Gaming & media

Protect player accounts, content and platforms from the outside in

Launches, promotions and acquisitions keep adding sites, APIs and domains. Hadrian discovers them continuously, tests what an attacker could exploit and flags leaked credentials before they're used.

Customer story

Hadrian mapped Lottomatica's internet-facing assets, found previously unidentified risks, removed false positives and assesses the external posture of companies it acquires.

Lottomatica
Read the story →
Risks

Where gaming & media is exposed

0
1
2022

Credential stuffing against player accounts

In November 2022, attackers used usernames and passwords leaked in other breaches to log into DraftKings accounts. DraftKings said 67,995 customer accounts were compromised, and US prosecutors say the attackers stole about $600,000 from users.

0
2
2021

Stolen session cookies

In 2021, the attackers behind the Electronic Arts breach told Vice they bought stolen cookies for $10, used them to get into an EA Slack channel, then talked IT support into giving them network access. They said they took source code for FIFA 21 and the Frostbite engine.

0
3
2024

Secrets exposed on code platforms

The New York Times said a credential to a cloud-based third-party code platform was inadvertently made available in January 2024. In June 2024, a large set of its internal source code appeared online.

How Hadrian helps

Keep up with constant launches

Lottomatica runs sports betting, online gaming and gaming halls across more than 500 domains and 4,400 assets, and new games and services keep changing its endpoints. Hadrian scans the whole attack surface, including subdomains and API endpoints, so nothing is left unmonitored.

Read the Lottomatica story
01

Bring acquired brands under one view

Lottomatica grew through M&A and inherited IT systems with different levels of security maturity. Hadrian assesses the external posture of each acquired company, including third-party software it deployed, so the integration team knows what to fix first. Atlas also offers an M&A assessment add-on.

See continuous asset discovery
02

Share external risk with the business in one click

Lottomatica uses Executive Summary reports to share a summary of its external risk with stakeholders in one click. Findings arrive as a prioritized list with business context, so security, product and leadership teams work from the same picture.

See threat exposure management
03
0
4

Catch leaked credentials and cookies

Hadrian shows compromised credentials tied to your corporate email addresses or login services on your domains, and flags infostealer infections, including stolen session cookies, with guidance to contain them.

0
5

Discover every site, subdomain and API

Continuous discovery finds the domains, subdomains and API endpoints tied to your brands, including those from acquisitions, and tests them as they change.

0
6

Close abandoned campaign subdomains

Short-lived event and promotion sites often leave DNS records behind. Hadrian finds unclaimed or poorly managed subdomains that could be taken over for phishing or malware distribution.

Case studies

More from customers

All case studies
No items found.
FAQ

Frequently asked questions

Does Hadrian test player-facing apps and APIs?
+

Yes. Atlas discovers API endpoints across your attack surface and tests them as they change. Nova runs deeper agentic pentests on the web apps and APIs you choose, and every finding comes with evidence, reproduction steps and remediation guidance.

Will testing slow down live games or betting platforms?
+

Hadrian is built to test production systems. Its agents share a rate budget, so parallel testing can't overload an application, and destructive methods such as HTTP DELETE are left out of their toolkits. At Lottomatica, API endpoint discovery runs without disrupting business operations. With Nova, you define exactly what gets tested.

How does Hadrian find leaked player or staff credentials?
+

Hadrian ethically monitors dark web activity. It shows compromised credentials tied to your corporate email addresses or to login services on your domains, with the username, a partially masked password, target URL, source and post date. It also flags infostealer infections, including stolen session cookies.

We grow through acquisitions. Can Hadrian assess a new brand quickly?
+

Yes. Atlas deploys from the cloud in under five minutes and discovers assets without needing a starting scope. Lottomatica uses Hadrian to assess the security posture of acquired companies, including third-party software they deployed. An M&A assessment is available as an Atlas add-on.

How is this different from a vulnerability scanner?
+

Scanners match signatures and known CVEs and flag what might be exploitable. Hadrian tests each exposure first and only raises an alert when an agent has confirmed it can be exploited, so your team doesn't spend time on false positives.

Get a 15 minute demo

See what attackers see across your games and media brands

Book a demo to see how Hadrian maps your sites, apps and APIs, validates which exposures are exploitable and spots leaked credentials early.