Zimperium

  • Home
  • Product & Solution
  • Mobile Threat Defense (MTD)

Mobile Threat Defense (MTD)

Mobile Applications Protection Suite

The Mobile Application Protection Suite (MAPS) from Zimperium provides four capabilities, including Mobile Application Security Testing (MAST), App Shielding, Key Protection, and Runtime Protection (RASP). The suite provides mobile app teams with centralized threat visibility and comprehensive in-app protection from development through runtime. It combines both inside-out and outside-in security approaches to help organizations build compliant, secure.

MAPS is a key component of the Zimperium Mobile-First Security Platform™ that secures mobile devices and mobile applications.

zSCAN

zScan aims to enable enterprise to shift left security in the mobile App SLDC and find vulnerabilities and security defects before they are released or face pen-testing

  • Automated Analysis platform focused on application binaries
  • Delivers static and dynamic analysis for iOS and Android apps
  • Contextualize analysis results for specific compliance framework
  • Enables security, compliance and risk professional to define policies
  • Integrates security feedback into the SDLC

zKEYBOX

zScan aims to enable enterprise to shift left security in the mobile App SLDC and find vulnerabilities and security defects before they are released or face pen-testing

  • White-box crypto library providing cryptographic operations
  • Never reveal keys when executing cryptographic operations
  • Support Dynamic and Static keys
  • Delivered as a C based static lib or WASM
  • As shared Lib for Java (JCA or JNI)

Key Capabilities

Operations

  • Encryption
  • Decryption
  • Signing
  • Digest
  • Key Wrapping/Unwrapping
  • Key Generation
  • Key Agreement
  • Key Derivation
  • Signature Verificatio

Algorithms & Ciphers

  • AES, DES, TDEA, SPEC
  • AES, TDEA, DES Speck, RSA, ECC
  • CMAC, HMAC, ECDSA, RSA, DSA
  • MD5, SHA-1, SHA-256, SHA-512
  • NIST AESKW
  • ECC, AES
  • Diffie-Hellman, ECDH, X25519
  • CMAC, HMAC, RAS, ECDSA, DSA

zSHIELD

Anti Reversing

  • Advanced Obfuscation
  • Anti-Debugging
  • Binary Packing
  • Diversification

Anti Tampering

  • Integrity Checking
  • Anti-Method Swizzling
  • Function Caller Verification
  • Share Lib Cross Verification
  • Mach-O Binary Signature Verification
  • Google Play Licensing Protection

zDEFEND

One Device

  • Real time on device threat detection
  • Device

    Network

    Apps

  • Detection across all attack vectors
  • Proactive call backs
  • API’s to support risk based

Backend

  • Full threat forensic visibility
  • Dynamic policy definition
  • Threat Policies

    Privacy Policies

  • Threat feed integration