Digital Banking & Cyber Crime

Digital technology in the 21st Century has revolutionised economic and social interaction. It has transformed business, the way we educate ourselves, buying and selling products and services. Also, financial services and banking.

Internet connectivity and use is growing and the number of individual users worldwide is now over 5 Billion, which is over 63% of the global population and continues to grow. This has enabled a Fintech revolution which is transforming how we spend money and share data between buyers, sellers and their intermediaries. 

The implementation of innovative technology has made an opportunity for criminals to find ways to exploit and steal from users. This is especially so in the financial services sector where numerous new online account services are available. At the same time, many new Digital Banks have emerged which operate entirely online. Criminal hackers are certainly fully aware of these new digital services to take advantage of insecure financial data systems. 

Digital banks face rapidly escalating threats as technological developments in cyber crime make it easier than ever for financial criminals to commit fraud.

Cyber attacks are becoming more sophisticated thanks to artificial intelligence (AI) and self-learning malware. Phishing attacks meanwhile prey on vulnerable and naïve customers, and for cybercriminals, ransomware is the most lucrative type of attack. Unfortunately, governments and police services have responded slowly to this new, 4th Industrial Digital Revolution. And many of their operations do not have the IT skills and technology to deal with these new crimes. As the crimes, threats and actions frequently take place outside of policing’s national boundaries this cyber crime inadvertently, now has similarities to ancient piracy, where national governments could claim that the crime and criminals were outside their national responsibility, even if they, where sometimes one of the governments funding the pirates. 

The global cost of cyber crime continues to increase and the intensification of these criminal action hackers means that the cost of cyber-crime could reach $10.5 trillion by 2025. 

Cyber crime costs include damage and destruction of data, stolen money, lost productivity, theft of intellectual property, theft of personal and financial data, embezzlement, fraud, post-attack disruption to the normal course of business, forensic investigation, restoration and deletion of hacked data and systems, and reputational harm.
However, in the last decade Western governments are often claiming that their national crime rate is reducing, but this is reporting is not taking cyber-crime into the national picture, which if it did, then national and global crime would be seen to be significantly increasing.

Additionally, it is in the nature of large commercial firms for cyber responsibilities to be split between different departments, which often cause difficulties in understanding and prioritising threats and responding to them. 
More widely, the inter-connectedness of the financial sector means that successful attacks on smaller firms or third party supply chains can significantly affect the wider market. In these circumstances vendors, suppliers, customers and our other colleagues are all critical components of a successful business, but come with risks, and successful attacks against these often perceived weaker links could have an indirect but significant impact on the chain. 

Cyber threat actors have a global reach and cyber threats need to be considered through a global lens. 

High-profile Data Breaches & Vulnerabilities 

Banks are not reporting the full extent of cyber attacks to regulators for fear of punishment or bad publicity as some bank executives and providers of security systems and they are not alone in their reluctance to disclose every cyber attack.

According the British government data, of the five million fraud and 2.5 million cyber-related crimes occurring annually in the UK, only 250,000 are being reported.

In November of 2016 five Russian banks had been under intermittent cyber-attack for two days, said the country's banking regulator. The state-owned Sberbank was one target of the prolonged attacks and hackers sought to overwhelm the websites of the banks by deluging them with data in what is known as a Distributed Denial of Service (DDoS) attack.

SWIFT, the messaging network that connects the world's banks, says it has identified new hacks targeting its members, and it is warning them to beef up security in the face of "ongoing attacks." It did not name the banks affected. The warning follows cyber attacks on banks in Bangladesh, Vietnam, the Philippines and Ecuador in which malware was used to circumvent local security systems, and in some cases, steal money.

  • An attack on Bangladesh's central bank yielded $101 million.
  • Ecuador's Banco del Austro was hit for $12 million.

As cyber threats are an ever-present threat and continue to evolve, it is essential for banks, police and government to build their cyber-risk analysis part of their business and organisations knowledge so that effective mitigation strategies can be developed and put in place. 

In 2022 there is a real requirement for more effective sharing of IT and Fintech know-how  across the government, police and banking sectors is required. Most cyber crime originates from China, North Korea and Russia where it can be difficult to identify hackers and where local police are unlikely to apprehend them.

Banks will need to work collaboratively with governments and industry bodies to share effective strategies. There also needs to be continued work to educate the public on preventative measures, but the buck stops with the banks who will need to ensure they implement security models that ensure maximum protection for them and their customers.

TMB:    Int Accounting Bulletin:    Datareportal:    Cybersecuritventures:   Royal Holloway:     BBA

Cyber Crime Journal:      Refinitiv:     Guardian:    JICRAR:     Information Age

You Might Also Read: 

Cyber Security In Fintech:
 

« Apple Patches Serious Security Flaws With iOS Update
Understanding Fake News »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

HANDD Business Solutions

HANDD Business Solutions

HANDD are independent specialists in data protection with expertise at every stage of the Protect, Detect and Respond cycle, from consultancy and design, right through to installation.

Acuity Risk Management

Acuity Risk Management

Acuity Risk Management helps businesses worldwide effectively manage, prioritize and report on their risks to inform strategic and tactical decision-making and build long-term resilience.

sic[!]sec

sic[!]sec

sic[!]sec provide products and services for web application security.

Basis Technology

Basis Technology

Basis Technology provides software solutions for text analytics, information retrieval, digital forensics, and identity resolution.

Eskive

Eskive

Eskive is a Brazilian cyber security awareness and education platform that empowers users and strengthens their company in the face of cyber threats.

TierPoint

TierPoint

TierPoint delivers secure, reliable, and connected infrastructure solutions at the internet’s edge. We meet you where you are in your journey to solve for data storage, compute, and recovery.

Bolster

Bolster

Bolster (formerly RedMarlin) is an AI-based cyber-security platform designed to detect phishing and fraudulent sites in real-time.

Vulcan Cyber

Vulcan Cyber

At Vulcan, we’re modernizing the way enterprises reduce their cyber risk. From detection to resolution, we automate and orchestrate the vulnerability remediation process dynamically and at scale.

Cyber Security Operations Consulting (CyberSecOp)

Cyber Security Operations Consulting (CyberSecOp)

CyberSecOp is an ISO 27001 Certified Organization which provides cyber security operations services and risk management consulting.

AirEye

AirEye

AirEye is a leader in Network Airspace Protection (NAP). Block attacks against your corporate network launched from wireless devices in your corporate network airspace.

Safe Systems

Safe Systems

Safe Systems provide compliance centric IT services for community banks and credit unions, ensuring that they are kept up to date on current technologies, security risks, and regulatory changes.

Talion

Talion

Talion aim to reduce the complexity involved in securing your organisation and to give security teams unrivalled visibility into their security operations, so they can make optimal decisions, fast.

Syracom

Syracom

syracom is a consultancy firm specialized in development of efficient business processes. With our expertise and IT competence, we develop tailored solutions for customers in various industries.

Arcturus Security

Arcturus Security

Arcturus is a CREST-approved cyber security consultancy created by experts in the field.

Olympix

Olympix

Dev-first Web3 security that starts at the source. Olympix is a pioneering DevSecOps tool that puts security in the hands of the developer by proactively securing code from day one.

FoxPointe Solutions

FoxPointe Solutions

FoxPointe Solutions is a full-service cyber risk management and compliance firm.