Articles by Juan Combariza
Comparing Solutions for Account Takeover Prevention | 2026
Anti-fraud suites, fingerprinting tools, and MFA compared by what they cover in the ATO attack chain. Find the right stack for your risk profile.
How to Stop AI Agents From Creating Fake Accounts (Guide)
AI agents create fake accounts using real browsers, residential IPs, and generated identities. Here's the detection signal stack to stop them.
How to Block AI-Agent Based Content Scraping Bots (Guide)
AI content scraping bots use real browsers, residential IPs, and LLM-powered extraction to harvest your pricing and content. Here's how to stop them.
4 Tools To Detect AI Agents On Your Website (Fraud Prevention)
Compare cside, HUMAN Security, DataDome, and Cloudflare for AI agent detection. See how each tool handles fraud prevention, pricing, and implementation.
How to Detect AI Agents on Your Website | Full Guide
This guide covers AI agent detection through identity, network, browser, and behavioral signals. See free methods like server log analysis and specialized tools.
Comparing Tools for PCI DSS 6.4.3 & 11.6.1 | Features, Pricing
Compare PCI DSS 6.4.3 and 11.6.1 compliance tools. Features, pricing, and reviews for cside, Feroot, Cloudflare, and Reflectiz side by side.
Comparing account sharing prevention tools (for businesses)
SaaS companies lose revenue to account sharing every day. See a comparison of features, pricing, and reviews of popular tools used by fraud teams.
How to prevent account sharing fraud (full guide for businesses)
Account sharing costs organizations billions in revenue loss. This guide covers prevention methods like device and session limits, as well as strategic tips.
7 steps to stop account takeover fraud (for Travel businesses)
MFA is bypassed by advanced phishing kits. See the best practices, fingerprint signals, and tools that Travel fraud teams actually use to stop ATO.
Quick guide to prevent Account Takeover fraud (crypto businesses)
Crypto accounts are the most valuable ATO target of any industry. See the best practices, fingerprint signals, and tools Crypto teams use to stop ATO.
Best methods to prevent account takeover fraud (FinTech)
FinTech accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools FinTech teams use to stop ATO.
Best practices to prevent account takeover fraud (eCommerce)
eCommerce accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools eCom companies use to stop ATO.
How to Prevent Account Takeover Fraud | 4 Step Guide for Businesses
MFA helps, but it does not stop account takeover on its own. This guide covers how businesses can prevent ATO early with fingerprinting signals.
Meet cside at RSAC 2026
Meet the cside time at RSAC 2026 in San Francisco. Stop by our booth S-0238 on March 24-26 or grab time with us off the floor.
How to block AI agents on your website | robots.txt is not enough
Robots.txt won’t stop AI agents from abusing your website. Learn how to block headless browser agents and fraudulent agents with different controls.
How to Monitor Cross Border Data Transfer On Your Website | GDPR, CCPA
Your website is likely sending personal data to other countries. Learn how to track cross-border data transfers for GDPR and CCPA requirements.
How to Prevent Website Data Breaches (to avoid GDPR & CCPA fines)
1/3rd of breaches involve third parties. Learn how to prevent GDPR and CCPA violations by securing third-party scripts, APIs, and data flows.
Comparing Tools for GDPR Compliance (the ones you need in 2026)
GDPR compliance does not live in one tool. Fragmentation confuses teams, so we wrote this guide to help you select the right GDPR tools for you.
What is E-skimming | Guide and Prevention Tips
E-skimming steals information from your web visitors before traditional security tools protect them. Learn how web skimming works and how to prevent it.
3 Tips - The fastest way to comply with PCI DSS requirements 6.4.3 & 11.6.1
Most teams overcomplicate PCI DSS 6.4.3 & 11.6.1. See the fastest paths to compliance and why QSAs recommend tools over DIY.
VCDPA: Guide to Requirements + Website Compliance
Get a clear breakdown of Virginia Consumer Data Protection Act rules, enforcement timelines, and how to manage third-party scripts correctly.
Comparing Top Client Side Security Tools (features, reviews, pricing)
This selection guide dives deep into pricing, protection coverage, and more to help you choose a client-side protection tool for your website.
CPA (Colorado Privacy Act): Guide to Requirements + Website Compliance
Get a clear breakdown of Colorado Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.
Top AI Tools For Website Privacy Compliance in 2026 (GDPR, CPRA)
Website privacy compliance is getting harder. Fortunately these AI-powered tools automate the heavy lifting across GDPR, CCPA, and HIPAA.
Does GDPR apply to my U.S. company? (3 step self assessment)
GDPR might apply to your website even if you’re U.S. based. Use this 3 step checklist to see if you're at risk and the potential for financial penalties.
10 common GDPR website compliance failures (and how to prevent them)
Common GDPR website compliance failures, why your team doesn't notice them on your website, and how to prevent unlawful data collection.
GDPR Penalties Explained (most common fines, large cases, and how regulators decide)
Understand GDPR penalties based on the different violation categories. Look at what went wrong to avoid costly fines for your organization.
How to comply with GDPR website requirements (2026 guide)
Regulators don't care about cookie banners. This guide covers what you need to do in 2026 to minimize, document, and secure personal data on your website under GDPR.
NJDPA: Guide to Requirements + Website Compliance
Get a clear breakdown of the New Jersey Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts for compliance.
What is CSS Security? | Preventing Phishing, Clickjacking from CSS Attacks
CSS controls what users see. Attackers exploit that. This article explores CSS-based client-side vulnerabilities and how to protect against them.
Which platform offers the most comprehensive client-side script monitoring?
Technical evaluation of modern client-side security approaches and why layered detections are necessary for comprehensive coverage.
TDPSA: Guide to Requirements + Website Compliance
Get a clear breakdown of Texas Data Privacy and Security Act rules, enforcement timelines, and how to manage third-party scripts correctly.
What is Magecart: Complete Guide and Prevention Strategy
Magecart attacks steal card data in the browser before traditional tools detect them. Learn how Magecart attacks work and entry points used by attackers.
CTDPA: Guide to Requirements + Third-Party Script Compliance
Get a clear breakdown of Connecticut Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.
Expired Domain Risks: A Real Example from Oracle’s Website
An expired domain reference is all an attacker needs to execute phishing under a trusted origin. This blog looks at an example from Oracle’s code.
Shady Plugins in WooCommerce: Security Risks & Protection Tips
Your checkout is only as safe as your plugins. Discover how WooCommerce handles plugin HTML, why that matters, and the steps to stop malicious code.
How Merchants Can Prevent Chargebacks (tools you need in 2026)
Still have a chargeback stack built for the pre-VAMP era? Here's how leading fraud teams use early dispute blocking to stay ahead of tighter rules in 2026.
Device Fingerprinting in CE 3.0 | How to Block More Chargeback Disputes
This is how merchants use device fingerprinting to win more Compelling Evidence cases (VISA), blocking first-party fraud and lowering VAMP ratios.
Chargebacks911 and cside Partner to Fight Chargeback Fraud
We're excited to reveal our partnership with Chargebacks911. Merging CB911’s expertise with cside’s client-side intelligence helps merchants fight friendly fraud and win more chargeback disputes.
Cside Joins AWS Partner Network and ISV Accelerate
Working alongside AWS helps us bring our solution to the cloud environment our customers already rely on. For us, this is a step towards making client-side security widely accessible.
How to comply with PCI 6.4.3 and 11.6.1 | Practical guide for security teams
A practical guide to PCI 6.4.3 for security teams in eCommerce, FinTech, and SaaS. Learn why CSP or Crawlers are not enough to protect your users.