Neutron, our AI engine, scored 96.75% on UC Berkeley's CyberGym benchmark. Learn more

Category

Product

New features, integrations, and platform updates for mobile, web, API, and source code security testing.

169 articles

Ostorlab Mobile Shielding Scan tests Android and iOS protections against real bypasses, including root detection, anti-tampering, certificate pinning, and obfuscation.

Product

Announcing Ostorlab’s On-Premises Vulnerability Scanner

Announcing the general availability of the Ostorlab On-Premises Vulnerability Scanner, designed t...

Aug 04, 2026

Product

The Ostorlab Threat Center Now Supports the EU Vulnerability Database

Ostorlab Threat Center now brings EUVD intelligence alongside NVD data, giving security teams bro...

Jul 24, 2026

Product

Introducing Ostorlab Source Code Scanning

Source Code Scanning helps you identify security vulnerabilities directly in your source code bef...

Jul 07, 2026

More in Product

App Vetting, Scan Coverage Heatmap, Mobile Shielding Scan, Deep Agentic Scan Improvements, Cyber Models & Source Code Scanning

This release introduces App Vetting, Scan Coverage Heatmap, Mobile Shielding Scan, Deep Agentic Scan improvements, Cyber Models, additional model support, and source code scanning.

Jul 07, 2026

Deep Scan Improvements: Faster Execution, Better Decisions, and Incremental Testing

The latest Deep Agentic Scan release introduces faster mobile testing, improved reverse engineering, stronger vulnerability detection, incremental coverage through historical scan processing, improved vulnerability chaining, and managed Cyber Models for mobile and web assessments.

Jun 30, 2026

Introducing Mobile Shielding That Can Resist AI Attacks

Ostorlab has launched Mobile Shielding Scan, an automated, AI-powered testing solution designed specifically for shielding detection and validation. It gives security teams streamlined, continuous validation of critical iOS and Android runtime protections, identifying whether security shields are actually present and if they can withstand real-world attacks. This empowers organizations with an automated, scalable, and powerful way to continuously validate RASP tools and mobile self-defense layers across every release.

Jun 25, 2026

Introducing Ostorlab Cyber Models

Ostorlab has launched Cyber Models, a managed, prepaid AI infrastructure tier for Agentic Deep Scans. It gives security teams streamlined access to specialized models like GPT-5.5 Cyber and Opus 4.8 with Cyber Verification Program through approved provider channels. This bypasses the need to manage external API keys, provider rate limits, or fragmented billing dashboards.

Jun 23, 2026

Introducing Ostorlab App Vetting for the Agentic Era

Ostorlab has launched App Vetting, a mobile application risk assessment solution that helps teams evaluate Android and iOS apps before approval. It combines static analysis, dynamic testing, and secure sandbox execution with continuous monitoring, weighted risk scoring, and agentic workflows to identify vulnerabilities, privacy risks, malware indicators, telemetry behavior, and trust issues while helping teams prioritize what matters most.

Jun 16, 2026

Introducing Ostorlab’s Single Vulnerability Assessment and Dig Deeper

Ostorlab is launching a powerful, highly targeted AI orchestration engine accessible through two distinct UI workflows: Single Vulnerability Assessment (SVA) and Dig Deeper. While both features share the exact same underlying AI logic, capabilities, and "Bring-Your-Own-Key" structure, they are tailored for different entry points in your workflow. SVA is launched as a fresh, standalone scan for targeted, cost-efficient assessments, fix validations, or bug bounty verifications. Dig Deeper is triggered directly from an existing finding within a scan report to instantly investigate false positives or trace exploit paths. Together, they give teams surgical control over how they test and validate individual vulnerabilities.

Jun 02, 2026

Single Vulnerability Assessment (SVA), Dig Deeper, Scan Report PDF Design Improvement & Multilanguage Support

This release introduces Single Vulnerability Assessment (SVA) for targeted validation, Dig Deeper for granular root-cause investigation, Live Attack Scenario Risk & Status Tracking, Scan Report PDF Design Improvement, full multilanguage localization, and new compliance whitelisting support.

Jun 01, 2026

Introducing HarmonyOS App Scans + Huawei AppGallery Scans

Find a vulnerability scanner for HarmonyOS apps and Huawei AppGallery releases: Ostorlab adds automated, repeatable security scans so teams can continuously assess Huawei-distributed mobile apps and fix issues faster.

Apr 20, 2026

Announcing Ostorlab for Harness: Mobile Security Scanning in CI Pipelines

Ostorlab now integrates with Harness CI to run automated mobile application security scans inside CI pipelines. Using Harness Secrets and a simple Run step, teams can install the Ostorlab CLI and run ostorlab ci-scan run against the same build artifacts produced by the pipeline (e.g., Android APK, Android AAB, or iOS IPA). The integration helps bring security into CI by improving feedback speed and catching vulnerabilities earlier, with options to tailor scans via profiles (fast, full) and optional inputs like test credentials, SBOM, and UI prompts.

Apr 06, 2026

Security Testing Behind Login Walls: 2FA and MFA

Why scanners stop at the login page and how Ostorlab automates testing behind SMS, email and TOTP 2FA, with a manual fallback and secured credentials.

Mar 30, 2026