Unpack mobile app security risks with these in-depth guides | Promon

App Threat Report: The state of hooking framework detection | Promon

Written by Promon | Jan 17, 2025 12:35:14 PM

App Threat Report

Welcome to our App Threat Report series, Promon’s quarterly analysis of current topics in mobile application security produced by our Security Research Team.

Most leading Android applications are ill-prepared to detect dynamic instrumentation attacks using Frida. With only about 2% of top apps actively identifying and countering unmodified Frida attempts, this study highlights a widespread vulnerability and an urgent need for improved defenses. As attackers refine their evasion techniques, developers must evaluate if their apps should use more advanced detection methods to protect user data and maintain app integrity.

In our Q4 2023 report, in addition to exploring common detection methods and techniques used to evade detection, we looked at how 150 of the world’s most used Android apps could detect Frida – or not.

Hooking framework detection

Download the report to learn about:

  • Current effectiveness of Frida detection across the most-used Android apps

  • Common detection techniques and their limitations

  • Evasion tactics used by attackers

  • Future trends and best practices concerning hooking framework detection