• Cyber Safety
  • Posts
  • The Most Dangerous Access Is the One That Feels Normal

The Most Dangerous Access Is the One That Feels Normal

In partnership with

Blu Dot surpasses 2,000% ROAS with self-serve CTV ads

Home furniture brand Blu Dot blew up on CTV with help from Roku Ads Manager. Here’s how:

After a test campaign reached 211,000 households and achieved 1,010% ROAS, the brand went all in to promote its annual sales event. It removed age and income constraints to expand reach and shifted budget to custom audiences and retargeting, where intent was strongest.

The results speak for themselves. As Blu Dot increased their investment by 10x, ROAS jumped to 2,308% and more page-view conversions surpassed 50,000.

“For CTV campaigns, Roku has been a top performer,” said Claire Folkestad, Paid Media Strategist, Blu Dot. “Comping to our other platforms, we have seen really strong ROAS… and highly efficient CPMs, lower than any other CTV partner we've worked with.”

Using Roku Ads Manager, the campaign moved from a pilot to a permanent performance engine for the brand.

Familiar Access Stops Looking Risky

Accounts, integrations, and permissions that exist for years become operationally invisible. Teams stop questioning whether the access is still necessary.

Attackers Prefer Trusted Identities

A compromised employee account generates far less suspicion than malware or obvious exploitation. Trusted access blends naturally into daily operations.

Long-Standing Permissions Quietly Expand Risk

Employees change roles, vendors rotate, and projects end — but permissions often remain unchanged. Over time, environments become dangerously overprivileged.

AI Insights That Turn Your Data Into Bigger Profits

Your store is full of hidden growth opportunities. StoreClaw analyzes your Shopify and Amazon data, identifies the highest-impact actions, and helps you grow revenue while improving margins. Start free today with 10,000 bonus tokens. No credit card required.

Service Accounts Frequently Escape Review

Automation identities and API integrations often hold broad permissions without MFA, behavioral monitoring, or regular governance checks.

Legacy Trust Relationships Create Hidden Exposure

Old SaaS integrations, inherited admin roles, and stale OAuth grants continue operating quietly long after their original purpose disappears.

Trust Must Expire by Default

Review permissions continuously, automate expiration workflows, enforce least privilege aggressively, and monitor privileged activity closely. In cybersecurity, unmanaged trust eventually becomes exploitable trust.

Hire Ava, the AI BDR built for enterprise

Ava is the first AI BDR to run outbound end to end, finding leads or ingesting your CRM accounts, sending personalized emails on your reps' behalf, and booking meetings, autonomously or on copilot. She runs outbound for DoorDash and Grammarly. She's SOC 2 Type II audited, SSO and GDPR ready.