Report by Zimperium

zLabs Mobile Shopping Report

4 FINDINGSPublished Nov 13, 2025
View Original Report →

Key Findings

Around 19% of Android shopping apps expose at least one unprotected exported Service, potentially leading to data leakage.

Android shopping app

Approximately 24% of analyzed Android shopping apps can retrieve Java classes or DEX files from remote locations.

Android shopping app

Roughly 29% of reviewed iOS shopping apps access user data without declaring it in their App Store Privacy Overview.

iOS shopping appData exposureApp StoreApp Store Privacy Overview

During the 2024 shopping season, there was a 4x increase in mishing sites compared to monthly averages.

Mishing