Inside Coruna - Web Script IOS Exploit
Expired Domain Risks: A Real Example from Oracle’s Website
An expired domain reference is all an attacker needs to execute phishing under a trusted origin. This blog looks at an example from Oracle’s code.
How Merchants Can Prevent Chargebacks (tools you need in 2026)
Still have a chargeback stack built for the pre-VAMP era? Here's how leading fraud teams use early dispute blocking to stay ahead of tighter rules in 2026.
Latest Articles
Quick guide to prevent Account Takeover fraud (crypto websites)
Crypto accounts are the most valuable ATO target of any industry. See the best practices, fingerprint signals, and tools Crypto teams use to stop ATO.
How Advanced Location Data Prevents Account Takeover and Detects Unsafe AI-Agent Token Reuse
How advanced location data helps security teams detect impossible travel, stolen-session reuse, and unsafe AI-agent activity before account takeover turns into fraud or data loss.
How Compromised Third-Party Scripts Can Prompt-Inject AI Agents
Third-party scripts already adapt website behavior by browser characteristics. That same flexibility can be abused to detect AI agents and inject misleading instructions or altered content.
Best methods to prevent account takeover fraud (FinTech)
FinTech accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools FinTech teams use to stop ATO.
Best practices to prevent account takeover fraud (eCommerce)
eCommerce accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools eCom companies use to stop ATO.
How to Prevent Account Takeover Fraud | 4 Step Guide for Businesses
MFA helps, but it does not stop account takeover on its own. This guide covers how businesses can prevent ATO early with fingerprinting signals.
Meet cside at RSAC 2026
Meet the cside time at RSAC 2026 in San Francisco. Stop by our booth S-0238 on March 24-26 or grab time with us off the floor.
DarkSword: pure JavaScript exploit chain weaponizes legitimate websites
DarkSword is a full-chain iOS exploit delivered via watering-hole compromises of legitimate websites. It runs entirely in JavaScript, evades binary mitigations, and drops JavaScript-based backdoors that exfiltrate sensitive data.
OpenClaw Scanner for Third-Party Scripts
A free, open-source scanner that inventories third-party scripts, detects fingerprinting, audits security headers and cookies, and flags PCI DSS exposure on payment pages. Run a quick 30-second audit to reveal what code executes in your users' browsers.
AppsFlyer Web SDK supply-chain compromise - polymorphic crypto stealer
A registrar-level DNS hijack of appsflyer.com served a polymorphic crypto-stealing payload through the AppsFlyer Web SDK, affecting thousands of sites and some Node.js server environments. This post summarizes telemetry, forensic indicators, IOCs, detection guidance, and remediation steps.