CrossClassify Supply Chain
Quick accessQuick access
NotificationNotification
LogsLogs
UsersUsers

Quick access

Identity & Access Abuse
Identity & Access Abuse
Passed 66.7%
Vulnerable 33.3%
Procurement & Vendor Fraud
Procurement & Vendor Fraud
Passed 66.7%
Vulnerable 33.3%
Logistics & Inventory Manipulation
Logistics & Inventory Manipulation
Passed 66.7%
Vulnerable 33.3%
Marketplace & Data Integrity
Marketplace & Data Integrity
Passed 66.7%
Vulnerable 33.3%
Compliance Quality & Safety
Compliance Quality & Safety
Passed 66.7%
Vulnerable 33.3%
supply-chain
Execution plan
Do the following actions to make your supply chain application more protected against fraud and cybersecurity issues in alignment with CrossClassify's SDK integration.
High
stop account takeover in portals
Why: 31% of supply chain breaches start with stolen credentials, giving attackers access to vendor and shipment data.
Effort: MediumETA: 7hOwner: Security Team
High
protect operations with device fingerprint
Why: Over 44% of unauthorized access attempts come from new or emulated devices targeting logistics systems.
Effort: LowETA: 2hOwner: Database
Medium
enforce biometrics on transactions
Why: Behavioral biometrics detect 68% of fraudulent purchase orders and insider manipulation attempts in supply chain platforms.
Effort: LowETA: 3.5hOwner: Platform
Identity & Access Abuse

Identity & Access Abuse

Ato Login Activity By Region Hour
passed
description-badge

New logins from unfamiliar regions immediately before PO approvals or price updates.

info
Failed Vs Successful Logins
passed
description-badge

Spike of failed logins followed by a successful one (ATO credential testing).

info

Devices Supplier Accounts Coordination
passed
description-badge

Many supplier accounts tied to the same device/IP submitting RFQs — evidence of a multi-account ring.

info
Device Fingerprint Reuse Across Supplier Tax Ids
vulnerable
description-badge

Reused device fingerprints across distinct VAT/EIN tax IDs.

info
device_idsupplier_idstax_ids
Dev-1S132100000118
Dev-2S103100000060
Dev-3S100100000035
Dev-4S104, S105100000027, 100000044
Dev-5S121100000007, 100000056
Dev-6S133100000045, 100000111
Dev-7S119100000060
Dev-8S134100000117
Dev-9S103, S109, S115100000003
Dev-10S116, S123100000091
solution-badge

Contact Change Password Reset Coupling
vulnerable
description-badge

Email or phone change followed by password/MFA reset within minutes — indicates social engineering of support.

info
solution-badge
Support Ticket Credential Change Proximity
passed
description-badge

Support tickets immediately preceding credential changes — potential social engineering bypass.

info
ticket_idchannelchange_eventminutes_before_change
T1chatpwd_reset5
T2phoneemail_change15
T3emailpwd_reset60
T4chatmfa_reset7
T5phonepwd_reset3
T6chatpwd_reset120
T7emailemail_change30
T8phonepwd_reset4
T9chatemail_change9
T10emailmfa_reset6
Procurement & Vendor Fraud

Procurement & Vendor Fraud

Document Hash Reuse Across Suppliers
vulnerable
description-badge

COI/COA/ISO document fingerprint/hash reuse across suppliers — evidence of document forgery.

info
doc_hashsuppliers_using
H13
H25
H39
H45
H53
H64
H73
H85
H95
H105
solution-badge
Email Domain Age New Suppliers
passed
description-badge

Newly registered or low-reputation email domains on applications — potential fake supplier indicators.

info

Po Amount Changes After Approval
passed
description-badge

PO amount materially increased after approval — potential manipulation and fraud.

info
po_idapproved_amountfinal_amountdelta
PO159612.8412824.77-46788.07
PO282132.6439528.45-42604.19
PO318471.9823754.455282.47
PO488501.95103501.9515000
PO549859.2768816.8518957.58
PO611566.3655242.3843676.02
PO760213.2778811.518598.23
PO844503.587484.9342981.43
PO971661.9432501.92-39160.02
PO1026450.1487970.0461519.9
Duplicate Invoice Number Occurrences
passed
description-badge

Duplicate invoice numbers across suppliers — potential invoice manipulation and fraud.

info

Bank Change Large Payout 24h
vulnerable
description-badge

Beneficiary bank change followed by large payout within 24 hours — potential payout diversion.

info
solution-badge
Same Bank Account Multiple Suppliers
passed
description-badge

Same bank account used by multiple suppliers — potential payout diversion and fraud.

info
Logistics & Inventory Manipulation

Logistics & Inventory Manipulation

Asn Vs Received Quantity Variance
vulnerable
description-badge

ASN quantity deviates from received quantity — potential tampering or mis-shipments.

info
solution-badge
Asn Edit Bursts Truck Arrival
passed
description-badge

ASN edits spike minutes before truck arrival — potential last-minute tampering.

info

Inventory Adjustments Night Shift Hotspots
vulnerable
description-badge

Repeated high-value adjustments concentrated in night shifts — potential fraud indicators.

info
solution-badge
Adjustment Operators Spanning Warehouses
passed
description-badge

Same user/device performing adjustments across many warehouses — potential coordinated fraud.

info
user_devicewarehouses_spanned
U1-D17
U2-D21
U3-D33
U4-D41
U5-D52
U6-D61
U7-D73
U8-D83
U9-D92
U10-D102

Gps Speed Anomaly Over Time
passed
description-badge

Speeds beyond policy thresholds — potential GPS/IoT telemetry spoofing.

info
Distance Between Consecutive Pings
passed
description-badge

Large distance between consecutive pings ('teleport' jumps) — potential location spoofing.

info
Marketplace & Data Integrity

Marketplace & Data Integrity

Requests Per User Agent Group
vulnerable
description-badge

Excessive requests from headless or script user-agents — potential price scraping activity.

info
solution-badge
Search To Rfq Ratio By Ip Range
vulnerable
description-badge

High search-to-RFQ ratios from certain IP ranges — potential botting activity.

info
ip_rangesearchesrfqsratio
Block-1297519515.26
Block-213348216.27
Block-3437163400
Block-423222689.31
Block-510548512.4
Block-68106811.91
Block-7178614911.99
Block-82511122.24
Block-94261426
Block-109974223.74
solution-badge

Review Volume By Account Cohort
passed
description-badge

Review bursts from new accounts on the same day — potential coordinated manipulation.

info
Ips Profiles Coordinated Review
passed
description-badge

IP clusters posting across multiple vendor/product profiles — potential coordinated fraud.

info

Quoted Vs Charged Price Delta
passed
description-badge

Mismatch between quoted and charged price — potential parameter tampering.

info
quote_idquoted_pricecharged_pricedelta
Q12765.762590.34-175.42
Q21932.061506.81-425.25
Q34785.62203.91-2581.69
Q44952.81898.62-4054.19
Q53978.354328.35350
Q6682.552426.971744.42
Q71657.611519.89-137.72
Q84806.181423.66-3382.52
Q92808.321265.41-1542.91
Q10565.471986.321420.85
Unsupported Parameters Requests
passed
description-badge

Unsupported parameters/codes in requests — potential deep link tampering.

info
Compliance Quality & Safety

Compliance Quality & Safety

Certificate Days To Expiry
vulnerable
description-badge

Expired COI/COA/ISO used with shipments or tenders — potential document fraud.

info
supplierdoc_typedays_to_expiry
S1COI54
S2COA-19
S3ISO9001-38
S4MSDS-13
S5COI73
S6COA36
S7ISO900129
S8COA-22
S9COI4
S10MSDS80
solution-badge
Pdf Fingerprint Reuse Suppliers
passed
description-badge

PDF document fingerprint reuse across suppliers — potential document forgery.

info
doc_hashsuppliers_reused
H14
H28
H34
H43
H54
H62
H73

Inspection Submissions Per Minute
vulnerable
description-badge

Burst of inspection submissions in a single minute — potential QC falsification.

info
solution-badge
Inspection Geofence Hit Site
passed
description-badge

Inspections recorded outside the site geofence — potential location falsification.

info
inspection_idsitegeofence_hit
I1Plant-1Yes
I2Plant-1No
I3Plant-1Yes
I4Plant-1Yes
I5Plant-1No
I6Plant-1Yes
I7Plant-1Yes
I8Plant-1No
I9Plant-1Yes
I10Plant-1Yes

Chain Of Custody Timestamp Violations
passed
description-badge

Chain-of-custody timestamps out of order — potential provenance integrity issues.

info
Provenance Path Anomalies
passed
description-badge

Unusual path anomalies in provenance graph — potential process flow manipulation.

info