← Back to context

Comment by solenoid0937

13 hours ago

I don't see why standard RE techniques (DBI/Frida + MITM) wouldn't work, do you?

WhatsApp is constantly RE'd because it'd be incredibly valuable to discover gaps in its security posture, the community would find any exfil here.

If people are trivially hooking IOS and Android applications then sure, it's just an exercise in dynamic analysis.

Mobile applications are outside my domain so I am surprised platform security (SEL, attestation, etc.) has been so easily defeated.