Upwardly Mobile – API & App Security News

Upwardly Mobile - API & App Security News
Podcast Description
Dive into the high-stakes world of mobile app development and API security with Upwardly Mobile, your ultimate guide to defending apps in today’s volatile digital landscape. Hosted by Skye Macintyre and George McGregor, and proudly sponsored by Approov, the leaders in mobile app attestation and API security, this podcast unpacks the evolving threats and innovative solutions shaping mobile security.Explore why the built-in protections from tech giants like Apple, Google, and Huawei often fall short, leaving sensitive data vulnerable. Learn how advanced techniques—like runtime attestation and dynamic API security—thwart attackers and secure your app ecosystem. Each episode delivers insights into major data breaches, emerging trends, and actionable strategies to fortify your apps and APIs against ever-advancing cyber threats.From development best practices to navigating compliance and regulation, Upwardly Mobile equips mobile developers, security professionals, and tech enthusiasts with the knowledge to safeguard their creations. Stay informed, stay secure, and stay ahead with expert guidance on the future of mobile cybersecurity.Subscribe now on Spotify and Apple Podcasts, and elevate your security game!
Podcast Insights
Content Themes
The podcast covers topics such as mobile app security, API vulnerabilities, compliance with regulations like HIPAA and GDPR, and the implications of tech giants' app store policies. Example episodes include detailed discussions on the risks of mobile spyware like Pegasus, the impact of China’s app distribution regulations, and effective strategies for securing financial apps against data breaches.

Dive into the high-stakes world of mobile app development and API security with Upwardly Mobile, your ultimate guide to defending apps in today’s volatile digital landscape. Hosted by Skye Macintyre and George McGregor, and proudly sponsored by Approov, the gold standard in mobile app attestation and API security. This podcast unpacks the evolving AI enabled threats and innovative solutions shaping mobile cybersecurity. Explore why built-in protection from Apple, Google, Samsung and Huawei often fall short, leaving sensitive data vulnerable. Learn how advanced techniques—like runtime attestation and dynamic API security—thwart attackers and secure your app ecosystem. Each episode delivers insights into major data breaches, emerging trends, and actionable strategies to fortify your apps and APIs against ever-advancing cyber threats. From development best practices to navigating compliance and regulation, Upwardly Mobile equips iOS, Android and HarmonyOS mobile developers, security professionals, and tech enthusiasts with the knowledge to safeguard their creations. Stay informed, stay secure, and stay ahead with expert guidance on the future of mobile cybersecurity. Subscribe now on Spotify and Apple Podcasts, and elevate your security game!
Google’s Legal Gauntlet: Antitrust Battles and the Future of the App Ecosystem
This week on Upwardly Mobile, we dissect the flurry of major legal decisions facing Google in September 2025, from its desperate plea to the Supreme Court to halt the Epic Games injunction to the final ruling in the federal search monopoly case. We explore the massive shifts coming to the Android app ecosystem and Google’s mandated business practice changes. Episode Notes September 2025: A Critical Month for Google’s Antitrust Defense Google is challenging two massive antitrust rulings simultaneously, initiating what the sources describe as its “last hope” to maintain control over core business functions. Part 1: The Epic Games Showdown at the Supreme Court Google has asked the U.S. Supreme Court to intervene and pause the injunction it received following a major legal loss to Epic Games in October 2024. The company is seeking a decision on the stay by October 17, just days before the injunction is scheduled to take effect around October 20 or 22. The injunction, upheld by the Ninth Circuit Court of Appeals, requires Google to make several fundamental changes to the Google Play Store and the Android app ecosystem:
- Open the Play Store: Google must allow users to download and use third-party app stores for a period of three years.
- External Billing: Google is no longer allowed to force developers to use its billing system; developers must be allowed to include external links in apps, enabling users to bypass Google’s billing system.
- End Pre-Install Deals: Google can no longer make deals around pre-installing the Play Store on phones.
Google argues that this “unprecedented antitrust injunction” will “[create] enormous security and safety risks” by allowing the proliferation of stores that stock “malicious, deceptive or pirated content”. Furthermore, Google claims the injunction burdens developers with constantly monitoring numerous stores and makes it substantially easier for developers to avoid compensating Google for services. Epic Games strongly disagrees, stating that Google continues to rely on “flawed security claims” rejected by the jury and the Ninth Circuit. Epic maintains that the injunction should go into effect so consumers and developers can benefit from competition, choices, and lower prices. Part 2: The Search Monopoly Ruling In a separate, long-running federal monopoly case, U.S. District Judge Amit Mehta ruled on remedies following his earlier decision that Google had acted illegally to maintain a monopoly in internet search. Key aspects of Judge Mehta’s September 2025 ruling include:
- No Divestiture of Chrome/Android: The judge denied the Department of Justice’s proposal to force Google to sell its Chrome browser or divest the Android operating system, ruling that the government had “overreached”.
- End Exclusive Deals: Google is no longer permitted to strike exclusive deals around the distribution of search, Google Assistant, Gemini, or Chrome. For example, Google cannot require device makers to pre-load its apps in order to gain access to the Play Store.
- Data Sharing: Google must share some of its search data with competitors going forward to narrow the “scale gap” created by exclusive distribution agreements. (Google is not required to share data related to its ads).
Google called the decision “largely a win” but expressed concerns about the requirements to share Search data and the new limits imposed on how Google distributes its services.
As discussions around third-party app stores and sideloading intensify due to the Epic v. Google injunction, the need for robust mobile app security is paramount. Approov provides essential security solutions for developers navigating these new challenges. Approov offers mobile app attestation solutions that allow developers to safely distribute mobile apps through third-party app stores by significantly mitigating the primary risks associated with sideloading, such as malware, app tampering, and fraudulent API use. Approov verifies both the integrity of the app and the device environment, ensuring that only genuine, unmodified app instances—regardless of installation source—can communicate with backend APIs. Approov’s system works across Android, iOS, and HarmonyOS. Learn how Approov secures your APIs and mobile apps against evolving threats related to sideloading and third-party distribution: [approov.io] Relevant Links (Source Material)
- Epic Games Lawsuit: Coverage regarding Google’s request for a Supreme Court stay and the opening of the Play Store (as reported by Engadget, Thurrott.com, The Verge, and Reuters).
- DOJ Monopoly Case: Reporting on Judge Amit Mehta’s final ruling, which denied the divestiture of Chrome but mandated changes to Google’s search distribution and data sharing practices (as reported by Engadget).
- Security Solutions: Information on mobile app attestation and security best practices for apps distributed through third-party channels.
Keywords: Google Supreme Court, Epic Games, Antitrust, Google Play Store, Android Ecosystem, Third-Party App Stores, App Store Security, Chrome Monopoly, Judge Amit Mehta, DOJ Lawsuit, App Distribution, Mobile App Attestation, Approov, Digital Marketplace, Competition Law.

Disclaimer
This podcast’s information is provided for general reference and was obtained from publicly accessible sources. The Podcast Collaborative neither produces nor verifies the content, accuracy, or suitability of this podcast. Views and opinions belong solely to the podcast creators and guests.
For a complete disclaimer, please see our Full Disclaimer on the archive page. The Podcast Collaborative bears no responsibility for the podcast’s themes, language, or overall content. Listener discretion is advised. Read our Terms of Use and Privacy Policy for more details.