Skip to content

Releases: MobSF/mobsfscan

0.3.5

06 Jan 01:16
511429c
Compare
Choose a tag to compare
  • Manifest Analysis Code QA
  • Added new rules strandhogg1.0, strandhogg2.0, AppLink assetlinks.json check, improved minsdk support check
  • Bump dependencies

0.3.4

30 Aug 04:57
b8503e0
Compare
Choose a tag to compare
  • Huge Performance Improvement from libsast bump

Full Changelog: 0.3.3...0.3.4

0.3.3

29 Aug 06:08
2bf9e66
Compare
Choose a tag to compare
  • Semgrep and libsast Bump

0.3.2

21 Aug 18:58
8ac02b7
Compare
Choose a tag to compare
  • iOS Objective C Biometric rule update
  • iOS Swift Biometric rule description change.

0.3.1

10 Aug 21:18
d7e3523
Compare
Choose a tag to compare
  • Add pre-scan suppression support for android manifest files by:
    • Filename
    • Pathname
  • Handle None form user supplied config

0.3.0

10 Aug 06:36
55e1102
Compare
Choose a tag to compare
  • IOS Swift Rules updates
    • Updated or added rules
      • ios_biometric_bool
      • ios_biometric_acl
      • ios_keychain_weak_acl_device_passcode
      • ios_keychain_weak_accessibility_value
      • ios_insecure_random_no_generator
  • Regex Hardening: Fixes possible Regex DoS
  • Add support for --type android|ios|auto for explicitly forcing a rule set on source directory.

0.2.0

09 Feb 22:22
819c07a
Compare
Choose a tag to compare
  • Added support for parsing xml file
  • Added Android Manifest security checks (excluding exported checks for components)
  • Added Android Network Security Config checks

0.1.3

25 Jan 02:20
5447909
Compare
Choose a tag to compare
  • Add a --no-fail option to force zero exit status code.

0.1.2

06 Oct 03:42
Compare
Choose a tag to compare
  • Bug Fixes
  • SARIF to display CWE on Github Advanced Security dashboard
  • Code QA

0.1.1

17 Jul 01:31
Compare
Choose a tag to compare
  • Semgrep and libsast update + bug fixes
  • Drop python support for 3.6
  • Works on M1 Mac ARM