US Banks Hit By Russian Cyber Attacks

The Russia-Ukraine war is being bitterly fought, both on the ground and online, with politicians and cyber security experts alike warning of potential attacks against the US financial industry in general as well as banking.  Now, as predicted at the outset of the attempted invasion of Ukraine, US banks are currently under advanced and sustained cyber attack from Russian connected hackers.

This comes after the western allies have implemented unprecedented, crushing sanctions against Russia since it invaded Ukraine. The impact on the Russian economy has been severe, and many experts believe the Kremlin has vigorously retaliated with cyber attacks.

The large US banks JP Morgan, Citigroup, Bank of America, Goldman Sachs, are often attacked by cyber criminals looking to disrupt operations and steal client information. The usual suspects are most often located in Iran, China and now more often Russia.

Cyber security experts are saying that  financial institutions face particular risks in a less well understood area of their business - the now ubiquitous artificial-intelligence (AI) technologies that handle everything from lending to automated trading are also at risk from attacks.

Attacks by Russia and its operatives are likely to intensify as sanctions and the associated economic toll increase,” said Dan Katz, cyber security and data privacy director at Mazars, a leading financial services consultancy. "Russian attacks on a wide variety of organisations continue to strongly target financial services organisations,” he commented.  This is not only due to the major role of the financial and payments industries play in the global critical infrastructure, and potential data and monetary profits to be had, but also because many US banks still rely on fairly complex or siloed core systems, which are often much trickier to protect.

The US Cybersecurity & Infrastructure Security Agency (CISA) says that their intelligence suggests that the Russian government is continuing to explore cyber attack opportunities 

“Evolving intelligence indicates that the Russian Government is exploring options for potential (new) cyber attacks. Every organisation, large and small, must be prepared to respond to disruptive cyber incidents... As the nation’s cyber defense agency, CISA stands ready to help organisations prepare for, respond to, and mitigate the impact of cyber attacks,”  CISA warned in a recent update.  

Experts are also saying that consumers should also be more concerned about small scale attacks, especially in relation to protecting their personal data. 

Knowing how cyber attacks work, and what you can do to prevent your data from being compromised, is key to preventing your personal information from being breached. But, it’s important to note that there is no perfect way to fully protect yourself from data breaches and continuous checking and staff training is required.

CISA:     Reuters:     WSJ:     SC Magazine:     SC Magazine:     Forbes:    American Banker:    NYPost:  

You Might Also Read: 

Cyber Attacks On Ukraine Step Up The Pressure:

 

« Fraud Online & On The Telephone
Can A Cybercrime Convention For All Be Achieved? »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

Watch this webinar to hear security experts from Amazon Web Services (AWS) and SANS break down the myths and realities of what an NGFW is, how to use one, and what it can do for your security posture.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Kramer Levin

Kramer Levin

Kramer Levin is a full-service law firm with offices in New York and Paris. Practice areas include Cybersecurity, Privacy and Data Protection.

Packet Ninjas

Packet Ninjas

Packet Ninjas is a niche cyber security agency with specialized expertise in the use of digital intelligence to strengthen cyber security.

Ethoca

Ethoca

Ethoca is a secure network for card issuers and merchants to connect and work cooperatively outside the payment network in a unique and powerful way.

Raz-Lee Security

Raz-Lee Security

Raz-Lee Security is the leading security solution provider for IBM Power i, otherwise known as iSeries or AS/400 servers.

CyberStream

CyberStream

CyberStream, a division of the TechStream Group, is an information & cybersecurity talent acquisition solution provider.

SmartCyber

SmartCyber

SmartCyber is a company specializing in custom IT projects and Cybersecurity.

Jisc

Jisc

Jisc is a membership organisation working in partnership with the UK’s research and education communities to develop the digital technologies they need to teach, discover and thrive.

Network Perception

Network Perception

Network Perception proactively and continuously assures the security of critical OT assets with intuitive network segmentation verification and visualization.

Finesse Global

Finesse Global

Finesse is a global system integration and digital business transformation company.

Bluewave

Bluewave

Bluewave are a strategic IT advisory company that offers businesses a simple and comprehensive way to purchase information technology solutions.

AnzenSage

AnzenSage

AnzenSage is a cybersecurity advisory consultancy specializing in security risk resilience for the food sector: agriculture, food manufacturing, food supply chain, vineyards, and wineries.

Helix Security Services

Helix Security Services

Helix Security provides IT & information security consultancy to government and businesses across New Zealand.

aFFirmFirst

aFFirmFirst

aFFirmFirst is a unique software solution offering a simple yet effective way for businesses to protect and control their online images and logo, as well as allowing one-click website verification.

L&T Technology Services (LTTS)

L&T Technology Services (LTTS)

L&T Technology Services Limited (LTTS) is a global leader in Engineering and R&D (ER&D) services.

DataProof Communications

DataProof Communications

DataProof Communications is Cybersecurity Company specialising in cybersecurity operations, incident management and response best practices and technologies.

360 Advanced

360 Advanced

360 Advanced is a relationship-focused cybersecurity and compliance firm offering integrated compliance solutions customized to meet your business’ needs.