Hi, I've released a small tool today called the Windows Phone App Analyser. The first version is pretty basic but it should help people find security flaws in Windows Phone apps with or without the soruce code.
The major features are listed below: 1) Analyse app source code and have keywords highlighted/explained which might need further investigation from a security point of view. 2) Automatically decompile Windows Phone .xap application to easily analyse the original source code 3) Launch and review results from third party scanning tools (CAT.NET, FxCop and the capabilities detection tool in v1.0) For more information on the changes in this release please visit this page: https://www.securityninja.co.uk/application-security/windows-phone-app-analyser-v1-0-released-today-2/ You can download v1.0 of the Windows Phone App Analyser here: http://sourceforge.net/projects/wpaa/files/v1.0/ Let me know what you think of it! Dave
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/