MOBILE devices pose significant security challenges as they operate beyond organizational security perimeters, often housing vulnerable components within applications. Lookout's CEO highlighted the WolfSSL vulnerability, prevalent on over a billion devices, as a critical risk, especially for banking apps. Organizations typically lack visibility into the dependencies and vulnerabilities of mobile applications.
Lookout's Mobile Security Exposure Center (MSEC) aims to address this by mapping software components and known vulnerabilities through a proprietary software bill of materials (SBOM). MSEC not only identifies vulnerabilities but also correlates app components with vulnerability databases like the Known Exploited Vulnerabilities (KEV) list. The goal is to shift from reactive management to proactive exposure management while recognizing the limitations of current vulnerability databases. Lookout plans to leverage frontier AI models defensively to uncover unknown vulnerabilities, ensuring comprehensive security for mobile applications.