Scan mobile application from a file
About this lesson
In this tutorial, you’ll learn how to upload and scan a mobile application file directly inside Ostorlab. If you have access to the APK or IPA file, this method allows you to run a complete security assessment before release or test builds that are not yet available on the app stores. What You’ll Learn: - How to start a new scan - How to select Android or iOS application type - How to upload an APK or IPA file - How to optionally upload an SBOM or lock file for deeper dependency analysis - How to choose the right scan plan - How to configure credentials and custom UI rules (when required) Scan Plan Options Explained: - Fast Scan : Rapid static analysis to quickly detect common vulnerabilities - Full Scan : Comprehensive static, dynamic, and backend testing - Privacy Scan : Dedicated analysis for privacy risks and data exposure issues For Full and Privacy scans, you can optionally configure test credentials or define custom UI rules to enable deeper runtime interaction. Once everything is configured, simply click Submit to launch the scan. This approach is ideal for: - Pre-release security validation - CI/CD security integration - Internal builds and staging environments - Compliance-driven security testing - DevSecOps workflows Scanning from a file gives you full control over what version is tested, making it perfect for secure development pipelines. ➡️ ostorlab.co
DeepCamp AI