Security controls bypass or absence - Anti hooking
Description
The application does not have anti-hooking protections, allowing tools such as Frida to work in its execution.
Impact
- Evade security controls such as SSL pinning. - Intercept function calls and messages to alter the behavior of the application.
Recommendation
Enabling anti-hooking controls in the application.
Threat
Anonymous attacker from the Internet.
Expected Remediation Time
⏱️ 300 minutes.
Requirements
062 - Define standard configurations266 - Disable insecure functionalities273 - Define a fixed security suiteFixes