Full course

Build Secure Android Applications

This intensive course, ideal for Android application developers, teaches methods and approaches for developing secure Android native mobile apps. It includes practical exercises based on Android applications.

Details

Course overview

This course, ideal for Android application developers, introduces the techniques and best practices for developing secure mobile applications. The training will cover a wide range of topics, including the identification and mitigation of common Android-specific vulnerabilities, the implementation of secure coding practices within the Android ecosystem, and the adoption of industry-standard security frameworks and methodologies for Android app development. Participants will engage in practical exercises based on real-world Android applications, allowing them to apply the learned concepts in a hands-on and engaging manner.

Requirements

  • Basic knowledge of mobile application architecture

  • Basic knowledge of Java programming in Android environment

Course content

  • Introduction to Mobile Security: An overview of the fundamental concepts and challenges in mobile security.

  • Overview of the Secure Software Development Life Cycle (S-SDLC): Understanding the stages and best practices for integrating security into the software development process.

  • Android Architecture and Security: Exploring the architecture of Android systems and methods for enhancing security within this framework.

  • Tools and Resources: Introduction to various tools and resources available for ensuring the security of mobile applications, including testing frameworks, libraries, and guidelines.


  • Communication Security: Techniques for securing data transmission between devices and servers.

  • Secure Data Storage: Methods for protecting sensitive data stored on mobile devices.

  • Session Management: Strategies for managing user sessions securely within mobile applications.

  • Input Validation: Techniques for validating and sanitizing user input to prevent security vulnerabilities.


  • Code Protection (obfuscation and anti-tampering): Methods for protecting app code from reverse engineering and tampering.

  • Authentication and Password Management: Implementing secure authentication mechanisms and best practices for password management.

  • Preventing leakage of Private Information: Strategies for safeguarding sensitive user data from unauthorized access or leakage.

  • Fundamentals of Backend Security (REST APIs and web services): Understanding security considerations when interacting with backend systems and services.


Your instructor

  • TBD Senior Instructor

Related courses
  • new

    Full course

    Secure Coding with AI

    Defensive
    ~32 hours
    Online

    Use AI coding assistants securely, with Copilot, Codex, Claude Code and SAST tools, to find and fix vulnerabilities as you write code.

    DISCOVER MORE
  • Full course

    Build Secure iOS Applications

    Defensive
    ~24 hours
    Online

    Secure development for native iOS apps: data handling, Keychain and the platform's security features.

    DISCOVER MORE
  • Full course

    Mobile Application Penetration Testing

    Offensive
    ~32 hours
    Online

    Test the security of Android and iOS apps: static, dynamic and network analysis of real mobile targets.

    DISCOVER MORE
  • Full course

    Build Secure Web Applications

    Defensive
    ~32 hours
    Online

    Language-independent secure coding for the web: the main vulnerability classes and how to defend against them.

    DISCOVER MORE