Fundamentals & Awareness
Intermediate Online
Available now
eMAPT — Mobile
INEInternationally recognized accreditation body
🧪
Hands-on trainingReal-world labs & simulations
🏅
Internationally accreditedBy global bodies
📝
International examOfficially recognized certificate
🎯
Job-market readyIn-demand skills
About the certification
📱 Master smartphone application security with eMAPT certification from INE
eMAPT certification is the professional certification specialized in Mobile Application Penetration Testing, and focuses on evaluating, discovering and exploiting security vulnerabilities in Android and iOS applications within environments that simulate real business scenarios.
Certification content & modules
🔍Information collection and static analysis (20%)
- Analyze Android and iOS applications
- Extract and scan APK and IPA files
- Discovering hardcoded secrets
- Analyze permissions and security settings
- Dealing with encrypted and obfuscated codes.
🔐Dynamic tests and in-process manipulation (20%)
- Monitor application behavior during operation
- Bypass SSL Pinning
- Bypass Root & Jailbreak Detection
- Use tools like Frida and Objection to analyze the application
- Testing WebViews, IPC, and dealing with system logs (Logs)
🌐API security testing and back-end services (15%)
- Discover hidden API points
- Authentication testing and session management
- Discover BOLA and BFLA vulnerabilities
- Analyze sensitive data and storage mechanisms
- Performing MITM attacks and analyzing encrypted data traffic
🛡️Mobile application security basics (10%)
- Understand the security architecture of Android and iOS systems
- Identify the most common security vulnerabilities in phone applications
- Apply Mobile Threat Modeling concepts
- Understand the security risks of mobile applications
🎯Offensive thinking and threat modeling (10%)
- Analyze applications with an attacker's mindset
- Building professional threat models
- Apply PTES and OWASP MSTG methodologies
- Plan and implement comprehensive security assessments of mobile applications
🔧Reverse engineering and disguising (10%)
- Reverse Engineering for Android and iOS applications
- Analyze DEX and Mach-O files
- Understand and overcome camouflage mechanisms
- Modify and analyze application logic internally
🦠Mobile malware analysis (10%)
- Malware behavior analysis
- Discovering techniques to evade analysis
- Study APT attacks on mobile devices
- Apply static and dynamic malware analysis
📝Preparing professional reports (5%)
- Documenting security vulnerabilities
- Preparing professional reports for developers and management
- Providing practical recommendations and solutions to address security risks
👨💻Who is this certificate for?
- Penetration Testers
- Mobile Security Analysts
- Red Team Operators
- Application Security Engineers
- Malware Analysts
- Security Consultants
- Android and iOS app developers who want to understand security aspects more deeply
What you'll learn
- Survey and static analysis
- Threat modeling
- Mobile malware analysis
- Dynamic testing
Quick details
LevelIntermediate
Delivery MethodOnline
Official certificate information
⏱️
Exam duration
12 hours — 100% practical exam (45 practical questions on real mobile applications in a browser lab environment, pass 70%)
🎟️
Voucher validity
180 days from the date of purchase (for regular voucher)
🔁
Exam retake
One free replay included which must be completed within 14 days of the first attempt (both attempts must be before the expiration of the voucher)
📅
Certificate validity
3 years from the date of grant (renewable)