Close Menu
NCIJ Network NCIJ Network
    What's Hot

    I tested a new Debian Linux loaded with local AI – see if it’s right for you

    July 28, 2026

    Hackers target US firms in FastJson RCE zero-day attacks

    July 28, 2026

    On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach

    July 28, 2026
    Facebook X (Twitter) Instagram
    Trending
    • I tested a new Debian Linux loaded with local AI – see if it’s right for you
    • Hackers target US firms in FastJson RCE zero-day attacks
    • On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach
    • Eating within 8 hours may help keep the aging brain sharp
    • Hundreds of thousands of women use free morning-after pill service at pharmacies
    • Is it time to stop using glue and labels on paper?
    • Organise to counter corporate power | Politics
    • India’s ‘Cockroach’ Moment – The New York Times
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Tuesday, July 28
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKJuly 27, 2026 Cybersecurity No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Mobile devices present a serious security problem: they operate outside the security perimeter and beyond the visibility of the security team. While security may know what applications live on those devices, they rarely understand the components and dependencies that comprise those applications; nor what vulnerabilities are buried within those components.

    Jim Dolce, CEO at Lookout, gave an example: WolfSSL. It’s a small, fast, and portable SSL/TLS library written in ANSI C, designed mainly for devices with limited memory – and it exists on more than a billion devices. “If you have a banking app on a mobile device for online banking, that app is likely using WolfSSL. It has a very serious vulnerability. If exploited by a bad actor, it can mimic your bank, and when you put in your credentials, it will steal your banking credentials.” 

    The Mythos Glasswing project found and publicized this WolfSSL vulnerability. So, the bad guys know the banking app may be vulnerable, but does the security team know that employees are using it?

    “Knowing an application’s name and version reveals only a fraction of its risk profile,” explains Lookout. “Security teams need visibility into the software components, dependencies, and vulnerabilities embedded beneath the surface.”

    This is what the firm’s new Mobile Security Exposure Center (MSEC) provides: full visibility into (rather simply ‘about’) an organization’s potentially vast mobile fleet. In a nutshell, MSEC examines every device in the fleet, so it knows what apps are present. It then creates its own proprietary software bill of materials (SBOM) from the binary for the different apps.

    From this SBOM it learns every component within the app and correlates those components with the vulnerability databases (such as the KEV list) that exist. The results are fed into the organization’s CTEM to assist the security team to take any necessary remediation steps.

    Advertisement. Scroll to continue reading.

    “The system will identify which apps use WolfSSL, the version of that app, the user and the device that is using that app, and all of that information then can be used to remediate the exposure. So MSEC basically identifies the exposure and provides that information,” continued Dolce. This applies to all the software components of all the apps on all the mobile devices.

    MSEC also complements Lookout’s existing AI Visibility & Governance product. “While AI Visibility & Governance helps organizations understand AI adoption and usage across the enterprise,” says Lookout, “MSEC reveals the software composition and exposure profile of those applications. Together, they provide a more complete view of application risk, security, and governance.”

    The result, it continues, is “A shift from reactive application management to proactive exposure management.”

    However, there is a slight issue here. MSEC correlates the app components it unearths in its SBOM creation with the vulnerability databases that exist. We’ve mentioned one – the KEV list, or the Known Exploited Vulnerabilities Catalog produced by CISA. The clue to the issue is in the name, known vulnerabilities. No vulnerability database can include unknown vulnerabilities. So, while MSEC can help remediate known vulnerabilities, there is always the possibility that a new frontier AI model will unearth new vulnerabilities.

    Lookout is obviously aware of this, and has it covered. 

    “Bad actors can use frontier AI models, Mythos as an example, in order to find vulnerabilities and exploit them,” agreed Dolce. “That’s the offensive use of a frontier AI model. Well, Lookout can use that same model defensively. We can go beyond KEV and the other vulnerability databases by using the frontier models ourselves to find unknown vulnerabilities across the SBOM. That will be the next iteration of MSEC.” 

    He continued, “We will take our SBOM and use the frontier AI models defensively to go and find unknown vulnerabilities for ourselves, and catalog those as well.” 

    But it all starts with knowing the app inventory across the enterprise mobile fleet, creating the accurate SBOM for all the apps in the fleet, and then correlating the app components against known vulnerability databases, and then, he added, “The last step is find unknown vulnerabilities using the same frontier AI models defensively that the bad guys are using offensively.”

    Related: Mobile Attack Surface Expands as Enterprises Lose Control

    Related: FBI Warns of Data Security Risks From China-Made Mobile Apps

    Related: Mobile Security: Verizon Says Attacks Soar, AI-Powered Threats Raise Alarm

    Related: Chinese Hackers Turn Smartphones Into a ‘Mobile Security Crisis’

    aims apps find Hiding Lookout mobile MSEC Whats
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Hackers target US firms in FastJson RCE zero-day attacks

    Confused Deputy Flaws Persist in Google Cloud, Microsoft Azure

    The containment paradox: Why your ransomware playbook has the wrong people in charge

    Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin

    Beelzebub Raises $3.4 Million for Hacker-Trapping Platform

    Amazon’s new satellite network for mobile phones could turn up the heat on SpaceX

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    I tested a new Debian Linux loaded with local AI – see if it’s right for you

    July 28, 2026

    Hackers target US firms in FastJson RCE zero-day attacks

    July 28, 2026

    On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach

    July 28, 2026

    Eating within 8 hours may help keep the aging brain sharp

    July 28, 2026
    Latest Posts

    The Western Myth of Russian Greatness – Foreign Policy

    July 21, 2026

    Defence stocks rally as John Healey appointed chancellor; UK borrows less than expected in June – business live | Business

    July 21, 2026

    You Pay for Internet Service in Empty Buildings on Alaska’s Adak Island — ProPublica

    July 21, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    I tested a new Debian Linux loaded with local AI – see if it’s right for you

    July 28, 2026

    Hackers target US firms in FastJson RCE zero-day attacks

    July 28, 2026

    On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach

    July 28, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.