Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Same issue is present in latest MOBSF - > How to fix the Insecure Binary Analysis in iOS app #372 #2291

Closed
mahavrani opened this issue Nov 21, 2023 · 3 comments

Comments

@mahavrani
Copy link

In recent version of the MOBSF version 3.7.9 we are facing the below issue

I am running a binary analysis on the iOS app native, there are two insecure items found:

Binary make use of banned API(s) Insecure The binary may contain the following banned API(s)
alloca, strlen, sprintf, memcpy.

Binary make use of malloc Function Insecure The binary may use malloc function instead of calloc.

Previously it was fixed by MOBSF mentioning as false positive in ticket #372 .Please check and confirm

Copy link

👋 @mahavrani
Issues is only for reporting a bug/feature request. For limited support, questions, and discussions, please join MobSF Slack channel
Please include all the requested and relevant information when opening a bug report. Improper reports will be closed without any response.

@mahavrani
Copy link
Author

Our IPA we have analysed using MOBSF report in version 3.6.3 above mentioned high issues was not present.
When same IPA i have analysed using MOBSF version 3.7.9 , it shows 2 high issues .

I was trying to check in mobsf issues , long back some one reported this and MOBSF mentioned it as false positive.
Please let me know what are the reports you needed further to check in your end and validate

@ajinabraham
Copy link
Member

Please use slack for support.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants