App Threat Report: The state of hooking framework detection

Explore Frida detection and evasion techniques. Learn how to protect your apps from dynamic instrumentation, secure user data, and maintain app integrity.
Topic
Mobile app security
Updated
17 Jan 2025

Download report

App Threat Report

Welcome to our App Threat Report series, Promon’s quarterly analysis of current topics in mobile application security produced by our Security Research Team.

Most leading Android applications are ill-prepared to detect dynamic instrumentation attacks using Frida. With only about 2% of top apps actively identifying and countering unmodified Frida attempts, this study highlights a widespread vulnerability and an urgent need for improved defenses. As attackers refine their evasion techniques, developers must evaluate if their apps should use more advanced detection methods to protect user data and maintain app integrity.

In our Q4 2023 report, in addition to exploring common detection methods and techniques used to evade detection, we looked at how 150 of the world’s most used Android apps could detect Frida – or not.

Hooking framework detection

Download the report to learn about:

  • Current effectiveness of Frida detection across the most-used Android apps

  • Common detection techniques and their limitations

  • Evasion tactics used by attackers

  • Future trends and best practices concerning hooking framework detection

Highlights from the report

Dynamic instrumentation attacks using tools like Frida expose critical vulnerabilities in Android apps, leaving user data at risk. With attackers refining evasion techniques, discover how they target top apps and what steps developers can take to strengthen defenses.
smartphone
150
Apps tested
grid_view
96%
Apps configured to operate within a controlled testing environment
pest_control
98%
of apps tested did not actively detect the presence of Frida
file_copy
Download report now
Download
Want to stay in touch? Follow us on LinkedIn or Instagram.

Promon

1 sentence that summarizes what Promon is for people coming from google and reading this blog post, not knowing what Promon is all about.

Get expert app security insights straight to your inbox

Receive the latest blogs, guides, and threat intelligence from our team.
Subscribe
  • About-Promon-v1_shield-p

    Ready to protect your apps?

    Connect to an expert to talk about your app security needs and how we can help.

    Book a meeting
  • boxes-3D-packages

    The mobile app security library

    Browse through our app security resources and get to know our subject-matter experts.

    Read more