Quokka Intel: The Mobile Security Intelligence Blog
Quokka Intel
The mobile security intelligence blog
Mobile App Security Explained: Why MDM and MTD Can’t See Application Risk
July 14, 2026
MDM and MTD protect mobile devices, but neither evaluates the applications running on them. Learn why mobile app vetting is becoming essential for uncovering hidden app, SDK, and supply chain risks before they impact your organization.
MDM vs. Mobile App Vetting: Two Different Tools for Mobile Security
July 7, 2026
MDM is essential for managing mobile devices, but it can’t evaluate the applications employees use every day. Learn how mobile app vetting fills this critical security gap and why the two technologies should be used together for robust mobile security.
Application Security Testing Explained: SAST, DAST, and IAST
June 30, 2026
SAST, DAST, and IAST are foundational to application security, but each leaves critical gaps. Learn how these testing approaches work, where they fall short, and what security teams must understand to reduce real-world risk.
The Unwanted Prize: Launcher Turned Backdoor
June 24, 2026
Our researchers found a modified Android launcher app, pre-installed on several budget phone models, that can silently install/remove/replace apps over connections that don’t properly validate SSL/TLS certificates and checks every four hours for arbitrary code to execute with system privileges.
The Mobile Healthcare Security Gap: What 3,000+ App Scans Reveal
June 17, 2026
Quokka analyzed 3,000+ healthcare and medical mobile applications spanning a broad range of healthcare-related categories and found critical mobile app security risks. Read more on the vulnerabilities and how to secure healthcare apps.
How Everyday Apps Became Tools of Modern Warfare
June 10, 2026
State actors are using mobile apps to collect intelligence, influence targets, and support operations. Learn why mobile app vetting is becoming a national security imperative.
Thailand’s Mobile App Fraud Problem Shows Why Blocking Threats Isn’t Enough
June 3, 2026
Thailand’s new government benefit scheme was barely live before scammers struck. Read more about the scam and the overall mobile fraud problem.
MTD Is Not Enough: What OIG-26-06 Exposed About Mobile App Risk
May 27, 2026
A new DHS OIG report revealed serious mobile security failures that resulted in a higher risk of cyberattacks and unauthorized access to sensitive information.
Zero Trust Didn’t Eliminate Your Attack Surface—It Moved It
April 30, 2026
Zero Trust shrank your network attack surface but mobile apps are expanding it fast. AI is accelerating both development and exploitation, leaving enterprises exposed where they have the least visibility.