Lookout today announced the launch of the Lookout Mobile Software Exposure Center (MSEC). Delivered as a core integrated capability within the Lookout Mobile Endpoint Security (MES) platform, this new solution allows organizations to continuously identify, assess, prioritize, and manage software exposure risk across their mobile environments.
The market availability of frontier AI models, such as Anthropic’s Claude Fable 5 and Mythos 5, marks a critical inflection point for cybersecurity. AI has rewritten the economics of offensive cyber operations by compressing exploit discovery and vulnerability analysis from months of specialized human research into hours at minimal cost. Security experts anticipate an imminent “Zero-Day Flash Flood” where automated, offensive AI tools target unexamined code.
While enterprise security tools exist to handle software vulnerabilities, they are built for traditional desktop and cloud environments. They completely overlook modern mobile applications, which are assembled as a complex patchwork of open-source libraries, embedded SDKs, and third-party APIs. This creates a critical software exposure gap that legacy cybersecurity tools and Mobile Device Management (MDM) platforms cannot inspect, leaving security teams operating in the dark.
Legacy mobile defenses that only scan for basic malicious apps are entirely obsolete when faced with autonomous AI systems capable of constructing zero-day exploit paths inside legitimate software. This reality is illustrated by Lookout Threat Labs’ discovery of DarkSword, a sophisticated full-chain iOS exploitation framework that targets vulnerabilities hidden deep within legitimate apps that employees use ever day. In this high-velocity environment, relying on “free” alternative operating system utilities or generic software that does not see mobile threats is entirely meaningless.
By analyzing Android and iOS application binaries directly, the Lookout Mobile Software Exposure Center operationalizes exposure management at machine speed:
- Binary SBOM Extraction: Extracts a versioned Software Bill of Materials (SBOM) directly from application binaries using advanced binary fingerprinting, giving full visibility into the software supply chain without requiring access to source code.
- Continuous Vulnerability Correlation: Maps extracted SBOM components against CVE databases, threat intelligence feeds, and historical exploit activity to identify vulnerable libraries and outdated SDKs.
- Vectorized SBOM Explorer: Transforms static inventories into a searchable format, allowing security teams to query the fleet instantly to identify exactly which apps contain specific vulnerable components.
- Abandonware & Hygiene Scoring: Automatically flags applications and SDKs no longer actively maintained and calculates an Application Security Hygiene Score driven by the publisher’s Mean Time to Patch (MTTP).
- Active Enforcement Workflows: Integrates directly into existing MDM and Unified Endpoint Management (UEM) workflows to automatically enforce risk policies or restrict high-risk applications at machine speed.
Lookout is uniquely positioned to address this crisis because the company is mobile-native and has been the first place enterprises turn to solve the mobile security problem for more than 15 years. This new platform capability is powered by an AI-driven mobile threat defense framework built on more than a decade of specialized expertise, protecting over 235 million devices and analyzing over 400 million applications globally. No other vendor sees more of the global mobile ecosystem or possesses the specialized telemetry required to solve this problem.
For existing Lookout customers, these capabilities will be delivered natively within the Lookout MES platform. Current deployments will gain immediate access to automated binary analysis, exposure scoring, and active enforcement workflows using the same unified console and agent footprint already deployed across their enterprise fleets.
This launch directly complements Lookout’s AI Visibility and Governance solution announced in April of this year. While AI Visibility and Governance is focused on securing outward-facing interactions and mitigating user data leakage, the Mobile Software Exposure Center focuses on securing the inbound software supply chain running on the device.
Together, these solutions deliver a complete, closed-loop framework for modern mobile enterprise security, empowering organizations to safely adopt AI tools while ensuring the underlying mobile ecosystem is fundamentally secure against automated, AI-accelerated threats.
Availability
The Lookout Mobile Software Exposure Center capability will be generally available to all new and existing Lookout Mobile Endpoint Security (MES) platform customers starting later this year.
Lookout Unveils Social Engineering Protection
Posted in Commentary with tags Lookout on September 23, 2026 by itnerdLookout, Inc. today announced the launch of Lookout Social Engineering Protection (SEP). Integrated directly into the Lookout Mobile AI Security Platform, the new module delivers automated, real-time protection against the next generation of AI-driven mobile threats, including synthetic voice cloning, deepfake vishing, executive impersonation, and linkless smishing attacks.
Frontier AI is transforming social engineering by enabling attackers to create highly convincing deception with unprecedented realism, personalization, and scale. Advanced AI models can craft context-aware messages tailored to individual employees, while advanced voice cloning and deepfake technologies can convincingly impersonate executives, colleagues, and IT support. These capabilities make it increasingly difficult for employees to distinguish legitimate communications from malicious ones. As critical business interactions increasingly move to SMS, voice calls, WhatsApp, and other mobile channels, mobile has become a primary attack surface for AI-powered deception.
Legacy defenses were not designed for this new generation of AI-powered deception. Email security largely protects a single channel and often relies on detecting malicious links, attachments, and known indicators, while Security Awareness Training depends on employees recognizing increasingly sophisticated attacks themselves. Neither approach can keep pace with highly personalized, convincing attacks that span SMS, voice, and messaging applications. This new threat demands a more sophisticated approach—one that can continuously analyze the intent, context, and authenticity of mobile interactions in real time. Lookout Social Engineering Protection delivers that protection across mobile channels.
Omnichannel Defense Against Mobile Deception
Lookout Social Engineering Protection delivers AI-powered, multi-channel defense across text and voice communications:
Addressing the Mobile AI Risk Triangle
With the launch of Social Engineering Protection, Lookout introduces the third core pillar of its Mobile AI Security Platform, delivering continuous protection across three critical areas of mobile risk: AI usage and data exposure, mobile software vulnerabilities, and AI-powered human manipulation.
Availability
Lookout Social Engineering Protection is available as a native add-on module for the Lookout Mobile AI Security Platform. Existing customers can activate SEP capabilities directly in their unified admin console, without additional agents or infrastructure.
Leave a comment »