HUMAN’s product teams are always developing new detection capabilities to neutralize advanced attacks. In this blog we offer a roundup of recent releases as well as a high-level overview of one of our sophisticated detection techniques and how it identifies fake traffic in the real world.
Catching Bots with Mouse Behavioral Models
Analyzing mouse movement and behavior is a key detection capability of HUMAN’s platform. Mouse behavior models are adept at detecting and blocking bot-generated traffic, keeping websites protected from a variety of advanced cyber threats, including residential proxies, web automation tools, and JavaScript-enabled scrapers. Key benefits of using mouse movement and behavior for detection include:
One HUMAN customer experienced an ongoing challenge-solving attack that lasted for multiple days. Without the need for manual intervention, the attack was detected by HUMAN’s mouse movement and behavior model and blocked with a fully automated algorithm.
Their efforts foiled, the attackers attempted to adapt with a new, more sophisticated attack approach. This too was automatically detected and blocked by the same model.
The dotted line on the above graph marks the point at which the attackers shifted technique.
At first, mouse movements were algorithmically generated which can be seen from the extremely smooth and evenly spaced curves. These mouse movements, shown below, are considered too smooth for a human to have made.
When the initial technique failed, the attackers attempted a new movement approach. As you can see in the image below the movements continued to be algorithmically generated and smooth, but this time used increased complexity. This more complex approach was an attempt to overwhelm the defenses with additional noise. Instead, the HUMAN machine learning model identified the continued attack and automatically blocked it.
Below, the bot-based mouse paths register more points and smoothed the curves between the points, but still didn’t approximate human behavior very well:
HUMAN combines more than 2,500 detection techniques to give organizations comprehensive protection from online fraud and abuse. Learn more at https://www.humansecurity.com/platform