for apps, and anti-debugging for apps.
To ensure that the source code is not leaked, source code obfuscation improves the overall app security through various methods such as obfuscation, encryption, and virtualization. It makes the source code more scalable, stable, and analysis-resistant. In addition, it supports string encryption, symbol encryption, and logic scrambling.
Scenarios
- App Testing Phase
- App Release Phase