What does the zero-trust security model look like when it’s applied to online fraud and abuse? In this post, I’ll delve into how concepts from zero-trust can be used to fight fraud and abuse with higher accuracy and less user frustration.
As the availability of unique IPs and user agents wanes and cookie reliability remains half-baked at best, device fingerprinting has emerged as a serious contender in the battle against online fraud and abuse.
Learn about two layers in user and account defense, and how deploying Castle gives you a single solution that improves security and reduces user friction.
Does reducing friction help a business grow? Can security teams take friction away from users and make authentication seamless? “High-grade security” coupled with “low to no friction” is the future of successful online engagement between companies and their users. This post explores those topics.
This post covers strategies for adding Castle's layer of bot detection and ATO prevention to your OIDC authentication flow, getting the best of both worlds. This is relevant for apps using an external identity provider, like Okta, Auth0, Amazon Cognito, Google, or Facebook.
Whether it's human intuition or machine learning, how do we go about discovering key insights when flooded with data? This post introduces some fundamental techniques of AI & machine learning to non-data scientists.
In this post, we'll take a look at three types of bot-generated mouse interactions and we'll discuss how these can be automatically detected. See if you can pick out the bot mouse movements from the human ones!
Learn about essential aspects of GDPR, and how security vendors like Castle can provide tools that actually make it easier for app developers to adhere to fundamental GDPR regulations.