Uncover Hidden Threats in Your Mobile Apps: Lookout MSEC Exposes Security Risks
Mobile devices introduce critical security challenges as they function outside conventional security perimeters, operating beyond the visibility of enterprise security teams.
The Security Challenges of Mobile Devices
While organizations may track the applications installed on these devices, they often lack insight into the underlying components, dependencies, and vulnerabilities embedded within those apps.
Understanding the WolfSSL Vulnerability
The WolfSSL Example
Jim Dolce, CEO of Lookout, highlighted this issue through the example of WolfSSL, a lightweight SSL/TLS library designed for memory-constrained devices. Used in over a billion devices, including banking applications, WolfSSL recently revealed a critical vulnerability. Exploitation of this flaw could enable attackers to impersonate financial institutions and steal user credentials during transactions.
The Mythos Glasswing project identified and disclosed this vulnerability, underscoring the risks posed by third-party libraries.
Introducing Lookout’s Mobile Security Exposure Center (MSEC)
Lookout’s Mobile Security Exposure Center (MSEC) addresses this gap by providing comprehensive visibility into an organization’s mobile device ecosystem. The system scans all devices, identifies installed applications, and generates a proprietary software bill of materials (SBOM) for each app’s binary. This SBOM maps every component and dependency, cross-referencing them against vulnerability databases such as the CISA Known Exploited Vulnerabilities (KEV) catalog.
Proactive Risk Mitigation
By correlating app components with known vulnerabilities, MSEC enables security teams to pinpoint risks and take targeted remediation actions. For instance, the system can identify which devices use WolfSSL, the specific app versions, and the associated users. This data feeds into the organization’s Cybersecurity Threat Exposure Management (CTEM) framework, allowing for proactive mitigation.
Expanding Capabilities with AI and SBOM Analysis
Dolce emphasized that MSEC’s approach shifts focus from reactive management to proactive exposure reduction, ensuring organizations address risks before they are exploited. The solution also integrates with Lookout’s AI Visibility & Governance product, which tracks AI adoption across enterprises. While AI Visibility & Governance focuses on usage patterns, MSEC delves into the software composition and risk profiles of applications. Together, these tools create a holistic view of application security, bridging gaps in traditional risk assessment.
Limitations and Future Plans
However, MSEC’s reliance on existing vulnerability databases like KEV presents limitations. These repositories only include known flaws, leaving organizations vulnerable to newly discovered threats. Dolce acknowledged this challenge, noting that attackers could leverage advanced AI models, such as frontier AI systems, to identify and exploit unknown vulnerabilities. Lookout plans to counter this by adopting similar AI technologies defensively.
Staying Ahead of Evolving Threats
By analyzing SBOMs with frontier AI models, the company aims to detect previously unidentified vulnerabilities and expand its threat detection capabilities. The process begins with inventorying all mobile applications, generating accurate SBOMs, and correlating components with known vulnerabilities. The next phase involves using AI-driven analysis to uncover hidden risks. Dolce stated that this iterative approach will enable organizations to stay ahead of evolving threats, combining traditional vulnerability management with cutting-edge AI techniques.
The Future of Application Risk Management
This initiative reflects a broader industry shift toward comprehensive application risk management. As mobile ecosystems grow more complex, tools like MSEC are critical for ensuring transparency, accountability, and resilience against emerging cyber threats.
