Defend against hooking and instrumentation

Frida, debuggers and hooking frameworks intercept and alter your app at runtime. Appsolid's RASP detects them and exits cleanly — and the startup anti-Frida/anti-debug checks are entangled into the decryption key, so they can't be patched out.

RASP defenses included

Startup anti-Frida & anti-debug

Raw-syscall /proc inspection detects debuggers and Frida, and the result is mixed into the decryption key. Under hooking the key is wrong and code never loads into memory.

Continuous instrumentation watcher

Periodically re-checks for Frida/debugger attach after launch and exits cleanly on detection.

Hooking-framework & inline-hook detection

Detects in-process hooking injectors (Xposed, LSPosed, Riru, Zygisk, Substrate) and inline (trampoline) hooks (arm64).

Timing-based debugger detection

Detects single-step/breakpoint tracing via execution-timing anomalies.

Honest scope: RASP is opt-in and stability-first. Every check inspects only its own process, with fallbacks so legitimate devices never crash from false positives — verified on 100+ real devices.