Logo

    mobile application

    Explore "mobile application" with insightful episodes like "#64 - Carlo Szelinsky // Co-CEO & Founder @ applike Group", "#2: Mobile App security: a money game with Anastasiia Voitova", "Purple Keys, Part 2" and "Student Innovation: Developing Mobile Apps for learning" from podcasts like ""alphalist.CTO Podcast - For CTOs and Technical Leaders", "Mobile App Makers", "ARE WE EUROPE" and "Case Studies In Innovative Practice"" and more!

    Episodes (4)

    #64 - Carlo Szelinsky // Co-CEO & Founder @ applike Group

    #64 - Carlo Szelinsky // Co-CEO & Founder @ applike Group
    Find out how to build a profitable mobile app or game 📱in this CTO podcast featuring Carlo Szelinsky, Co-CEO & Founder @ applike group. The applike group brings in $100M+ ARR through their apps and games and now also offers tech solutions for app creators. Listen to this podcast for a step by-step-guide to mobile apps: from performance marketing attribution to in-app analytics technology and everything you need to know about monetizing your app. Listen to find out: - How to do attribution 🧐 well in 2023 (and how to deal with click🖱️ fraud) - The pros and cons of ad network mediation platforms 🧑‍⚖️ - The different ways to monetize a mobile game 🎮 - What tech stack he recommends for each app type. Listen here: https://alphalist.com/podcast/64-carlo-szelinsky-co-ceo-founder-applike-group

    #2: Mobile App security: a money game with Anastasiia Voitova

    #2: Mobile App security: a money game with Anastasiia Voitova

    In this episode, I interview Anastasiia Voitova about mobile security and the trade-offs it involves (cost, user experience, team collaboration). She has some great advice about how much to invest in your project. We talk about early start-up and try to give a good rule about how much to invest in security.

    =============Bio===============

    Anastasiia Voitova, Head of customer solutions, security software engineer at Cossack Labs,  is a software engineer with 10+ experience years. She builds security tools for protecting data during the whole lifecycle (encrypt everything!). Anastasiia shares a lot about "boring cryptography", end-to-end encryption, data security, zero-knowledge & zero trust systems, software security architecture. She speaks at international conferences, conducts workshops and training for developers, and co-organizes cybersec events.
    Twitter: https://twitter.com/vixentael


    =============Quotes============
    "
    Security is a process and this is a very long process. And there is not this and like table and ribbon, finish ribbon that says, yeah, you're done. Sorry, you're not done. You can do it all the time like month after month, year after year. So the question with security engineering is a question of tradeoff. How to put just enough money into security to have a secure application not to get into, you know, super paranoia mode, not to create applications that is very secure, but no one will use it. At the same time still invest money, because if you don't invest money and in security, it won't happen magically right now. So it's like a game with trade-offs."

    "However, really scary things happen when it's not only about money, but it's more related to our physical life. For example, those mobile applications that can control automobiles, controlled cars. And now,  especially electric or hybrid car. They have a mobile app that controls this car. And there were cases with Nissan Leaf, for example, where you can just get the application check the network connection from the app to the backend. Go to the Nissan Leaf parking lot and enumerate, like find a Nissan Leaf car ID, just by enumeration and you might be lucky. And there is this car in this parking lot with this ID and suddenly you can control someone else's car."

    "Well, you know, like no one really aims to create insecure applications. So I don't know a lot of people whose goal was to create bad applications. OK, so it's not something that happens intentionally and it's not something that we can fix. And that's something that we can say to someone else, just like some person on our team, "Hey stop doing that". To do more secure applications, we need some kind of process that will integrate security into the life of our team, basically like day by day, week by week, as in a process that they can't run away from."



    =============Links==============

    Themis crypto lib: https://github.com/cossacklabs/themis
    Cossack Labs blog:
    https://www.cossacklabs.com/blog
    Security Workshop for devs: https://github.com/vixentael/security-data-management-for-app-devs-workshop
    OWASP (Open Web Application Security Project) MASVS (Mobile Application Security Verification Standard): https://github.com/OWASP/owasp-masvs
    NIST guidelines for passwords: https://pages.nist.gov/800-63-3/sp800-63-3.html


    Purple Keys, Part 2

    Purple Keys, Part 2
    Purple Keys is a podcast which uncovers solutions to tackle gender-based violence during the pandemic. In this episode journalists Monica Pelliccia and Elena Ledda look into how a French mobile app help women in France counter domestic violence. This podcast has been produced and presented by Monica Pelliccia and Elena Ledda. The sound designer is Andreu Quesada and voiceovers have been done by Chiara Brilli, Soundous Boualam and Anneleen Ophoff. This podcast has also been co-funded by the European Commission in the framework of the Stars4Media pilot project.