About
Hi, I’m Joan Calabrés — a reverse engineer and security researcher specializing in mobile platforms.
My work sits at the intersection of mobile fraud research, image injection attacks, and malware analysis on Android and iOS. I reverse engineer threats to understand how they actually work, research and build tooling to detect and prevent them, and dig deep into platform internals when the situation calls for it.
Day-to-day that means tearing apart apps, tracing runtime behavior with Frida, grinding through disassembly in Ghidra and JADX, and figuring out how fraud techniques operate under the hood so proper defenses can be built. On occasion I also dabble in exploit development.
This blog documents the techniques, findings, and tools I find worth writing about. If something here saves you time or gives you a new angle on a problem, that’s the point.
You can find my work and projects on GitHub or connect on LinkedIn.