MobSF Scanner

“Mobsfscan Scan” has been merged into the “MobSF Scan” parser. The “Mobsfscan Scan” scan_type has been retained to keep deduplication working for existing Tests, but users are encouraged to move to the “MobSF Scan” scan_type.

Export a JSON file using the API, api/v1/report_json and import it to Defectdojo or import a JSON report from https://github.com/MobSF/mobsfscan

Sample Scan Data

Sample MobSF Scanner scans can be found here.

Default Deduplication Hashcode Fields

By default, DefectDojo identifies duplicate Findings using these hashcode fields:

  • title
  • description
  • severity