Subho Halder

Subho Halder.

Co-founder and former CEO of Appknox (12 years). Now heads-down on something new in AI x Security.

About

Subho Halder

Mobile and application security since 2012. Started on the offensive side: kernel work, runtime evasion, RASP bypasses. Wrote AFE, Devknox, and KnoxSpy. Credited in CVE-2013-0926, a WebKit sandbox escape on iOS and Android. Hall of Fame credits at Google, Apple, Facebook, and Microsoft. BlackHat since 2012: speaker, trainer, Arsenal. Other talks at DEFCON, BSidesSF, OWASP AppSec, RSA, SyScan, Nullcon, and others. Recent on arXiv: SecLens, a multi-stakeholder framework for evaluating LLMs at security vulnerability detection.

Was CTO at the start, then CEO from late 2024. Doubled the business during the CEO stint. Started on the next problem in early 2026: making AI usable inside security teams without making security worse.

Experience

2026 — NOW
Founder
Stealth — AI x Security
CURRENT
2014 — 2026
Co-founder & CEO
Appknox — Mobile application security

Selected work

SecLens

Multi-stakeholder evaluation framework for LLM-based security vulnerability detection. Five role-specific weight profiles, 35 dimensions, 12 frontier models tested.
Python · LLM eval
arxiv.org

pyaxmlparser

Pure-Python parser for Android XML files. Extracts package metadata without pulling in androguard.
Python · Android
github.com

androguard

Reverse engineering and pentesting framework for Android applications. Core contributor since 2015.
Python · Android
github.com
see all projects →

Writing

APR 23, 2026

AI Authorship Question

An 800-line open-source scanner for how much of your code an AI wrote, and how much of it you shipped without reading.
all posts → subho007.substack.com →

Talks & media

2026
Why Traditional App Security Fails in the Age of AI
Eye on AI Podcast
2025
Breaking the Tunnel: Real-Time API Interception in MDM-Locked Mobile Apps with KnoxSpy
BlackHat EU Arsenal
all talks →

Right now

apr 19, 2026 r/ClaudeAI · comment
apr 19, 2026 r/ClaudeAI · comment
apr 19, 2026 r/ClaudeAI · comment
full now page →

Contact