Account Takeover Demo 4 - Appear Legitimate - User Registration and Password Resets

One tactic used by hackers to improve the success of account takeover attacks is to exploit UX features on sites. This includes using password reset and registration forms which can be used to try to validate user credentials without raising any suspicion.

Watch the video to see how a single attacker is using a site’s password reset functionality to validate legitimate site users and learn how Castle prevented the attack.

