telesign impermium webinar deck-121312

29
TeleSign In Partnership with Impermium Presents: Live Webinar: Stop Social Spam

Upload: dean-nicolls

Post on 13-May-2015

145 views

Category:

Documents


8 download

DESCRIPTION

Impermium has teamed with TeleSign to bring best-of-class telephone-based validation to the site integrity process. With TeleSign, suspicious customers are routed through a simple, user-friendly verification process, ensuring legitimate users move through while fraudsters and criminals stay out. In conjunction with the Impermium real-time threat detection capabilities and global threat network, site owners can control how tightly to lock down their site, balancing a great experience for trustworthy users with an impenetrable one for the bad guys. The combined solution allows administrators to rest assured that transactions such as registration, commenting, and login are safe and secure, with a minimum of inconvenience to users and the business.

TRANSCRIPT

Page 1: Telesign impermium webinar deck-121312

TeleSignIn Partnership with Impermium

Presents:

Live Webinar:Stop Social Spam

Page 2: Telesign impermium webinar deck-121312

WHAT WE DO ‣ Two-Factor Authentication‣ Phone-based Verification

(SMS/ Voice)‣ Intelligent Data (Phone type,

Device status, etc.

ABOUT US: TeleSign is the global leader in Intelligent Authentication providing actionable data to secure online transactions, reduce fraud, and improve the end-user experience.

Forrest HobbsVice President TeleSign

Page 3: Telesign impermium webinar deck-121312

ABOUT US: Impermium provides robust security for web sites and social networks, leveraging user reputation to defend against social spam, account compromise, transaction fraud, and abuse.

WHAT WE DO ‣ Real-time threat analysis‣ Behavioral anomaly detection‣ Social user reputation‣ Malicious content protection

Mark RisherCEOImpermium

Page 4: Telesign impermium webinar deck-121312

Dear Sir or Madam:

I bid you to happiness to yourself

and to your own family in this day.

It is my ESTEEMED PLEASURE to be

presenting to you the sum total of

$1.000,40,000 UNITED STATES DOLLARS

(USD) from His Royal High Holiness,

the Esteemed Minister of Treasury

for the Oil Ministry of our country…

Page 5: Telesign impermium webinar deck-121312

5

2005 2006 2007 2008 2009 2010 2011

Social Media has Eclipsed Email(for good users and bad)

Social media

email

Page 6: Telesign impermium webinar deck-121312

Agenda

6

Anatomy of the Attacks

Risks and Impact

Three-Step Approach to Mitigation

Page 7: Telesign impermium webinar deck-121312

Wherever the Eyeballs Are

7

Blog posts

Chat Messages

Reviews & listings

Discussion forum threads

Message board posts

Direct Messages

Comments

URL & link submissions

Fraudulent user signups

Page 8: Telesign impermium webinar deck-121312

Varieties of Social Spam

8

Malicious Content

Policy Abuse

Commercial Content

Page 9: Telesign impermium webinar deck-121312

Malware Placement Aids Propagation

9

Page 10: Telesign impermium webinar deck-121312

Novel Sites & Links are Commonplace

10

Page 11: Telesign impermium webinar deck-121312

Acct. Compromise: Reputation Hijacking

11

Page 12: Telesign impermium webinar deck-121312

Acct. Compromise: Reputation Hijacking

12

Page 13: Telesign impermium webinar deck-121312

Social much more “viral” than email

250:113

Page 14: Telesign impermium webinar deck-121312

Fraudsters Walk in the Front Door

14

Page 15: Telesign impermium webinar deck-121312

Bulk Accounts on the Open Market

15

Page 16: Telesign impermium webinar deck-121312

Malicious Content Repels Good Users

16

$#*!&!

Icons copyright © http://deleket.deviantart.com

• Engagement• Loyalty• Pageviews• Brand Reputation

Page 17: Telesign impermium webinar deck-121312

Indirect Effects Compounded

17

Lost Advertising Revenue

PageRank and SEO

Manual Review Costs

Unreliable Site Metrics

Page 18: Telesign impermium webinar deck-121312

3-Step Approach

Block Bogus Accounts

Stop Spam & Malicious Content

Prevent Account Hijacking

Page 19: Telesign impermium webinar deck-121312

Block Bogus Accounts

Telephone Verification

RegistrationCapture phone number

AnalysisPhone TypeDevice/Subs StatusPast behavior

Accept

Deny

Flag

Phone VerifyEnsure phone number is valid & reachable

Account Creation

Reject Registration

Page 20: Telesign impermium webinar deck-121312

Certain phone types are more likely to be associated with online fraud and considered higher risk.

Importance of Phone Type

Page 21: Telesign impermium webinar deck-121312

TeleSign Verify is a quick and simple way to prevent online fraud and social spam by identifying legitimate users using their phone

User enters phone number on website and clicks “submit”

User receives verification code on cell phone or landline

User logs in by entering the verification code onto the website

How Verification Works

Page 22: Telesign impermium webinar deck-121312

Stop Spam & Malicious Content

• Active Moderation• Trained staff reviews/approves content• Scale & consistency challenges

• Community Feedback• Cost-effective• Punishes most loyal users• Trailing indicator

• Invitation-Only• Reduces engagement• Anti-Social

• Individual Banning• Whack-a-mole

22

Page 23: Telesign impermium webinar deck-121312

Stop Spam & Malicious Content

Content analysis

23

Behavioral anomaly detection

Continuous user reputation

Page 24: Telesign impermium webinar deck-121312

Stop Spam & Malicious Content

‣ Bullying, insults and threats

‣ Suspicious signups‣ Repeat offenders‣ Malicious content‣ Signs of account

compromise

‣ High-risk phone type‣ Name/address tied to

account‣ Device or subscriber

status‣ Phone risk score

Use these in conjunction to keep your house clean:

Phone Verify User

Allow

Flag

Deny

Activity Phone Signals

Page 25: Telesign impermium webinar deck-121312

Stop Spam & Malicious Content

Impermium Human Moderation

Time to process 19 seconds 2-3 days

Accuracy 99.5% 95%

False Positives 4 79

10,000 Comments

Page 26: Telesign impermium webinar deck-121312

Protect legitimate account owners from account takeover with two-factor authentication in the following scenarios:

Prevent Account Hijacking

Key changes to account information

Unrecognized device or IP address

Unusual activity

Page 27: Telesign impermium webinar deck-121312

Telephone Verification

Risk-Based Authentication Two-factor auth. Account changes Password resets

Accept Change

Reject Change

Phone VerifyUse 2FA to ensure that account changes are legitimate

Prevent Account Hijacking

Page 28: Telesign impermium webinar deck-121312

SPECIAL REPORT Complete our post-webinar survey and we’ll send you a copy of our report.

SPECIAL OFFER:Sign up by 12/31/12 and get 50% off your first THREE MONTHS of service.*

Special Webinar Offers

* Limitations apply.

TAKE 50% OFFyour first 3 months of services

Page 29: Telesign impermium webinar deck-121312

Thank you.

Have questions?

Email us at

[email protected]