Skip to content
Training

Mobile app pentesting courses for iOS and Android teams

Instructor-led mobile application security training for teams, run on ready virtual iOS and Android devices with AI agents. No physical test phones needed. Available on request.

Every mobile app pentesting course covering iOS and Android needs a working lab. With recuritylab, the lab comes with the course.

Why train on virtual devices

Mobile pentesting training without physical devices means class time goes to learning, not device prep.

01

No hardware to prepare

Every learner starts on a ready virtual iOS or Android device, with jailbreak or root access available.

02

Same lab for everyone

Consistent environments for the whole group, reset to a clean state with snapshots.

03

An AI agent as teaching assistant

The agent can demonstrate a check, explain what it found and summarise results.

See the platform

Course themes

Mobile application security training shaped around what your team needs to do. Themes are starting points, not fixed products.

iOSAndroid

Getting productive on recuritylab

For: teams starting on the platform

Learners will be able to:

  • set up and manage virtual devices and snapshots for their work
  • run and review AI agent sessions
  • see where the API fits in their automation
Book a demo
iOSAndroid

Mobile app security testing fundamentals (iOS and Android)

For: penetration testers and AppSec engineers new to mobile

Learners will be able to:

  • plan and structure a mobile app assessment
  • recognise common weakness areas, organised around OWASP MASVS
  • write findings developers can act on
Book a demo
iOSAndroid

AI-assisted mobile security testing

For: security teams adopting AI agents

Learners will be able to:

  • use AI agents and MCP in a testing workflow
  • scope what an agent should and should not do
  • review and verify agent findings before reporting
Book a demo
iOSAndroid

Foundations of mobile vulnerability research

For: researchers moving towards OS-level work

Learners will be able to:

  • explain the core concepts of mobile OS internals
  • understand what debugging and introspection on virtual devices make possible
  • set up research work that is repeatable and well documented
Book a demo
iOSAndroid

Mobile security in CI

For: DevSecOps and QA engineers

Learners will be able to:

  • decide which security checks belong in a pipeline
  • design repeatable checks on virtual devices
  • route results to the people who fix them
Book a demo

Need something specific? We tailor content to your team.

Formats

iOS and Android security training for teams is arranged per request, so the format fits your group, schedule and location. Tell us what works for you and we will propose a format. Lab access on recuritylab virtual devices for the duration of the course is part of the arrangement.

Who it’s for

Learners should be familiar with mobile apps and basic security concepts. We share prerequisites for each theme on request.

Universities: see the academic program
  • AppSec teams building mobile testing skills
  • Penetration testers adding iOS and Android to their scope
  • Mobile developers who want to test their own apps
  • Security researchers
  • Educators planning mobile security courses

FAQ

Do learners need their own iPhone or Android phone?

No. Every learner works on virtual iOS and Android devices in the cloud, with jailbreak or root access available. Nobody has to buy, prepare or reset test phones, and everyone starts from the same environment.

Do your mobile app pentesting courses cover both iOS and Android?

Yes. The labs run virtual iOS and Android devices side by side, and the themes are built to cover both platforms. If your team works mainly on one, we can shift the emphasis.

How long are courses, and what do they cost?

Both depend on your team, goals and chosen format, so we shape each course per request. Book a demo, tell us what you need and we will come back with a proposal.

Can you tailor content to our apps and stack?

Yes, on request. We can build exercises around your team’s workflows and focus areas. Only apps your organisation is authorized to test can be used, in line with our Acceptable Use Policy.

Tell us about your team

Share your team’s goals and platforms, and we will propose a course built on ready virtual devices and AI agents.