Case Study

Leading Mobile Gaming Company Blocks Account Takeover Attacks and Fake Accounts

Company

The company’s portfolio includes products for sports betting, casino, daily fantasy sports and horse racing and serves more than 12 million customers in the U.S.

“We seamlessly integrated HUMAN at our platform edge [AWS CloudFront] to ensure maximum protection against automated bot attacks, but also to minimize latency”

– Senior Director, Architecture

Challenge

The customer experienced unprecedented growth in 2018 following a US Supreme Court ruling that allowed wagers on professional sporting events in the US. As the company’s popularity and product portfolio grew, it became a large target for account takeover (ATO) attacks and experienced up to 10 million malicious login attempts per day. Although they originally explored a homegrown bot management tool, but ultimately pivoted to consider vendor offerings instead.

Solution

The company deployed HUMAN Sightline Cyberfraud Defense, a full-lifecycle solution to defend against sophisticated bot and human-driven attacks. Comprehensive protection exists across the customer journey, from account creation to login to transaction, blocking threats including credential stuffing, fake account creation, scraping, and promotion abuse.
HUMAN Sightline’s multi-layered architecture enables the company to stop account takeovers that drain user funds and credits, block fake accounts from exploiting signup bonuses, and detect anomalous behaviors at every step of the customer experience.

Learn More

  • Accurate bot protection based on behavioral analytics, advanced machine learning techniques and predictive models that blocks a wide range of automated attacks.
  • Custom parameters allowed the organization to store specific data points, which was a key differentiator for the company.
  • Seamless integration with AWS CloudFront allowed alignment with HUMAN via an edge Lambda function, preserving page load performance and ensuring low latency.
  • Improved efficiency and optimized the use of the company’s internal security resources and infrastructure costs.
  • Helpful customer support available 24/7/365 via Slack, email or phone.

The gaming company was also impressed with HUMAN’s innovative product portfolio. They were particularly interested in our ability to flag and stop logins with compromised credentials in real time. Part of Account Takeover Defense, this capability proactively mitigates credential stuffing attacks and allows the organization to get ahead of account fraud.

RESULTS

  • Enabled full-lifecycle fraud protection to stop cyber threats at every stage, minimizing promotion abuse and ATO risk

  • Reduced fraud bias by 67%, improving transaction legitimacy and profitability

  • Maintained security and uptime during key events such as the Super Bowl, Triple Crown Racing, and multiple professional and collegiate sporting seasons

Connect with Us

to Learn More How HUMAN Can Mitigate ATO and Credential Stuffing Attacks for You