FINDING · EVALUATION

The study finds that apps distributed via Iranian third-party iOS stores frequently contain embedded third-party tracking SDKs and piracy libraries inserted during repackaging, and that cracked/modified binaries have stripped or replaced code-signing certificates with enterprise distribution certificates. The paper quantifies developer revenue loss from piracy and documents that the repackaging process introduces both surveillance and integrity risks that users are generally unaware of.

From 2026-khanlari-iranian-ios-storesTaking a Bite Out of the Forbidden Fruit: Characterizing Third-Party Iranian iOS App Stores · §5, §6 · 2026 · arXiv preprint

Implications

Tags

censors
ir
techniques
ip-blocking

Extracted by claude-sonnet-4-6 — review before relying.