Mobile Application Security Consultant

Mobile security for products that can’t afford blind spots.

I help product and security teams assess Android and iOS applications, reverse complex protections, analyze encrypted traffic, and build custom testing automation.

Based in Bangladesh · Working with teams worldwide

Portrait of Riyad M
Riyad M Mobile Security Researcher & Reverse Engineer Available worldwide
GitHub stars
139+
Open-source projects
11
Hands-on research
Since 2018
Mobile coverage
Android & iOS

Specialized support for complex mobile security work.

From focused research to repeatable testing tools, I help teams understand how their mobile products behave under real scrutiny.

01

Mobile Application Security

Practical Android and iOS assessments that uncover weaknesses before they become product risk.

  • SSL pinning and traffic controls
  • Root and jailbreak detection
  • Signature and integrity validation
02

Reverse Engineering

Deep application analysis for teams that need to understand protected, obfuscated, or undocumented behavior.

  • APK, IPA, DEX, and binary analysis
  • ARM, JNI, and native-code tracing
  • Code deobfuscation and control flow
03

Security Automation

Custom tooling that turns repeatable security checks into faster, more reliable workflows.

  • Frida hooks and scripts
  • Python security utilities
  • Purpose-built testing automation
04

Traffic & Malware Analysis

Focused investigation of mobile traffic, suspicious behavior, and artifacts across the application stack.

  • Encrypted traffic inspection
  • Protocol and protobuf analysis
  • Mobile malware and forensics

Hands-on expertise across the mobile application stack.

Tools and disciplines developed through consulting, independent research, and open-source development.

Mobile Security

  • Android Security Analysis
  • SSL Pinning Bypass
  • Root Detection Bypass
  • App Signature Bypass
  • Integrity Check Bypass

Reverse Engineering

  • Frida Scripting
  • Radare2
  • DEX Analysis
  • Binary Analysis
  • Code Deobfuscation

Programming Languages

  • Python
  • JavaScript
  • Java
  • Bash Scripting
  • Assembly

Security Tools

  • Frida
  • APKTool
  • Jadx
  • ADB
  • Burp Suite
  • OWASP ZAP

Digital Forensics

  • Mobile Forensics
  • Network Traffic Analysis
  • Malware Analysis
  • Evidence Collection

Specializations

  • Android Penetration Testing
  • iOS Security
  • Automation Scripts
  • Security Consulting

Research and tools built for real security problems.

Open-source work covering Android integrity, Frida automation, root detection, and encrypted traffic analysis.

View GitHub profile

Focused studies across Snapchat and Tinder.

Transport security, client attestation, and automation research presented with the same technical depth as the wider toolset.

2 research projects

Snapchat

Network Security

Snapchat SSL/TLS Certificate Pinning Bypass

Frida script and pre-patched APK bypassing SSL/TLS certificate pinning in the Snapchat Android app, covering OkHttp, Android TrustManager, and native OpenSSL validation.

  • JavaScript
  • Frida
  • SSL Bypass
  • Android Security

Reverse Engineering

Snapchat Argos Analysis

Reverse engineering research into Snapchat's Argos client-attestation system (the x-snapchat-att-token/x-snapchat-att-sign headers), tracing the Java-to-native JNI bridge through to the gRPC backend. Educational research only — not a working token generator.

  • Python
  • Reverse Engineering
  • JNI
  • Native Analysis

2 research projects

Tinder

Automation

Bulk Tinder Profile Creator

Automation tool for Tinder profile management and API interaction. Built for research purposes in social media automation.

  • Python
  • Tinder API
  • Automation
  • Bot Development

Network Security

Tinder SSL/TLS Bypass

Frida script bypassing SSL certificate pinning, proxy detection, and anti-debugging checks in the Tinder Android app across OkHttp3, Volley, and custom trust-manager implementations.

  • JavaScript
  • Frida
  • SSL Bypass
  • Android Security

Additional research and utilities.

Filter the remaining projects by discipline, then expand an entry for the complete details.

3 projects shown

06 Frida DEX DumpReverse Engineering JavaScript · Frida 12 stars 6 forks

DEX file extraction and dumping utility using Frida for Android reverse engineering and analysis.

  • JavaScript
  • Frida
  • DEX Analysis
  • Android RE
Open repository
07 iOS SSL Bypass & Traffic MonitoriOS Security JavaScript · Frida 6 stars 3 forks

Frida-based iOS SSL bypass with real-time traffic monitoring capabilities for mobile security testing.

  • JavaScript
  • Frida
  • iOS Security
  • Traffic Analysis
Open repository
08 iOS Protobuf ExtractoriOS Security Python · iOS Analysis 4 stars 1 forks

Python tool for extracting Protocol Buffer schemas from iOS IPA files for reverse engineering analysis.

  • Python
  • iOS Analysis
  • Protobuf
  • IPA Files
Open repository

Built through hands-on security work.

Independent research, client consulting, community education, and open-source development since 2018.

Reversesio (Independent)

Founder & Security Researcher

Created comprehensive mobile security research platform. Developed tutorials and tools for Android security testing, SSL bypass techniques, and reverse engineering. Built community of security researchers through YouTube, Telegram, and Reddit.

Freelance Security Consulting

Mobile Security Consultant

Provided specialized mobile application security testing services. Conducted penetration testing on Android and iOS applications. Developed custom automation tools for security testing and digital forensics.

Open Source Contributions

Security Tool Developer

Developed and maintained multiple open-source security tools including Frida scripts for Android bypasses, DEX analysis tools, and signature verification bypass utilities. Active contributor to mobile security research community.

Curiosity at the lowest level. Clarity at the product level.

As a cybersecurity specialist with deep expertise in mobile security and reverse engineering, I focus on identifying vulnerabilities in mobile applications and developing robust security solutions. My work involves analyzing malware, bypassing security mechanisms, and ensuring the integrity of mobile ecosystems.

I have extensive experience with ARM assembly analysis, Android APK dissection, and iOS binary analysis. My passion lies in understanding how systems work at the lowest level and finding creative ways to enhance their security.

I also create open-source security tools and share mobile security research and reverse-engineering tutorials through Reversesio, YouTube, Telegram, and Reddit.

  • 01Mobile Application Security
  • 02Malware Analysis & Detection
  • 03Reverse Engineering
  • 04Penetration Testing
  • 05Security Tool Development

Let’s discuss your mobile security challenge.

I’m available for focused assessments, reverse-engineering research, custom security tooling, and technical collaborations. Telegram is the fastest way to reach me.

Available for select client work Bangladesh · Remote worldwide