The guidelines for security testing of a mobile app includes the below pointers.
Mobile app security testing guide.
The mstg is a comprehensive manual for mobile app security testing and reverse engineering.
Testing the security aspect of an app can be done manually and via automation too.
A few pointers in this area.
1 manual security testing with sample tests.
The mobile security testing guide mstg provides verification instructions for each requirement in the masvs as well as security best practices for apps on each supported mobile operating system currently android and ios.
1 selection of the devices analyze the market and choose the devices that are widely used.
The general testing guide contains a mobile app security testing methodology and general vulnerability analysis techniques as they apply to mobile app security.
Security testing testing an application to validate if the information system protects data or not.
It describes technical processes for verifying the controls listed in the owasp mobile application verification standard masvs.
Guidelines for security testing of a mobile app.
Owasp mobile security testing guide this is the official github repository of the owasp mobile security testing guide mstg.
Mobile application testing strategy.
It is the result of an open crowd sourced effort made of the contributions of dozens of authors and reviewers from all over the world.
It also contains additional technical test cases that are os independent such as authentication and session management network communications and cryptography.
It is also useful as a standalone learning resource and reference guide for mobile application security testers.