You have now been logged out of the Support Portal.
You can also access the Support Portal using the following URL: https://support.promon.io/
Should you experience any issues or wish to contact us, please send email customer-success@promon.co.
Stay updated on the latest news on
application security
-
Mobile app security
Learn globally, act locally: Why app security needs a runtime intelligence loop
Attacks no longer stay inside one app, one region, or one stage of the kill chain. A runtime intelligence loop helps app protection learn from the wider threat picture. Then it turns that learning into detectors, policies, and controls that run locally inside protected apps.28 Sep 2026
Shaun Cooney
-
Security research
App Threat Report Q3 2026: GPU debugger abuse in Android apps
GPU debugging tools were built to help developers inspect rendering. But the same mechanisms can become an injection path when turned against a shipping app. Our research shows how Vulkan layers can be abused on Android, with mobile games as a particularly attractive target.23 Sep 2026
Benjamin Adolphi
-
Mobile app security
What ‘proven’ actually means in application attestation
Application attestation should prove more than that the right code was delivered. It must show that the protected runtime is still intact and operating without detected interference when trust is granted.2 Sep 2026
Shaun Cooney
-
Compliance
EUDI Wallet security: What the Architecture and Reference Framework says about runtime trust
Certification establishes an important security baseline. Wallet Providers must still verify genuine Wallet Instances, monitor operational security posture, and respond when trust changes. Here is what the current Architecture and Reference Framework (ARF) says, what it leaves open, and what mobile wallet teams should examine next.27 Aug 2026
Volker Gerstenberger
-
Mobile app security
Build it. Prove it. Then release the data: Runtime trust for the browser
Your applications run on devices and browsers you don’t control. Attempting to make those environments trustworthy isn't the answer. Instead, create a protected runtime inside them, verify its state, and only then allow sensitive data to enter.24 Aug 2026
Shaun Cooney
-
Compliance
Fighting mobile fraud in the UAE: What bank leaders need to know about CBUAE Notice 2176
CBUAE Notice 2176 gives UAE financial institutions an urgent set of actions against Android malware. It also makes the mobile app, its runtime environment, and the evidence it produces part of the fraud response.18 Aug 2026
Paul Fox
-
Development
Promon completes acquisition of Codesealer, extending protection to web applications and the APIs behind them
Promon Shield for Web™ brings Promon’s protection model to web applications running in the browser. Server-side attestation gives organizations proof they can use when deciding whether selected API endpoints should release data.12 Aug 2026
Promon
-
Mobile app security
DEX encryption done right: Raising the bar for Android attackers
DEX encryption raises the cost of static analysis and reverse engineering. The hard part is protecting the decryption key, preserving app launch performance, and accounting for what happens after the code is decrypted.5 Aug 2026
Caner Kaya
Blogs
Keep up with the latest developments in iOS and Android security, code obfuscation, compliance, API protection, and more.
View all-
PCI DSS compliance checklist
Streamline PCI DSS compliance with our security checklist. Ensure data security, protect customer information, and meet industry standards. -
Beginner's guide to code obfuscation
Learn app code obfuscation with our expert guide. Protect intellectual property, prevent reverse engineering, and strengthen your app's defenses. -
StrandHogg 2.0: A new Android vulnerability
Understand the StrandHogg 2.0 Android vulnerability. Learn about this serious security threat, protect your apps, and safeguard user data from potential exploits.
eBooks & whitepapers
Download detailed mobile app protection checklists, reports, ebooks, and more.
View all