Assessing Security Vulnerabilities in Sri Lankan Banking Mobile Applications: Challenges and Solutions

dc.contributor.authorRavichandran, L.
dc.contributor.authorPiyumantha, K.
dc.contributor.authorWickramasinghe, W. S.
dc.contributor.authorWeerasinghe, M.
dc.contributor.authorSenanayake, J.
dc.date.accessioned2025-11-18T07:22:37Z
dc.date.issued2025
dc.description.abstractMobile banking plays a crucial role in Sri Lanka's financial sector, offering convenience through self-service technologies. Despite its rapid adoption, concerns about security continue to affect customer trust, underscoring the critical need for enhanced protections and user experience. This study examines the security vulnerabilities present in mobile banking applications in Sri Lanka, evaluating their compliance with established security standards and the effectiveness of their security measures. Utilizing a quantitative methodology, the research employed the Mobile Security Framework (MobSF) to conduct static analysis on 17 mobile banking and digital wallet applications, selected to comprehensively represent nearly all mobile banking apps available in Sri Lanka. The findings reveal significant security flaws, including weak encryption methods, insecure data storage practices, and the absence of runtime integrity checks, resulting in widespread deviation from best practices. Most applications were classified as medium risk due to notable vulnerabilities. The research underscores the need for enhanced security protocols to safeguard user data, uphold customer trust, and ensure compliance with regulatory standards. It also identifies key areas for future research, including the integration of dynamic analysis, implementing real-time threat monitoring, and improving user awareness to mitigate risks and enhance the security landscape of mobile banking in Sri Lanka.
dc.identifier.citationRavichandran, L., Piyumantha, K., Wickramasinghe, W. S., Weerasinghe, M., & Senanayake, J. (2025). Assessing security vulnerabilities in Sri Lankan banking mobile applications: challenges and solutions. International Research Conference on Smart Computing and Systems Engineering (SCSE 2025). Department of Industrial Management, Faculty of Science, University of Kelaniya, Sri Lanka. (P. 106).
dc.identifier.urihttp://repository.kln.ac.lk/handle/123456789/30428
dc.publisherDepartment of Industrial Management, Faculty of Science, University of Kelaniya, Sri Lanka.
dc.subjectAndroid Security Vulnerabilities
dc.subjectData Protection
dc.subjectEncryption Practices
dc.subjectMobile Banking
dc.subjectMobile Security Framework
dc.titleAssessing Security Vulnerabilities in Sri Lankan Banking Mobile Applications: Challenges and Solutions
dc.typeArticle

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
SCSE Abstract Proceedings 2025-130.pdf
Size:
10.22 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: