Efforts to prevent cyber-attacks during Black Friday and Christmas shopping begin now

The growth of e-commerce during high-demand periods, such as Christmas and Black Friday, also leads to an increase in the number of cyberattacks in Brazil. To ensure the stability and security of their e-commerce platforms, many companies are already starting preparations to prevent their customers from facing issues during purchases.

This includes reviewing security loopholes, slowness, and errors that can lead to attacks and frauds and affect both the user experience and the brand’s reputation. A study by PwC reveals that more than half of consumers (55%) would avoid buying from a company after a negative experience, and 8% would give up after a single unfavorable incident. 

“Investing in the quality and security of digital systems not only prevents financial and image losses but also ensures a positive experience for users, strengthening confidence in the brand and promoting success in high-traffic events,” says Wagner Elias, CEO of Conviso, a company specialized in application security (AppSec).

According to the expert, recent cases like the Facebook data breach and the flaws in the Latam/Multiplus system highlight the importance of robust preparation in a time like this, given the increase in security attacks on companies worldwide. According to a report from the Consortium for Information & Software Quality (CISQ) in 2020, the number of system failures increases by about 15% annually. Additionally, Security Magazine revealed that software flaws caused a loss of $2.4 trillion in the United States in 2022 and a $1.52 trillion increase in “technical debt,” referring to rework to fix software deficiencies.

Application Security

The task of protecting e-commerce software is carried out by what is called application security, a market that is expected to grow worldwide, reaching $25 billion in 2029 (Mordor Intelligence).

It consists of having a comprehensive and detailed view of a system’s vulnerabilities and implementing defense mechanisms in advance. “By way of comparison, it works like this: when you park your car, you consider if the location is safe and if there are measures to be taken to protect the vehicle. Likewise, problems are anticipated, and strategies are created to avoid risks,” compares Luiz Henrique Custódio, TechLead at Conviso.

For Custódio, it would be ideal for companies to constantly review their platforms to identify and correct possible security gaps, creating a security culture.

Furthermore, for major events, it is important for companies to invest in robust infrastructure and perform load tests to ensure that their systems can handle access peaks.

Consumers Should Stay Alert

Wagner Elias, CEO of Conviso, emphasizes that caution is essential for both companies and consumers. However, for consumers, this involves following secure practices when browsing and making online transactions. “Always opt for secure payment methods, such as Google Pay, Apple Pay, or credit cards, which offer legal protection in case of issues with the seller.”

It also highlights the importance of keeping smartphone and PC software updated, as criminals often exploit security vulnerabilities in outdated systems. “Avoid downloading apps and software from suspicious sources, and if you need to download from a link, carefully check the information and app reviews.” Elias also warns: “Beware of offers that seem too good to be true; they may hide fraudulent intentions.”

Fraudulent websites often mimic well-known stores to steal personal and financial information. Elias suggests other tips: “Always check if the site’s URL begins with ‘HTTPS’ and displays a padlock icon in the address bar. Fake sites often lack these features. In addition, watch out for grammatical and typing errors, and make sure the site provides clear contact information, such as email, phone, and physical address.”

Other common fraud strategies include phishing scams, where criminals attempt to obtain personal information through fake messages, and fake apps, which often contain malware. “To avoid these problems, only download apps from official stores, such as the App Store and Play Store. Also, be cautious of pop-ups offering fake antivirus downloads, as they can be used to steal sensitive data”, concludes.