Antonio Nappa

Antonio Nappa

Antonio Nappa is the Application Analysis Team Leader at Zimperium Inc. He has been in the cybersecurity game since 17 years old. He holds a PhD in Software and Systems from the Madrid Institute of Advanced Studies. He has been a visiting scholar at UC Berkeley. His contributions have been published and recognized in international peer-reviewed venues. Since the DEFCON 2008 Finals, he never goes to sleep with a segfault.

The Power of App Vetting: The First Line of Defense Against Enterprise Intruders

Zimperium
6 minutes
Apr 09, 2025
Third-party applications deployed within an enterprise environment can inadvertently act as gateways for attackers if not properly vetted before implementation. These applications, while essential to enterprise operations, pose unique security challenges when their vulnerabilities are overlooked or security assessments are neglected during the procurement and deployment process.
Read Full Post

iOS and the WebP Vulnerability

Threat Research
7 minutes
Oct 07, 2024
In this blog post we will underline the differences and the similarities on how iOS developers reacted to the WebP vulnerability and our observed patching trends of those iOS applications. 
Read Full Post

Patching High Impact Vulnerabilities: A Retrospective on WebP CVE

iOS & Android
8 minutes
May 13, 2024
In this blog, we delve into the multifaceted challenges of updating software safely and efficiently, particularly when high-impact vulnerabilities are at stake.
Read Full Post