Top Fraud Risks for Financial Institutions in 2016

Page 2 of 2

5 Top Fraud Risks for Financial Institutions in 2016

Cyberattacks will continue to menace financial institutions in 2016.   Hacking attempts, losses, and prevention expenses are likely to increase with the rise in mobile banking applications, vulnerabilities of financial call centers, and increased sophistication of social engineering attacks. Planning ahead is the best way to mitigate the risks.   

Here are five of the biggest fraud risks we will see next year:

More Account Takeover and Identity Theft

The 2015 Identity Fraud Study, released by Javelin Strategy & Research, found that $16 billion was stolen from 12.7 million U.S. consumers in 2014, resulting in a new identity fraud victim every two seconds.  According to the Identity Theft Resource Center over 175 million records were breached so far in 2015. Next year’s identity thieves, in addition to opening new accounts, will take over more existing banking or credit card accounts making many small transactions over time to stay below the radar.  The number of attacks will increase as hackers target other types of accounts besides credit cards, including eBay, Amazon and PayPal. The potential losses are increasing since fraudsters have stolen large volumes of social security numbers and other personal information they haven’t used yet.

Increase in Fraud Rings

Fraud rings are already resulting in major financial losses. Earlier this year Kaspersky revealed that an international criminal syndicate was able to successfully impersonate bank officers at over 100 banks around the world to net as much as $900 million in stolen funds.  Last year the Boleto Fraud Ring siphoned $3.75 billion from Brazilian banks. Fraud rings will be more difficult to detect as many of them may specialize in one aspect of fraud, for example, stealing identities or recruiting mules and then sell their services to another group.

Mobile Banking Fraud on the Rise

Smart phones, along with new and existing mobile banking applications, will increasingly become targets for hackers. Smart phone attacks will target the information on the device, as well as the information the device can access and the messages it receives. Additionally, the new payments systems using smart phones will be hit with malware attacks on the devices and the apps they are running.

 

Rise in Social Engineering Fraud  

Attackers using social engineering have found the phone channel to be the weakest link for corporations and consumers. This trend will continue in 2016 as fraud schemes become more and more creative.  Hackers impersonating customer support people, IRS agents, and even security specialists claiming to have detected fraud will continue to be a source of stealing personal financial data.  Creative schemes are likely to become more prevalent, like when fraudsters purchased similar numbers to a credit union's 800 number to trick members into disclosing private information when they misdialed.

 

Proliferation of Social Media Increases Risk

As banks continue to compete for the best customer experience, they are becoming more forward thinking by using social media platforms to engage their customers and enhance their service offerings.  However along with the benefits, comes the added risk.  For example, Turkey’s DenizBank offers their customers access to their accounts via Facebook.  One of the largest private sector banks in India recently launched a multi-social payment app that allows customers to transfer money through social media channels.

 

Hackers are becoming increasingly sophisticated and are likely to continue in 2016 to create new methods for taking over employee accounts and committing fraud.   With the higher dependence on e-banking, mobile payments, and the ability to do banking using social networks, the risks will continue to rise.  While opening new channels for banking, financial institutions will have to address the risk of hackers inflicting financial losses and damaging their reputation.


About the Author

Hagai Schaffer, VP Products and Marketing, Bottomline, Cyber Fraud & Risk Analysis Division (formerly Intellinx).

Featured

  • Evolving Cybersecurity Strategies: Uniting Human Risk Management and Security Awareness Training

    Organizations are increasingly turning their attention to human-focused security approaches, as two out of three (68%) cybersecurity incidents involve people. Threat actors are shifting from targeting networks and systems to hacking humans via social engineering methods, living off human errors as their most prevalent attack vector. Whether manipulated or not, human cyber behavior is leveraged to gain backdoor access into systems. This mainly results from a lack of employee training and awareness about evolving attack techniques employed by malign actors. Read Now

  • Report: 1 in 3 Easily Exploitable Vulnerabilities Found on Cloud Assets

    CyCognito recently released new research highlighting critical security vulnerabilities across cloud-hosted assets, revealing that one in three easily exploitable vulnerabilities or misconfigurations are found on cloud assets. As organizations increasingly shift to multi-cloud strategies, the findings underscore significant security gaps that could provide attackers with potential footholds into networks. Read Now

  • Built for Today, Ready for Tomorrow

    Selecting the right VMS is critical for any organization that depends on video surveillance to ensure safety, security and operational efficiency. While many organizations focus on immediate needs such as budget and deployment size, let us review some of the long-term considerations that can significantly impact a VMS's utility and flexibility. Read Now

  • Paving the Way to Smart Buildings

    In today's rapidly evolving security landscape, the convergence of on-prem, edge and cloud technologies are critical. The physical security landscape is undergoing a profound transformation, driven by the rapid digitalization of buildings and the evolving needs of modern organizations. As the buildings sector pivots towards smart, AI and data-driven operations, the integration of both edge and cloud technology has become crucial. Read Now

  • The Cybersecurity Time Bomb

    If you work in physical security, you have probably seen it: a camera, access control system, or intrusion detection device installed years ago, humming along without a single update. It is a common scenario that security professionals have come to accept as "normal." But here is the reality: this mindset is actively putting organizations at risk. Read Now

New Products

  • Mobile Safe Shield

    Mobile Safe Shield

    SafeWood Designs, Inc., a manufacturer of patented bullet resistant products, is excited to announce the launch of the Mobile Safe Shield. The Mobile Safe Shield is a moveable bullet resistant shield that provides protection in the event of an assailant and supplies cover in the event of an active shooter. With a heavy-duty steel frame, quality castor wheels, and bullet resistant core, the Mobile Safe Shield is a perfect addition to any guard station, security desks, courthouses, police stations, schools, office spaces and more. The Mobile Safe Shield is incredibly customizable. Bullet resistant materials are available in UL 752 Levels 1 through 8 and include glass, white board, tack board, veneer, and plastic laminate. Flexibility in bullet resistant materials allows for the Mobile Safe Shield to blend more with current interior décor for a seamless design aesthetic. Optional custom paint colors are also available for the steel frame.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities