Protect player accounts, content and platforms from the outside in
Launches, promotions and acquisitions keep adding sites, APIs and domains. Hadrian discovers them continuously, tests what an attacker could exploit and flags leaked credentials before they're used.
Hadrian mapped Lottomatica's internet-facing assets, found previously unidentified risks, removed false positives and assesses the external posture of companies it acquires.
Where gaming & media is exposed
Credential stuffing against player accounts
In November 2022, attackers used usernames and passwords leaked in other breaches to log into DraftKings accounts. DraftKings said 67,995 customer accounts were compromised, and US prosecutors say the attackers stole about $600,000 from users.
Stolen session cookies
In 2021, the attackers behind the Electronic Arts breach told Vice they bought stolen cookies for $10, used them to get into an EA Slack channel, then talked IT support into giving them network access. They said they took source code for FIFA 21 and the Frostbite engine.
Secrets exposed on code platforms
The New York Times said a credential to a cloud-based third-party code platform was inadvertently made available in January 2024. In June 2024, a large set of its internal source code appeared online.
Keep up with constant launches
Lottomatica runs sports betting, online gaming and gaming halls across more than 500 domains and 4,400 assets, and new games and services keep changing its endpoints. Hadrian scans the whole attack surface, including subdomains and API endpoints, so nothing is left unmonitored.
Bring acquired brands under one view
Lottomatica grew through M&A and inherited IT systems with different levels of security maturity. Hadrian assesses the external posture of each acquired company, including third-party software it deployed, so the integration team knows what to fix first. Atlas also offers an M&A assessment add-on.
Share external risk with the business in one click
Lottomatica uses Executive Summary reports to share a summary of its external risk with stakeholders in one click. Findings arrive as a prioritized list with business context, so security, product and leadership teams work from the same picture.
Catch leaked credentials and cookies
Hadrian shows compromised credentials tied to your corporate email addresses or login services on your domains, and flags infostealer infections, including stolen session cookies, with guidance to contain them.
Discover every site, subdomain and API
Continuous discovery finds the domains, subdomains and API endpoints tied to your brands, including those from acquisitions, and tests them as they change.
Close abandoned campaign subdomains
Short-lived event and promotion sites often leave DNS records behind. Hadrian finds unclaimed or poorly managed subdomains that could be taken over for phishing or malware distribution.
More from customers
Yes. Atlas discovers API endpoints across your attack surface and tests them as they change. Nova runs deeper agentic pentests on the web apps and APIs you choose, and every finding comes with evidence, reproduction steps and remediation guidance.
Hadrian is built to test production systems. Its agents share a rate budget, so parallel testing can't overload an application, and destructive methods such as HTTP DELETE are left out of their toolkits. At Lottomatica, API endpoint discovery runs without disrupting business operations. With Nova, you define exactly what gets tested.
Hadrian ethically monitors dark web activity. It shows compromised credentials tied to your corporate email addresses or to login services on your domains, with the username, a partially masked password, target URL, source and post date. It also flags infostealer infections, including stolen session cookies.
Yes. Atlas deploys from the cloud in under five minutes and discovers assets without needing a starting scope. Lottomatica uses Hadrian to assess the security posture of acquired companies, including third-party software they deployed. An M&A assessment is available as an Atlas add-on.
Scanners match signatures and known CVEs and flag what might be exploitable. Hadrian tests each exposure first and only raises an alert when an agent has confirmed it can be exploited, so your team doesn't spend time on false positives.
See what attackers see across your games and media brands
Book a demo to see how Hadrian maps your sites, apps and APIs, validates which exposures are exploitable and spots leaked credentials early.