Back close

Course Detail

Course Name Mobile Security and Vulnerability Analysis
Course Code 26SN633
Program M. Tech. in Cyber Security Systems & Networks
Credits 3
Campus Amritapuri

Syllabus

Unit 1

Foundations of Mobile Security and Mobile Operating Systems

This unit introduces the fundamentals of mobile security and the evolving mobile threat landscape. It covers the architecture and internals of mobile operating systems, with particular emphasis on Android and iOS platforms. Students will study the Android application framework, security architecture, sandboxing mechanisms, permission models, secure boot process, and iOS security features. The unit also explores mobile device management (MDM), mobile privacy concerns, data protection mechanisms, and security challenges associated with modern mobile ecosystems.

Unit 2

Mobile Application Security

This unit focuses on the security aspects of mobile applications and secure application development practices. Topics include Android and iOS application architectures, authentication and authorization mechanisms, mobile cryptography, secure data storage, API security, and mobile communication security. Students will learn secure coding principles and examine common vulnerabilities affecting mobile applications based on the OWASP Mobile Top 10. The unit also introduces methodologies for assessing and improving the security of mobile applications throughout the software development lifecycle.

Unit 3

Mobile Vulnerability Assessment and Penetration Testing

This unit provides comprehensive knowledge of mobile vulnerability assessment and penetration testing techniques. Students will learn threat modeling, security assessment methodologies, static and dynamic application security testing, mobile application reverse engineering, and exploitation of common mobile vulnerabilities. The unit covers practical security testing tools and frameworks used for analyzing Android and iOS applications, enabling students to identify, evaluate, and mitigate security weaknesses in mobile environments

Unit 4

Mobile Malware Analysis and Mobile Forensics

This unit examines the growing threat of mobile malware and the techniques used to analyze and investigate malicious activities on mobile devices. Topics include Android malware analysis, banking trojans, spyware, ransomware, static and dynamic malware analysis, mobile threat intelligence, and malware detection techniques. The unit also introduces mobile digital forensics, evidence acquisition, forensic analysis procedures, incident response methodologies, and legal considerations associated with mobile investigations and cybercrime analysis

Unit 5

Emerging Trends in Mobile Security

This unit explores advanced and emerging topics in mobile security. Students will study mobile cloud security, Internet of Things (IoT) integration, 5G mobile network security, mobile identity and access management, secure mobile payment systems, digital wallet security, and Zero Trust architectures for mobile environments. The unit also covers the application of Artificial Intelligence and Machine Learning in mobile security, mobile threat intelligence, governance and compliance issues, and future challenges in securing next-generation mobile computing ecosystems

Text Books / References
  1. Neil Smyth, Android Studio Development Essentials, Sixth Edition, Payload Media, 2024.
  2. Nikolay Elenkov,”An In-Depth Guide to Android’s Security Architecture”, October 2014, 432  ISBN: 978-1-59327-581-5
  3. Joseph Annuzzi Jr., Lauren Darcey, and Shane Conder, Introduction to Android Application Development: Android Essentials, Fourth Edition, Addison-Wesley Professional, 2013.
  4. David Thiel, iPhone and iOS Forensics: Investigation, Analysis and Mobile Security for Apple iPhone, iPad and iOS Devices, Third Edition, Auerbach Publications, 2022.
  5. Himanshu Dwivedi, Chris Clark, David Thiel, and Aaron Grimes, Mobile Application Security, First Edition, McGraw-Hill Education, 2016.
  6. Michael Gregg, Certified Ethical Hacker (CEH) Mobile Security and Penetration Testing Guide, McGraw-Hill Education, 2023.

Introduction

Mobile devices have become indispensable in modern digital life, supporting critical services such as banking, healthcare, e-commerce, and enterprise operations. However, their widespread use has significantly increased the attack surface for cyber threats, including malware, application of vulnerabilities, privacy breaches, and mobile-targeted attacks. This course provides advanced knowledge of mobile platform security, vulnerability assessment, application security testing, malware analysis, and secure mobile application development. It equips students with the skills required to identify, analyze, and mitigate security vulnerabilities in mobile ecosystems, thereby preparing them for research and professional roles in mobile security, digital forensics, cybersecurity testing, and secure software development.

Objectives and Outcomes

Course Objectives

  • Understand Android and iOS internals, security architecture, and trust models.
  • Analyze vulnerabilities in mobile operating systems, applications, and communication protocols. Perform mobile application security testing, reverse engineering, and malware analysis.
  • Apply advanced penetration testing techniques for mobile platforms and devices.
  • Evaluate privacy, authentication, and data protection mechanisms in mobile environments.
  • Investigate emerging threats in mobile cloud, IoT, and 5G-enabled mobile ecosystems.
  • Develop secure mobile applications and propose mitigation strategies for identified vulnerabilities.

Course Outcomes 

CO  Description 
CO1 Understand the architecture, internals, and security models of major mobile operating systems
CO2 Examine mobile application architectures, permission models, authentication mechanisms, and secure coding practices to identify potential security weaknesses
CO3 Apply vulnerability assessment and penetration testing techniques to discover, analyze, and exploit security vulnerabilities in mobile devices and applications.
CO4 Apply vulnerability assessment and penetration testing techniques to discover, analyze, and exploit security vulnerabilities in mobile devices and applications.
CO5 Evaluate mobile communication security, privacy protection mechanisms, and security challenges associated with mobile cloud services

CO-PO Mapping 

Correlation Levels: 3 = High, 2 = Moderate, 1 = Low 

COs POs  PO1  PO2  PO3 
CO1 3 1 3
CO2 2 2 2
CO3 3 3 3
CO4 3 2 2
CO5 2 3 3

Evaluation Pattern

Assessment Internal External
Mid Term Exam 15  
Assignments 20  
Lab Quiz 15  
Presentation 10  
Final Exam   40

DISCLAIMER: The appearance of external links on this web site does not constitute endorsement by the School of Biotechnology/Amrita Vishwa Vidyapeetham or the information, products or services contained therein. For other than authorized activities, the Amrita Vishwa Vidyapeetham does not exercise any editorial control over the information you may find at these locations. These links are provided consistent with the stated purpose of this web site.

Admissions Apply Now