Skip to content

Releases: MobSF/mobsfscan

0.3.9

27 May 22:28
849b749
Compare
Choose a tag to compare

What's Changed

Full Changelog: 0.3.8...0.3.9

0.3.8

22 Mar 23:50
35b2016
Compare
Choose a tag to compare

What's Changed

Full Changelog: 0.3.7...0.3.8

0.3.7

22 Mar 19:18
25c4322
Compare
Choose a tag to compare

What's Changed

  • [SECURITY] Fix SSRF in applink check, dependency update. by @ajinabraham in #81

Full Changelog: 0.3.6...0.3.7

0.3.6

10 Jan 00:49
e29e85c
Compare
Choose a tag to compare
  • Added Thredpool for assetlink.json check
  • Android SDK bump for manifest analysis
  • Handle AppLink host with asterisk

0.3.5

06 Jan 01:16
511429c
Compare
Choose a tag to compare
  • Manifest Analysis Code QA
  • Added new rules strandhogg1.0, strandhogg2.0, AppLink assetlinks.json check, improved minsdk support check
  • Bump dependencies

0.3.4

30 Aug 04:57
b8503e0
Compare
Choose a tag to compare
  • Huge Performance Improvement from libsast bump

Full Changelog: 0.3.3...0.3.4

0.3.3

29 Aug 06:08
2bf9e66
Compare
Choose a tag to compare
  • Semgrep and libsast Bump

0.3.2

21 Aug 18:58
8ac02b7
Compare
Choose a tag to compare
  • iOS Objective C Biometric rule update
  • iOS Swift Biometric rule description change.

0.3.1

10 Aug 21:18
d7e3523
Compare
Choose a tag to compare
  • Add pre-scan suppression support for android manifest files by:
    • Filename
    • Pathname
  • Handle None form user supplied config

0.3.0

10 Aug 06:36
55e1102
Compare
Choose a tag to compare
  • IOS Swift Rules updates
    • Updated or added rules
      • ios_biometric_bool
      • ios_biometric_acl
      • ios_keychain_weak_acl_device_passcode
      • ios_keychain_weak_accessibility_value
      • ios_insecure_random_no_generator
  • Regex Hardening: Fixes possible Regex DoS
  • Add support for --type android|ios|auto for explicitly forcing a rule set on source directory.