Analyst Report
OneSpan Global Mobile App Security Vulnerabilities Report
Find out which types of apps are most susceptible to repackaging attacks—and what industry benchmarks you should use to assess your own level of app protection.
Download NowCombat Online and Mobile Banking Threats
OneSpan Cronto solutions strenghten protection against account takeover and phishing attacks as well as banking Trojans, Man-in-the-Middle (MitM), and Man-in-the-Browser (MitB) attacks.
Cronto solutions create a unique electronic banking signature for each transaction using details such as account numbers, transaction amounts or any other text or messaging the bank wants to send. This solution preserves data integrity and ensures authenticity, rendering any changes made to a transaction after it has been electronically signed, invalid.
Simple Scan and Sign
Excellent User Experience
Cronto solutions enable fast adoption and are intuitive to use. The “what you see is what you sign” principle is ideally suited for banks and FIs looking to secure digital transactions without compromising on user experience.
When a user initiates a banking transaction, the details of that transaction are encrypted and presented in a colored QR code. The user simply scans that code and signs the transaction. Cronto solutions offer a passwordless authentication method as no manual input is required to confirm banking transactions.
Blog
How Orange Money Romania Added Risk‑based Authentication to the Mobile Experience
Learn how Orange Money deployed risk-based authentication in the cloud for a stronger fraud prevention and security strategy.
Read MoreSecure Channel and Transaction Authorization
Take Control of Transaction Authorization
One of the biggest challenges in combating social engineering is educating and guiding the banking customer to recognize a scam before being tricked into authorizing fraudulent transactions.
By deploying OneSpan Cronto solutions, the bank is in charge of the authorization process, and the trust decision is taken out of the user’s hands. Only the bank can initiate the creation of a Cronto code, and only the intended recipient’s device can scan the code. All data is encrypted and the secure communication channel ensures message authenticity – the transaction authorization request originates from the bank. In addition, banks can decide to visually alert their customers of high-risk transactions.
Cronto solutions work perfectly together with OneSpan’s Intelligent Adaptive Authentication Solutions. By combining solution stacks, banks can dynamically detect fraud, calculate risk scoring, and apply the right level of authentication for each unique transaction in real time.
Success Story
Swedbank implements OneSpan’s Cronto technology to secure transactions and improve the customer experience
Customer
Swedbank is a leading bank with over 7 million retail customers, around 600,000 corporate customers and organizations, 172 branches in Sweden, and 122 branches in the Baltic countries. The group is also present in other Nordic countries, the US, and China
Challenge
Protect account access and online transactions from social engineering attacks without hindering the customer experience.
Results
- OneSpans’s Cronto solution helped achieve compliance with PSD2 authentication and dynamic linking requirements
- Improved login and transaction signing experience – simple scan and sign
- OneSpan Cronto solutions are available in a mobile and hardware version to accomodate every customer’s needs
Enable secure coverage across your full client base
It can be challenging to deploy a solution that is both designed for fast adoption as well as 100% of your customers’ security requirements. OneSpan’s authentication solutions are available in mobile or hardware versions, and work offline to deliver continuity when connectivity is poor.
With OneSpan, banks and financial institutions can deploy a solution that provides a consistent and secure user experience across all digital channels, while offering customers maximum flexibility to choose between hardware or software authenticators.
E-book
Use Case Catalog
Our solution portfolio supports secure, simple end-to-end experiences for your clients. Find out how.
Read nowCustomers use OneSpan solutions to...
Secure transactions and mobile banking application
The bank implemented Mobile Security Suite with Cronto to meet the PSD2 dynamic linking requirements and help mitigate human risk in banking transactions.
- Securely sign transactions
- Protect the bank’s mobile banking application by integrating application security, biometric authentication, and Cronto technology
- Meet PSD2 requirements
Provide best-in-class authentication for corporate and retail clients
Digipass helps the bank to secure all financial and critical transactions online.
- Strong authentication that eliminated transaction disputes
- Boosted customer confidence in the bank’s online services
- Helpful in attracting new customers
Protect users from account takeover and mobile malware losses
Volkswagen Bank implemented OneSpan’s mobile application security to protect the bank’s financial transactions and help ensure PSD2 compliance while enabling a positive customer experience.
- Develop and protect PhotoTAN-App, a standalone mobile authentication app solely used to sign transactions initiated either online or via a mobile device.
- Seamless customer experience
- Comply with the PSD2 authentication and dynamic linking requirements
Questions? We're ready with answers
OneSpan can help you prevent fraud and secure your revenue-generating, client-facing business processes.