Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - IBM X-Force Finds +937% More Fin Svc Records Breached, +29% Attacks In 2016
News & Analysis

IBM X-Force Finds +937% More Fin Svc Records Breached, +29% Attacks In 2016

ISBuzz TeamBy ISBuzz TeamMay 1, 2017Updated:July 4, 20245 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

IBM X-Force report details a dramatic increase in financial services cyber attacks and records breaches. IT security experts from CipherCloud, Cyphort, Inc., Cyphort Labs, NuData Security and Prevoty commented below. 

Pravin Kothari, Founder, Chairman & CEO at CipherCloud:

Pravin Kothari“The new IBM X Force report once again demonstrates the escalating threat of data breaches that every organization is now facing, and underscores that the financial services industry is essentially under siege from bad actors.

At the same time, financial services applications are increasingly in the cloud, outside of the organization’s direct visibility and control, and beyond the reach of firewalls and other legacy cybersecurity defenses.

Organizations must fully embrace a data-centric security model, including persistent encryption that gives them a level of control over data wherever it goes – including on the most vulnerable and easily lost mobile devices. We recommend these best practices:

1) Protect the data – not just the network, systems and applications – whether it’s in the network, in the cloud or on mobile devices.

2) Always encrypt sensitive data that’s outside your network – even if it’s on a leading cloud storage platform.

3) Never share encryption keys with any third-party, including cloud providers or their administrators. Encryption is tremendously effective, provide keys are closely controlled.”

Nick Bilogorskiy, Senior Director of Threat Operations at Cyphort, Inc.:

Nick Bilogorskiy“Financials are the most targeted vertical, because most cyberattacks today are financially motivated –  cybercriminals “rob banks because that’s where the money is.”  Banks know this and spend heavily on countermeasures and security response.

“It’s said that JP Morgan alone spent 500 million dollars on security last year, and that was double from 2015. Collectively J.P. Morgan, Bank of America, Citibank And Wells Fargo  spent $1.5 billion to battle cyber crime.

“Our banks and financial institutions are all interconnected today which creates major risks, and international groups of criminals in various countries are monetizing these risks. For example, last year hackers stole 81 million dollars from Bangladesh Central Bank via SWIFT using Odinaff malware on a long weekend. The initial attack vector in such attacks is usually spear-phishing. An employee of a bank gets an email with an MS Office document which has a macro that downloads Odinaff malware.  Attackers then try to achieve lateral spread, using tools already on the computer – Windows components like Powershell or WMI or PsExec. By using Microsoft tools, they are effectively circumventing endpoint security solutions.

“In another similar case, hackers attempted to steal $170 million from Union Bank of India via SWIFT – the vast messaging network used by banks to send and receive money transfer instructions.

The entire financial system’s stability is threatened by such attacks, and they – like the IBM X-Force Report – should serve as a call to action for international law enforcement cooperation on defending our global financial system.”

Mounir Hahad, Ph.D., Senior Director at Cyphort Labs:

Mounir Hahad“Other industry reports corroborate that financial institutions bear a larger share of the burden when it comes to fending off cyber attacks. According to Verizon’s 2017 DBIR report, financial institutions get breached almost twice as much as the next most breached vertical, healthcare.

It is also worth noting that size and fame of an institution is not necessarily a draw for cyber criminals. Even smaller regional bank and investment firms are regular targets. Cyber criminals are aware that well established financial institutions have a very good security posture and therefore rely less on malware to breach their networks and more on stolen credentials. This also explains the large increase in Email phishing attacks many verticals are experiencing these days.

From a tooling perspective, it is important for financial organizations of any size to invest in a multi-pronged  approach to security, involving several tools that share intelligence and correlate events to identify malicious activity with high accuracy without overloading their SOC teams with non actionable alerts.”

Robert Capps, VP of Business Development at NuData Security:

Robert Capps“The sheer number of records compromised according to IBM Force X findings is yet another clear reminder that traditional security methods simply aren’t sufficient to combat breaches. Security-driven organizations must take a layered, continuous and more advanced approach to authentication to successfully combat cyber fraud.  Through a combination of behavioral biometrics identification and analytics, device location, and entity linking, the organization can continuously authenticate a user’s online identity with unprecedented accuracy, speed, and frictionless user experience. A consumer’s natural interactions can be continuously analyzed to confirm identity, and such behaviors form a unique pattern that can’t be stolen, replayed or reused.”

Kunal Anand, CTO and Co-Founder at Prevoty:

kunal-anand“- It’s unsurprising to see this number inflated in the financial services sector. Our customers have told us that they are seeing more malicious input attacks coming in through side channels via partner feeds and third party ingestion – contrary to the conventional vectors.

– Overall, attackers are going directly at applications as they are becoming the weakest point. Legacy applications remain large targets for these exploits and require a degree of security hand-holding that most organizations aren’t prepared to do.

– Additionally, perimeter-based controls, including the web application firewalls, lack context and are blind to these zero-days without virtual patches. The latest Struts 2 issue is a fine example of allowing remote code execution in a popular framework.”

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read

Meta’s Smart Glasses Privacy Scandal Expands After Sama Credentials Found on the Dark Web

March 10, 20264 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}