DocuSign Addresses Significant Cyber Security Challenges in Mobile Space

Modern cyber security organizations face significant challenges in the mobile space. Companies like DocuSign use mobile as a competitive advantage and offer a feature-rich user experience. However, its challenge is ensuring external forces external aren’t exploiting DocuSign’s mobile users.

A common misconception is that the mobile application ecosystem is controlled by a small number of well-known tech giants like Google and Apple. However, more than 150 global mobile app stores have well-stocked inventories, totaling more than 10 million mobile apps and counting.

Due to the diversity and global nature of the mobile app ecosystem, regulations are impossible to enforce. Unfortunately, a common practice is for unauthorized third parties to copy and re-insert branded mobile apps into one or many stores with impunity.

Rogue developers also create apps designed to look, feel and act like a brand. The end goal is to use the brand’s value and reputation to attract more users.

In all this mess lurks the cyber thieves whom leverage the same methods mentioned above. Since all mobile apps come pre-configured with data capturing permissions, cyber thieves don’t even need to use malware in most cases to access the desired data.

Users are trained to accept permissions as a prerequisite for downloading mobile apps. Very few would question why a flashlight app is asking for access to their contacts, camera, calendar, accounts, etc.

As a Digital Transaction Management (DTM) platform, DocuSign takes cyber security of its customers, company and employees very seriously. RiskIQ plays a critical role in ensuring DocuSign’s ability to maintain the integrity of its platform, including mobile apps:

“Vendors like RiskIQ are critical to any fast growing and dynamic company. We look to scalable automation to help manage our digital footprint and integrity of our online presence. RiskIQ allows us to continue our rapid worldwide growth while helping to ensure a trusted global network for our customers to transact business,” said Vanessa Pegueros, Chief Information Security Officer for DocuSign.

DocuSign turned to RiskIQ because of the convenience of our SaaS based system and our technology. RiskIQ’s solution for digital footprint security discovers, inventories and monitors all apps associated with DocuSign to detect potential cyber security threats. This allows DocuSign to proactively mitigate risk and enforce their cyber security policies.

Many brands underestimate how many potentially harmful apps have already been created in their name and don’t monitor the bulk of the ecosystem for potential cyber threats. These cyber threats come in the form of mobile apps that look, feel and act like they’re legitimate, easily fooling customers or employees. For detailed information on your organization, please request to be contacted: https://www.riskiq.com/contact or reach out directly via social media @riskiq.

Peter Zavlaris

Published by
Peter Zavlaris

Recent Posts

  • Labs
  • Magecart

MakeFrame: Magecart Group 7’s Latest Skimmer Has Claimed 19 Victim Sites

At RiskIQ, we track many different Magecart groups. We continually observe evolutions in the techniques they employ to skim card…

April 2, 2020
  • Analyst

Discover | COVID-19 Daily Update

At the request of our customers, March 9th, RiskIQ's team of trained intelligence analysts began compiling disparate data and intelligence…

April 1, 2020
  • Analyst

Investigate | COVID-19 Cybercrime Daily Update

At the request of our customers, March 9th, RiskIQ's team of trained intelligence analysts began compiling disparate data and intelligence…

April 1, 2020
  • External Threat Management

A Security Checklist in the Age of COVID-19 and the Remote Workforce

For the past ten years, RiskIQ has been crawling and passive-sensing the internet to help security teams prepare for a…

March 26, 2020
  • External Threat Management

Discovering Unknowns and Investigating Threats Amid a Global Pandemic

The COVID-19 pandemic is making life unrecognizable for most of us and has presented a host of new, unique challenges…

March 18, 2020
  • Labs
  • Magecart

Magecart Group 8 Blends into NutriBullet.com Adding To Their Growing List of Victims

On Thursday, February 20th, around 3 pm GMT, criminals RiskIQ identifies as Magecart Group 8 placed a JavaScript skimmer on…

March 18, 2020