Black Friday cybersecurity trends

Black Friday cybersecurity trends

With shopping season fast approaching, David Warburton, Director, F5 Labs, assesses the cybersecurity trends that grocery, fashion and e-commerce retailers should be aware of this Black Friday and Cyber Week.

Grocery Prediction: The grocery industry is expected to remain a key target for automation in 2024, particularly in relation to web flows such as login, registration, and add-to-cart pages. Attackers will likely continue to focus on creating fake accounts and exploiting them for high-demand product purchases during Black Friday.

Why: According to F5 Labs analysis, the 2023 trend of consistent automation targeting add-to-cart and login flows indicates persistent interest in the grocery industry. The rise in automation in early November suggests attackers are preparing early for peak shopping periods.

Fashion Prediction: Fashion retailers should prepare for automation targeting search product endpoints early in November, followed by a shift to add-to-cart and gift card flows closer to Black Friday.

Why: Observed patterns from 2023 show attackers leveraging scraping activities during product searches before transitioning to fraudulent gift card and purchase activities. This reflects a well-coordinated strategy to exploit peak sales periods.

eCommerce Prediction: eCommerce platforms will likely face a surge in automation targeting login pages and mobile registration flows, particularly leading up to Black Friday. Spikes in credential stuffing and fake account creation are also anticipated.

Why: Data from 2023 highlights that attackers are shifting focus to login flows, likely due to the lucrative potential for account takeover and reseller bot activity. The spike in mobile automation leading up to Black Friday suggests attackers prepare early for fraud on these platforms.

 

Designing data sovereignty without slowing innovation

Designing data sovereignty without slowing innovation

Sivaprakash V S, Technical Evangelist at ManageEngine, explains that Middle East…
Structured Cloud Vulnerability Management key for businesses

Structured Cloud Vulnerability Management key for businesses

Hussam Sidani, Vice President for the Middle East & North…
Cybersecurity takes center stage in modern surveillance

Cybersecurity takes center stage in modern surveillance

Steven Kenny, Manager, Architect & Engineering (A&E) Program – EMEA at…
NanoClaw Creator Rejects $20M Buyout, Raises $12M Seed

NanoClaw Creator Rejects $20M Buyout, Raises $12M Seed

NanoCo, the startup behind the fast‑rising secure AI agent framework NanoClaw,…
Stream secures $5.2M seed extension led by BECO Capital

Stream secures $5.2M seed extension led by BECO Capital

Stream, the Riyadh-born payments and billing platform, has announced a $5.2 million…
Exaforce Secures $125M Series B to Scale Real‑Time AI Cyber Defense

Exaforce Secures $125M Series B to Scale Real‑Time AI Cyber Defense

Exaforce, a cybersecurity startup focused on real‑time threat detection and autonomous response,…