Dáša Pawlasová, Matúš Šikyňa, and Tomáš Soukal
January 5, 2024

Fraud-Proofing an Android App: Choosing the Best Device ID for Promo Abuse Prevention

This issue holds particular significance for mobile application owners who frequently contend with users evading payments or exploiting various bonuses.
This issue holds particular significance for mobile application owners who frequently contend with users evading payments or exploiting various bonuses.
You can read more about the concept of RASP (Runtime application self-protection)
here.

You may also like

Cloning and containers: running your app inside someone else's sandbox, and how Talsec detects it
Cloning and containers: running your app inside someone else's sandbox, and how Talsec detects it
Read the full article on our blog.
How Attackers Exploit Play Integrity API and Where AppiCrypt Fits
How Attackers Exploit Play Integrity API and Where AppiCrypt Fits
Play Integrity's real limits: a 10,000-request daily quota, false positives you cannot debug, and seven documented bypasses. Plus where AppiCrypt fits.
Play Integrity Fix: why AppiCrypt is the better attestation anchor
Play Integrity Fix: why AppiCrypt is the better attestation anchor
Play Integrity Fix, the module that makes modified Android devices pass Google's checks: its real scale, its ten-year lineage, and what to anchor on instead.
Read More