Top Fraud Risks for Financial Institutions in 2016

5 Top Fraud Risks for Financial Institutions in 2016

Cyberattacks will continue to menace financial institutions in 2016.   Hacking attempts, losses, and prevention expenses are likely to increase with the rise in mobile banking applications, vulnerabilities of financial call centers, and increased sophistication of social engineering attacks. Planning ahead is the best way to mitigate the risks.   

Here are five of the biggest fraud risks we will see next year:

More Account Takeover and Identity Theft

The 2015 Identity Fraud Study, released by Javelin Strategy & Research, found that $16 billion was stolen from 12.7 million U.S. consumers in 2014, resulting in a new identity fraud victim every two seconds.  According to the Identity Theft Resource Center over 175 million records were breached so far in 2015. Next year’s identity thieves, in addition to opening new accounts, will take over more existing banking or credit card accounts making many small transactions over time to stay below the radar.  The number of attacks will increase as hackers target other types of accounts besides credit cards, including eBay, Amazon and PayPal. The potential losses are increasing since fraudsters have stolen large volumes of social security numbers and other personal information they haven’t used yet.

Increase in Fraud Rings

Fraud rings are already resulting in major financial losses. Earlier this year Kaspersky revealed that an international criminal syndicate was able to successfully impersonate bank officers at over 100 banks around the world to net as much as $900 million in stolen funds.  Last year the Boleto Fraud Ring siphoned $3.75 billion from Brazilian banks. Fraud rings will be more difficult to detect as many of them may specialize in one aspect of fraud, for example, stealing identities or recruiting mules and then sell their services to another group.

Mobile Banking Fraud on the Rise

Smart phones, along with new and existing mobile banking applications, will increasingly become targets for hackers. Smart phone attacks will target the information on the device, as well as the information the device can access and the messages it receives. Additionally, the new payments systems using smart phones will be hit with malware attacks on the devices and the apps they are running.

 

Rise in Social Engineering Fraud  

Attackers using social engineering have found the phone channel to be the weakest link for corporations and consumers. This trend will continue in 2016 as fraud schemes become more and more creative.  Hackers impersonating customer support people, IRS agents, and even security specialists claiming to have detected fraud will continue to be a source of stealing personal financial data.  Creative schemes are likely to become more prevalent, like when fraudsters purchased similar numbers to a credit union's 800 number to trick members into disclosing private information when they misdialed.

 

Proliferation of Social Media Increases Risk

As banks continue to compete for the best customer experience, they are becoming more forward thinking by using social media platforms to engage their customers and enhance their service offerings.  However along with the benefits, comes the added risk.  For example, Turkey’s DenizBank offers their customers access to their accounts via Facebook.  One of the largest private sector banks in India recently launched a multi-social payment app that allows customers to transfer money through social media channels.

 

Hackers are becoming increasingly sophisticated and are likely to continue in 2016 to create new methods for taking over employee accounts and committing fraud.   With the higher dependence on e-banking, mobile payments, and the ability to do banking using social networks, the risks will continue to rise.  While opening new channels for banking, financial institutions will have to address the risk of hackers inflicting financial losses and damaging their reputation.


Featured

  • Gaining a Competitive Edge

    Ask most companies about their future technology plans and the answers will most likely include AI. Then ask how they plan to deploy it, and that is where the responses may start to vary. Every company has unique surveillance requirements that are based on market focus, scale, scope, risk tolerance, geographic area and, of course, budget. Those factors all play a role in deciding how to configure a surveillance system, and how to effectively implement technologies like AI. Read Now

  • 6 Ways Security Awareness Training Empowers Human Risk Management

    Organizations are realizing that their greatest vulnerability often comes from within – their own people. Human error remains a significant factor in cybersecurity breaches, making it imperative for organizations to address human risk effectively. As a result, security awareness training (SAT) has emerged as a cornerstone in this endeavor because it offers a multifaceted approach to managing human risk. Read Now

  • The Stage is Set

    The security industry spans the entire globe, with manufacturers, developers and suppliers on every continent (well, almost—sorry, Antarctica). That means when regulations pop up in one area, they often have a ripple effect that impacts the entire supply chain. Recent data privacy regulations like GDPR in Europe and CPRA in California made waves when they first went into effect, forcing businesses to change the way they approach data collection and storage to continue operating in those markets. Even highly specific regulations like the U.S.’s National Defense Authorization Act (NDAA) can have international reverberations – and this growing volume of legislation has continued to affect global supply chains in a variety of different ways. Read Now

  • Access Control Technology

    As we move swiftly toward the end of 2024, the security industry is looking at the trends in play, what might be on the horizon, and how they will impact business opportunities and projections. Read Now

Featured Cybersecurity

Webinars

New Products

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols. 3

  • 4K Video Decoder

    3xLOGIC’s VH-DECODER-4K is perfect for use in organizations of all sizes in diverse vertical sectors such as retail, leisure and hospitality, education and commercial premises. 3

  • Luma x20

    Luma x20

    Snap One has announced its popular Luma x20 family of surveillance products now offers even greater security and privacy for home and business owners across the globe by giving them full control over integrators’ system access to view live and recorded video. According to Snap One Product Manager Derek Webb, the new “customer handoff” feature provides enhanced user control after initial installation, allowing the owners to have total privacy while also making it easy to reinstate integrator access when maintenance or assistance is required. This new feature is now available to all Luma x20 users globally. “The Luma x20 family of surveillance solutions provides excellent image and audio capture, and with the new customer handoff feature, it now offers absolute privacy for camera feeds and recordings,” Webb said. “With notifications and integrator access controlled through the powerful OvrC remote system management platform, it’s easy for integrators to give their clients full control of their footage and then to get temporary access from the client for any troubleshooting needs.” 3