decline in high-risk activity within 24 hours from the main spike.
KIB Postpay required additional protection around its login journey against suspicious and automated activity while preserving a smooth experience for genuine users.
Could sophisticated automation still reach the application without being detected?
SiARA Shield by CyberSiARA provided behavioural risk analysis at the application layer, helping distinguish legitimate interactions from higher-risk login activity in real time.
During the observed period, high-risk login activity declined rapidly. From the main spike, observed high-risk activity fell by approximately 77% within 24 hours and returned to baseline within 48 hours — while legitimate low-risk activity continued throughout.
decline in high-risk activity within 24 hours from the main spike.
to return to baseline levels after the attack spike.
maintained during the observed period with no unnecessary friction.
behavioural classification at the application layer during login.
KIB Postpay needed to strengthen protection around its login experience against suspicious, automated, or fake login attempts. The aim was to stop malicious activity without disrupting genuine users accessing the service.
Advanced automation can resemble normal user behaviour, making simple request-level checks less reliable. KIB required an additional application-layer signal that could assess behaviour in real time and support proportional security decisions.
As automated threats become more sophisticated, login attempts can appear similar to genuine user interactions. Without application-layer behavioural intelligence, suspicious activity may continue to reach critical authentication flows.
KIB Postpay needed visibility into login risk that could respond proportionally — allowing legitimate users to proceed while challenging or blocking higher-risk interactions when required.
SiARA Shield works close to the protected digital journey, providing risk-based responses proportional to the level of threat.
SiARA Shield analyses login behaviour and device signals in real time, classifying interaction risk at the application layer while keeping the experience smooth for legitimate users.
Login behaviour and device signals are analysed in real time to identify patterns associated with higher-risk activity.
Interaction risk is classified at the application layer, closer to the point of user interaction than edge-only controls.
Legitimate users can proceed with minimal interruption while suspicious interactions are challenged or blocked when required.
Designed to avoid unnecessary user friction or intrusive data collection while supporting proportional security decisions.
Security response is proportional to the level of risk — allowing, verifying, or blocking interactions as appropriate.
From the main spike, observed high-risk login activity fell by approximately 77% within 24 hours and returned to baseline within 48 hours. Legitimate low-risk activity continued during the observed period.
The deployment provided clearer separation between legitimate and suspicious login activity, helping security teams respond to elevated risk without disrupting genuine customers.
Additional behavioural intelligence around a critical customer journey, helping protect the mobile app login experience.
Clearer separation between legitimate and suspicious login activity at the application layer.
Suspicious login activity could be challenged or blocked according to risk, reducing exposure during attack spikes.
Legitimate users could continue without unnecessary friction throughout the observed period.
By adding behavioural intelligence at the login journey, CyberSiARA helped KIB Postpay see activity that may otherwise appear as normal application traffic, while keeping the experience smooth for legitimate users.
The result was stronger login protection with clearer visibility into suspicious activity — without compromising the customer experience.
During the observed period
CyberSiARA helps distinguish legitimate users from sophisticated automated activity, without unnecessary friction.
The KIB Postpay deployment demonstrates how SiARA Shield can strengthen login protection for mobile banking journeys with measurable, rapid results.
SiARA Shield by CyberSiARA adds application-layer behavioural analysis and human verification, helping identify sophisticated automated activity while maintaining a seamless experience for legitimate users.