• HOME
  • CATEGORIES

    • CATEGORIES

    • Application Development

      • Observability Platforms
      • Integrated Development Environment (IDE) Software
      • Enterprise Agile Planning Tools
      • Integration Platform as a Service
      • AI-Augmented Software Testing Tools
      • View All
    • Artificial Intelligence

      • AI Code Assistants (Transitioning to AI Coding Agents)
      • Generative AI Knowledge Management Apps/General Productivity
      • AI Application Development Platforms
      • Conversational AI Platforms
      • Artificial Intelligence Applications in IT Service Management (Transitioning to AI Applications in IT Service Management)
      • View All
    • Cloud Computing

      • Backup and Data Protection Platforms
      • Cloud Database Management Systems
      • Strategic Cloud Platform Services
      • Server Virtualization (Transitioning to Server Virtualization Platforms)
      • Hybrid Cloud Storage
      • View All
    • Customer Relationship Management

      • Contact Center as a Service
      • CRM Customer Engagement Center
      • Digital Experience Platforms
      • Web Content Management
      • Field Service Management
      • View All
    • Data and Analytics

      • Analytics and Business Intelligence Platforms
      • Data Science and Machine Learning Platforms (Transitioning to AI Platforms For Data Science and Machine Learning)
      • Data Integration Tools
      • Process Mining Platforms (Transitioning to Process Intelligence Platforms)
      • Augmented Data Quality Solutions
      • View All
    • Education

      • Manager and Leadership Training
      • Corporate Learning Technologies
      • eLearning Authoring Tools
      • Higher Education Student Information System Software as a Service (Transitioning to Higher Education SaaS Student Information Systems)
      • Digital Learning Content Providers
      • View All
    • Enterprise Networking and Communications

      • Unified Communications as a Service
      • Global WAN Services
      • Intranet Packaged Solutions
      • SD-WAN
      • Edge Distribution Platforms
      • View All
    • Finance

      • Expense Management Software
      • Financial Close and Consolidation Solutions
      • Financial Planning Software
      • Cloud Financial Management Tools
      • Accounts Payable Applications
      • View All
    • Healthcare and Life Sciences

      • Medical Device Security Solutions (Transitioning to Medical Device Risk Management Platforms)
      • Health Navigation Solutions
      • Claim Editor Software
      • Revenue Cycle Management Software (Transitioning to Revenue Cycle Management Solutions)
      • Digital Health Platforms (Transitioning to Healthcare Provider Industry Cloud Platforms)
      • View All
    • Human Resources

      • Employee Recognition and Reward Systems
      • Workforce Management Applications (Transitioning to Workforce Management (WFM) Technology)
      • Digital Employee Experience Management Tools
      • Talent Acquisition (Recruiting) Suites
      • Cloud HCM Suites for Regional and/or Sub-1,000 Employee Enterprises
      • View All
    • IT Infrastructure and IoT

      • Enterprise Wired and Wireless LAN Infrastructure (Transitioning to Enterprise Wired and Wireless LAN)
      • Endpoint Management Tools
      • IT Service Management Platforms
      • Container Management
      • Infrastructure Monitoring Tools
      • View All
    • IT Security

      • Endpoint Protection Platforms
      • Email Security
      • Managed Detection and Response
      • Security Information and Event Management
      • Security Awareness Computer-Based Training
      • View All
    • Legal

      • Contract Life Cycle Management
      • Electronic Signature
      • Governance, Risk and Compliance Tools, Assurance Leaders
      • Compliance Monitoring Solutions
      • Corporate Governance Services
      • View All
    • Manufacturing

      • Enterprise Asset Management Software
      • Manufacturing Execution Systems
      • Global Industrial IoT Platforms
      • PLM Software in Discrete Manufacturing Industries
      • Computer-Aided Design (CAD) Software
      • View All
    • Marketing

      • Video Editing Software
      • Email Marketing
      • Multichannel Marketing Hubs
      • Customer Data Platforms
      • Event Marketing and Management Platforms
      • View All
    • Productivity and Collaboration

      • Document Management
      • Visual Collaboration Applications
      • Collaborative Work Management
      • Knowledge Management (KM) Software
      • Meeting Solutions
      • View All
    • Public Sector and Government

      • Government Budgeting and Planning Solution
      • Cloud-Based ERP for U.S. Local Government
      • Citizen Service Delivery
      • Government ERP Solutions
      • Government Contracting Software
      • View All
    • Retail

      • Digital Commerce
      • Digital Commerce Payment Vendors (Transitioning to Digital Commerce Payment Platforms)
      • Retail Assortment Management Applications: Long Life Cycle Products
      • Retail Workforce Management Applications (Transitioning to Retail Workforce Management Technology)
      • Digital Shelf Analytics
      • View All
    • Sales

      • Sales Force Automation Platforms (Transitioning to CRM Sales Platforms)
      • Revenue Enablement Platforms
      • Revenue Intelligence (Transitioning to Revenue Action Orchestration)
      • Configure, Price and Quote Applications
      • Search and Product Discovery
      • View All
    • Supply Chain Management

      • Supply Chain Planning Solutions
      • Transportation Management Systems
      • Real-Time Transportation Visibility Platforms
      • Warehouse Management Systems
      • Supply Chain Strategy, Planning and Operations Consulting
      • View All
    • Utilities

      • Geospatial Information Systems for Energy and Utilities
      • Mobile Workforce Management Software for Utilities (Transitioning to Mobile Workforce Management Solutions for Power and Utilities)
      • Energy Management and Optimization Systems
      • Energy Trading and Risk Management
      • Advanced Distribution Management Systems
      • View All
    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

      • Application Development
      • Artificial Intelligence
      • Cloud Computing
      • Customer Relationship Management
      • Data and Analytics
      • Education
      • Enterprise Networking and Communications
      • Finance
      • Healthcare and Life Sciences
      • Human Resources
      • IT Infrastructure and IoT
      • IT Security
      • Legal
      • Manufacturing
      • Marketing
      • Productivity and Collaboration
      • Public Sector and Government
      • Retail
      • Sales
      • Supply Chain Management
      • Utilities
      Browse All Categories

      Application Development

      69 markets
      • Observability Platforms
      • Integrated Development Environment (IDE) Software
      • Enterprise Agile Planning Tools
      • Integration Platform as a Service
      • AI-Augmented Software Testing Tools
      • API Management
      • Enterprise Low-Code Application Platforms
      • Robotic Process Automation
      • DevOps Platforms (Transitioning to DevSecOps Platforms)
      • Business Process Automation Tools
      • Enterprise Architecture Tools
      • Business Orchestration and Automation Technologies
      • Custom Software Development Services
      • Code Review Tools
      • Digital Adoption Platforms
      • Domain Registrars
      • Public Cloud IT Transformation Services (Transitioning to Public Cloud Optimization and Transformation Services)
      • Game Engine Software
      • Website Builders
      • Developer Productivity Insight Platforms
      • AI Agents for Application Developers
      • Application Platforms (Transitioning to Cloud-Native Application Protection Platforms)
      • Feature Management
      • Application Crowdtesting Services
      • Test Data Management
      • API Generation Software
      • Prototyping Software
      • Mobile App Analytics
      • AI-Augmented Code Modernization Tools
      • Virtual Reality Development Software
      • Application Testing Services, Worldwide (Transitioning to Quality Engineering Services)
      • Green Software Engineering
      • Application Integration Platforms
      • Event Brokers
      • Digital Twin of an Organization Platforms
      • Independent Third-Party Software Support of Megavendors
      • Microsoft 365 Implementation and Support Services
      • Application Development Life Cycle Management (Transitioning to DevOps Platforms)
      • BPM-Platform-Based Case Management Frameworks
      • Microsoft Product Support Services
      • Product Roadmapping Tools for Software Engineering
      • Multiexperience Development Platforms
      • AI Agent Development Platforms for Software Engineering
      • Application Portfolio Management Tools
      • Application Composition Platform
      • Internal Developer Portals
      • Cloud Development Environments
      • Mobile Development Frameworks (Transitioning to Web and Mobile Development Frameworks)
      • Load Testing Tools
      • Blockchain Consulting and Proof-of-Concept Development Services
      • B2B Gateway Software
      • Citizen Application Development Platforms
      • Mobile Application Testing Services
      • SAP S/4HANA Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • Oracle Cloud Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • SAP Application Services, Worldwide
      • SAP SuccessFactors Service Providers (Transitioning to Cloud ERP Services)
      • Service Mesh
      • Value Stream Management Platforms
      • Business-Outcome-Driven Enterprise Architecture Consulting (Retired)
      • Oracle Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • Rapid Mobile App Development Tools
      • SAP Selective Test Data Management Tools
      • API and MCP Testing Tools
      • Augmented Reality Development Software
      • Blockchain as a Service
      • Mobile Application Management (Transitioning to Endpoint Management Tools)
      • Mobile Back-End Services
      • R&D Outsourcing Providers
      View More
  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
All Categories
/
Mobile Application Security Testing

Mobile Application Security Testing Reviews and Ratings

What is Mobile Application Security Testing (MAST)?

The mobile AST market is composed of buyers and sellers of products and services that analyze and identify vulnerabilities in applications used with mobile platforms (iOS, Android and Windows 10 Mobile) during or post development. Many variations and flavors of techniques exist, but fundamentally mobile AST solutions test applications in three main ways: (1) SAST: These solutions statically analyze the source, binary or bytecode of an application to identify vulnerabilities. (2) Behavioral testing: Mobile AST solutions use behavioral analysis to observe the behavior of the app during runtime and identify actions that could be exploited by an attacker. (3) DAST: These solutions also use dynamic analysis to test the app in its runtime state. DAST simulates attacks against an application and analyzes the application's reactions, determining whether it is vulnerable.

How Categories and Markets Are Defined

Product Listings

Filter by

Products 1 - 20 of 39
Sort by
Logo of Appknox

Appknox

By Appknox

4.6
(62 Ratings)

Appknox is a software designed to assist organizations in identifying and addressing security vulnerabilities within mobile applications. It enables automated and manual testing to evaluate application source code, binaries, and behavior for potential risks and compliance issues. The software supports security assessment processes such as static, dynamic, and API testing to uncover misconfigurations, insecure coding practices, and potential data exposure. Appknox integrates with development workflows to streamline vulnerability detection and remediation, helping businesses protect sensitive information and comply with regulatory requirements. It is used to enhance mobile application security by providing actionable insights for IT and security teams.

Show More Details
Logo of Ostorlab

Ostorlab

By Ostorlab

4.9
(16 Ratings)

Ostorlab is a software designed for automated mobile application security assessment. The software enables organizations to identify and address vulnerabilities in Android and iOS applications during development and deployment. Ostorlab provides dynamic and static analysis capabilities to detect security issues such as misconfigurations, insecure coding practices, and data leakage risks. The software integrates with development pipelines and supports detailed reporting, helping teams prioritize and remediate identified risks efficiently. The primary business problem addressed by Ostorlab is enhancing the security posture of mobile applications and reducing the likelihood of exploitation by adversaries.

Show More Details
Logo of Checkmarx SAST

Checkmarx SAST

By Checkmarx

4.6
(13 Ratings)

Checkmarx SAST is a software designed to analyze application source code in order to identify security vulnerabilities during the software development process. The software supports multiple programming languages and frameworks, enabling development and security teams to detect issues early in the application life cycle. Checkmarx SAST provides features such as automated code scanning, integration with development environments and CI/CD pipelines, customizable reporting, and support for compliance requirements. The software addresses business problems related to software security by helping organizations manage and reduce risks associated with insecure code, promoting safer software releases, and assisting with regulatory adherence.

Show More Details
Logo of esChecker (Legacy)

esChecker (Legacy)

By eShard

4.7
(11 Ratings)

esChecker (Legacy) is a software designed to evaluate the security posture of mobile applications by facilitating automated and guided tests of app resilience against reverse engineering, tampering, and other threats. The software offers capabilities such as dynamic analysis, code inspection, and real-time scenario simulation in emulated environments. It assists security teams in identifying vulnerabilities, assessing the effectiveness of implemented security controls, and gauging compliance with industry standards. esChecker (Legacy) supports continuous integration workflows and provides detailed reporting to inform remediation strategies, helping organizations address risks associated with mobile application deployment and operation.

Show More Details
Logo of Synopsys

Synopsys

By Black Duck

4.1
(9 Ratings)

Synopsys Black Duck is a software that provides automated open source management and security solutions for software development teams. The software enables identification and monitoring of open source components within codebases, assisting organizations in detecting vulnerabilities and managing license compliance. Black Duck streamlines the process of analyzing open source dependencies to ensure that software applications adhere to regulatory requirements and corporate policies. By integrating with existing development workflows, the software supports the continuous assessment of security risks and assists in mitigating potential threats associated with open source usage. This solution is designed to address business challenges related to open source security, intellectual property risk, and code governance in software development environments.

Show More Details
Logo of NowSecure Platform

NowSecure Platform

By NowSecure

4.6
(8 Ratings)

NowSecure Platform is a software designed to automate the testing and analysis of mobile applications for security, privacy, and compliance issues. The software enables organizations to identify vulnerabilities, assess data risks, and ensure adherence to industry standards within iOS and Android apps. It integrates with DevOps workflows, allowing for continuous monitoring and remediation through comprehensive vulnerability detection, policy enforcement, and detailed reporting. NowSecure Platform addresses business concerns related to mobile app security and regulatory compliance by providing scalable application security testing and actionable insights for development teams and security professionals.

Show More Details
Logo of Data Theorem Mobile Secure

Data Theorem Mobile Secure

By Data Theorem

5
(4 Ratings)

Data Theorem Mobile Secure is a software designed to assess and protect mobile applications by identifying vulnerabilities and security risks that could lead to data breaches or unauthorized access. The software performs automated analysis of mobile app code, APIs, and third-party components to detect potential threats and weaknesses. It offers reporting and remediation guidance to help organizations address identified issues and comply with industry standards. Data Theorem Mobile Secure assists businesses in reducing risks associated with mobile application deployment and operations by helping secure sensitive data and maintain the integrity of their mobile environments.

Show More Details
Logo of OpenText Application Security Aviator (Fortify)

OpenText Application Security Aviator (Fortify)

By OpenText

4.8
(4 Ratings)

OpenText Application Security Aviator, also known as Fortify, is a software designed to identify, analyze, and remediate vulnerabilities in application code throughout the software development lifecycle. The software provides static, dynamic, and interactive application security testing capabilities to help detect security flaws before deployment. It supports multiple programming languages and integrates with development tools and workflows, enabling continuous assessment of code for potential risks. The software assists organizations in addressing compliance requirements and reducing exposure to threats by delivering actionable insights into application security posture, supporting both on-premises and cloud environments.

Show More Details
Logo of AppScan

AppScan

By HCLTech (HCLSoftware)

3.8
(3 Ratings)

AppScan is a software developed to help organizations identify and manage security vulnerabilities in applications. It performs dynamic, static, interactive, and open-source security testing to analyze code and detect issues throughout the software development lifecycle. The software provides automated scanning capabilities for web, mobile, and API applications, offering remediation guidance and reporting functionalities to support compliance with regulatory standards. AppScan integrates with development and DevOps workflows to enable early detection of vulnerabilities and facilitate secure code deployment. The software addresses the business problem of reducing the risk of security breaches by enhancing application security and supporting continuous vulnerability management.

Show More Details
Logo of PRADEO SECURITY – Mobile Application Security Testing

PRADEO SECURITY – Mobile Application Security Testing

By Pradeo

4
(3 Ratings)

PRADEO SECURITY – Mobile Application Security Testing is a software designed to analyze and secure mobile applications by detecting vulnerabilities, threats, and compliance issues within app source code and behavior. This software provides dynamic and static analysis to identify risks such as data leakage, unauthorized access, and insecure communications. It tests applications against a range of security standards and guidelines, helping organizations address exposure to cyber threats and regulatory requirements. Through automated assessments, the software facilitates the evaluation and remediation of security flaws, supporting developers and security teams in minimizing risk associated with mobile application deployment and usage.

Show More Details
Logo of Testhouse Managed Testing Services

Testhouse Managed Testing Services

By Testhouse

4
(3 Ratings)

Testhouse Managed Testing Services is a software designed to handle end-to-end testing processes for organizations. The software offers features such as test planning, execution, and management, accommodating functional, performance, and security testing requirements. It enables businesses to optimize the quality of their applications by identifying and addressing defects throughout the development lifecycle. The software provides customizable frameworks and reporting tools to align with client-specific needs, supporting integration with various development environments. Its core objective is to enhance software reliability and mitigate risks associated with deployment, thereby supporting organizations in maintaining system integrity and compliance standards.

Show More Details
Logo of Mobisec Mobile Application Testing Services

Mobisec Mobile Application Testing Services

By Mobisec

4.5
(2 Ratings)

Mobisec's vulnerability assessment and penetration testing platform is designed to ensure the security of mobile applications. It is engineered to reduce security concerns and allow companies to focus on their core business. With our platform, we first conduct a vulnerability assessment of the application using automation, human intelligence, and artificial intelligence. We perform this in black box mode, meaning our client does not need to provide access to the code or download any software. Next, our team of ethical hackers simulates the behavior of a real attacker to verify the application's robustness. Our platform monitors, records, and analyzes all processes to identify potential issues. At the end of our work, we generate and present a clear, detailed report with no false positives, understandable at various management levels. The report includes a classification of vulnerabilities by severity and precise recommendations for remediation.

Show More Details
Logo of Q-mast

Q-mast

By Quokka

4.2
(2 Ratings)

Q-mast is a software designed to automate and manage the process of metadata extraction, transformation, and validation for data pipelines. The software assists organizations in improving data governance by facilitating the organization, classification, and cataloging of data assets. Q-mast enables users to standardize metadata definitions, streamline compliance with data regulations, and support audit requirements through consistent validation procedures. The software targets data engineers, data analysts, and compliance teams by providing tools for scalable metadata management, allowing for enhanced traceability and transparency of data resources within an enterprise. Q-mast aims to solve challenges related to manual metadata tasks, inaccuracies, and the overhead in maintaining compliant and well-documented data pipelines.

Show More Details
Logo of Quixxi Scan

Quixxi Scan

By Quixxi Security

4
(2 Ratings)

Quixxi Scan is a software designed to assess mobile applications for potential security vulnerabilities. The software performs comprehensive analysis of application code, libraries, and third-party integrations to identify risks and compliance issues. It supports scanning for malware, insecure data storage, improper use of encryption, and permissions misuse. Quixxi Scan helps organizations address common security concerns in mobile app development by providing actionable insights and recommendations for remediation. This software aids businesses in maintaining secure mobile environments and assists in compliance with relevant regulations and standards by automatically detecting weaknesses and generating detailed reports for developers and security teams.

Show More Details
Logo of ImmuniWeb MobileSuite

ImmuniWeb MobileSuite

By ImmuniWeb

4
(1 Rating)

ImmuniWeb MobileSuite is a software designed to assess the security and compliance of mobile applications across iOS and Android platforms. It identifies vulnerabilities in mobile apps, application programming interfaces, and backend systems by conducting dynamic and static testing. The software provides detailed reports highlighting security issues, compliance gaps, and remediation guidance. It supports organizations in addressing regulatory requirements, reducing risks associated with mobile applications, and improving the security posture of their mobile assets. ImmuniWeb MobileSuite aims to streamline mobile app security testing through automation while enabling integration with existing workflows.

Show More Details
Logo of Pradeo

Pradeo

By Pradeo

4
(1 Rating)

Pradeo is a software that provides mobile application security solutions for organizations seeking to protect their digital assets and sensitive data. The software analyzes, detects, and prevents threats targeting mobile applications by employing automated scanning, behavioral analysis, and compliance assessment. Pradeo supports the identification of vulnerabilities, malware, and data leakage risks across mobile apps, enabling organizations to maintain regulatory compliance and safeguard user information. The software integrates with existing development and operational workflows, allowing for continuous monitoring and protection of mobile environments. Pradeo addresses the business problem of securing mobile applications against evolving threats and helps organizations minimize the risk of data breaches.

Show More Details
Logo of Syhunt Hybrid

Syhunt Hybrid

By Syhunt

5
(1 Rating)

Syhunt Hybrid is a software designed to assess the security of web applications by performing automated vulnerability scanning and source code analysis. The software supports multiple programming languages and identifies a range of security issues, including SQL injection, cross-site scripting, and other vulnerabilities within web application environments. It offers both dynamic application security testing and static application security testing methods, enabling organizations to detect issues in deployed applications as well as review the underlying code. Syhunt Hybrid aims to assist businesses in identifying and mitigating risks associated with application development and deployment, providing detailed reports and remediation guidance to improve overall security posture.

Show More Details
Logo of Aikido Security

Aikido Security

By Aikido Security

Aikido is a developer-centric security platform that gives developers and security teams an instant overview of all code-to-cloud security issues and guides teams to fix vulnerabilities fast. Aikido supports security teams execute by aggressively reducing false-positives, automatic triage and risk bundling, and translating Common Vulnerabilities and Exposures (CVEs) into easy step-by-step explanations to resolve.

Described as an "all-in-one" application security platform, Aikido's covers the entire Software Development Lifecycle (SDLC), including: static application security testing (SAST), dynamic application security testing (DAST), infrastructure-as-code (IaC), container scanning, secrets detection, open source lisence scanning, cloud posture management (CSPM), runtime protection, and more.

Be the first to .
Logo of App-Ray

App-Ray

By App-Ray

App-Ray is a software that performs automated mobile application security analysis. It examines Android and iOS applications for potential vulnerabilities by conducting both static and dynamic analysis. The software identifies risks such as insecure data storage, privacy issues, code manipulation, and communication weaknesses. App-Ray provides reports outlining discovered vulnerabilities and suggests technical mitigations, assisting businesses in evaluating the security compliance of their mobile apps and addressing threats in the software development process. The software is used by organizations to improve application security posture and to support compliance with various security standards.

Be the first to .
Logo of AppCheck

AppCheck

By AppCheck

AppCheck is a software designed for automated web application and infrastructure vulnerability scanning, identifying security weaknesses across digital assets. The software conducts comprehensive scans to detect vulnerabilities such as SQL injection, cross-site scripting, and misconfigurations, assisting organizations in improving their security posture. It includes features for continuous assessment, allowing users to prioritize findings and track remediation progress within the platform. AppCheck addresses the business problem of managing risks in digital environments by enabling organizations to proactively uncover and resolve security issues before they are exploited. The software supports integration with other security tools and workflows, facilitating the development of a systematic approach to vulnerability management and compliance requirements.

Be the first to .

Gartner Research

Market Guide for Mobile Application Security Testing

Popular Product Comparisons

Appknox vs Checkmarx SASTAppknox vs NowSecure PlatformAppknox vs SynopsysData Theorem Mobile Secure vs NowSecure PlatformAppknox vs Data Theorem Mobile SecureCheckmarx SAST vs SynopsysAppknox vs Ostorlab

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.