Corellium Falcon
Mobile Vulnerability
Research Solutions

Provides government organizations and researchers with the mobile vulnerability research, exploit introspection, and malware analysis not possible on physical iOS and Android devices.

Corellium Falcon

Capabilities

On-Demand Access

Spin-up iOS and Android devices with any OS and model combination, including the latest releases. 1-click iOS jailbreak and built-in powerful research tools provide security and research teams with unprecedented capabilities.

Powerful Introspection

Gain the OS kernel, processes, and subsystem I/O visibility. View logs, filesystems, system calls, and network traffic – all in real-time. Run scripts and use debug tools through our pre-integrated Frida console.

Kernel Debugging

Perform advanced security research and kernel debugging. Control boot and kernel processes, patches, device IDs, trust caches, and device trees. Kernel hooking, program flow, and coverage tracing have never been faster or easier.

Snapshot & Cloning

Easily snapshot and clone devices. Pause and resume firmware and app operations. Save and restore device states to simplify reproducibility, record vulnerabilities, and perform audits. Accelerate cross-team collaboration and verification.

Corellium Falcon

Solutions

Mobile Vulnerability
Research Solutions

Enable never-before-possible security vulnerability research for iOS and Android phones with deep forensics and introspection tools. High accuracy, Arm-native virtual devices enable real vulnerability discovery and exploit validation.

Malware Analysis

Equip global malware and threat research teams with powerful capabilities for iOS and Android, including sandboxed detonation, IoC gathering, threat hunting, and data security analysis.

App Pentesting

Provide research teams with static and dynamic testing tools for pentesting, analysis, and verification. Eliminate cumbersome physical device labs, decentralized devices, and unsecured device shipments to remote personnel.

Operational Training

Deliver effective, hands-on training to develop mobile research and security operations skill sets. Eliminate the need for physical devices – trainers and personnel simply need a browser.

CORELLIUM FALCON

Editions

Falcon Essentials Security Research
Malware & Threat Research
App Pentesting
Falcon Premium Vulnerability Research
Introspection & Reversing
Exploit Analysis & Verification
Team & workspace management
Jailbreak/root any OS
App & file system tools
Frida and Cydia integration
Snapshot & cloning
CoreTrace process tracing
HTTPS Network Monitor
MATRIX test automation
MATRIX AppSec reports
Snapshot Sharing
Advanced Network Monitor
OS kernel and filesystem tools
Run self-signed binaries
Kernel debugging
Kernel patch management
Boot control and modification
Device tree configuration
KASLR configuration
Trust cache modification
OS Beta support
Kernel hooking
Program flow & coverage tracing
MicroSnapshots
IMEI, IMSI, and SN modification
Virtual MMIO
SEP debugging
iBoot/BootROM debugging

Corellium Falcon

Deployments

Onsite Appliances

Corellium server and desktop appliances use the latest Arm processors and are air-gapped for use in high-security environments.

Cloud Services

The Corellium cloud service runs on AWS using the latest Amazon Graviton servers.

Private Servers

Customers can host Corellium servers in their own AWS cloud, or we can host them in our AWS cloud.

Corellium Virtual Hardware Platform

Corellium Falcon is built upon our revolutionary virtual hardware platform. It’s designed to provide your R&D teams with the powerful tooling they need to stay ahead at the cybersecurity battlefront.

We’re here to help you revolutionize your security and development practices with pioneering technology