You are on page 1of 2

Build38 App Protection Case Study

SuperApp Protection

Ride Hailing companies are under big pressure to show profits. Our client is a
Tech company that provides Mobile Ride hailing services as well as other
SuperApp type services, like Food Delivery. Unfortunately, Fraud is rampant in
this space with drivers using rogue Apps to offer their services and users
unfairly taking advantage of the special offers to sign-up. With Build38 they
have a solution to protect their bottom line while keeping the UX untouched.

The App-centric Problem


The client has two Apps: A Driver App and a User App. Both of them are
critical for their business and offered weaknesses to attackers. A Driver could
purchase a modified version of the App in the black market to fake their GPS
location and get an advantage when getting rides. A user may download
their App many times and register with different email addresses to get
several times a special sign-up offer.

Solution: The Self-Defending App


With Build38, the client was able to stablish a root-of-trust in their App and
gain intelligence with our monitoring service about what was happening in
the phone-end from a security and fraud perspective. That meant that they
were able to see when a Driver was accessing the service through a
fraudulent version of the App or when a user was registering multiple
accounts, even with different email addresses or phone numbers, from the
same device. The result was straightforward: Savings in terms of fraud in the
range of million dollars per year.

Universal Smartphone Support


When you want to be a successful SuperApp, you have a very diverse
customer base. Hence, the solution was required to run on every phone, new
or old, high-end or entry level, and keep the security of the system
uncompromised. The application, its keys and data are protected even if the
device OS is outdated and presents vulnerabilities, or malware is installed.
Fraud prevention by Build38
With Build38 offering the client was able to integrate
several protections to prevent different fraud use-
cases: App Tampering, API misuse, Device Identification
and Account Takeover Protection. In its own, each of
this use-cases is a significant source of fraud for most
service providers that have a mobile App through
which the users access their service. The combination
of in-App protection and AI powered Monitoring and
Analytics, enhanced the Fraud Protection and Threat
management and gives the client key insights on the
App installed base.

Fast & easy integration Proven & Reliable


Always up-to-date
Build38 can easily turn apps into The security of the Build38
Security is an Arms Race. Once
a self-protecting mode by using solution and level of customer
the solution is integrated, Apps
our SDK. Once secured, the app service are proven by third-party
will continuously receive the
is immediately ready for independent labs and global
latest security updates and are
distribution via public apps customers.
continuously monitored
stores. Proudly developed in Germany

Security: Develop in-house or third-party?


The dilemma many companies face when launching a solution or their services
on Mobile is: Should I develop the security mechanisms from scratch or use
third-parties to assist? There are three major reasons to work with Build38.
Time-to-market is of essence, the faster you are in the field, the sooner you
start reaping benefits. Cyber and Mobile Security talent is scarce, we
consolidate the experience of our researchers to offer best in class security,
validated by independent security labs. Lastly, with Build38, the solution will
always implement the latest security measures and offer full visibility in the
security landscape of the user-base, with no additional customer efforts.

Secure your Mobile Business with Build38


We have an extensive experience in securing Mobile Apps in multiple use-
cases. Be it Mobile Car Key, Digital Identity or Mobile Banking services, we are
the right partner with our track record of customers and recognition in the
market.

#buildonBuild38 and start Securing your Mobile Business.

Recognised in the in-App An ICE71 Scale


protection Market Guide Program member Portfolio company

Munich | Barcelona | Singapore

www.build38.com | servus@build38.com | www.linkedin.com/company/build38


20201105-SUPA-CSv1

You might also like