Following the news that an Australian man has been sentenced to three years in prison after pleading guilty to 11 charges including insider trading and unauthorised access to data with the intention to commit a serious offence, security experts commented below.
Australian Hacker to Serve 3 Years in Prison for Insider Trading, Unauthorized Computer Access https://t.co/L70DjPMe2X pic.twitter.com/hbjHBSsUw0
— CSPF (@CyberSecurityPr) June 25, 2019
Experts Comments:
Matt Lock, Director of Sales Engineers at Varonis:
Instead of robbing a bank, criminals know they can boost their own ill-gotten profits by stealing sensitive insider information. Financial organisations must stay on guard for disgruntled insiders and criminals that disguise themselves as legitimate users. This news should prompt discussions and hard questions in corporate boardrooms around the world.”
Joseph Carson, Chief Security Scientist & Advisory CISO at Thycotic:
This new era of cyber security digital inside trader is actually an external cyber-criminal who has stolen valid credentials, gaining unauthorised access using a trusted identity allowing them to access to the most sensitive confidential information the company has. This can include a myriad of financial details and future financial forecasts.
For the cybercriminal, the goal is NOT to install malicious malware or disruptive ransomware forcing the company to pay-out, in fact these cyber criminals do not even steal the data or threaten to disclose it. In common with nation state actors, cyber criminals do not want to be detected, and so employ the same techniques – their goal is financial gain, and to do this they need to remain hidden from their unsuspecting victims.
In this case after discovering the PPP’s upcoming stock recommendation reports, before they were publicly released, Steven Oakes was able to make seemingly legal investments just like any other trader. Knowledge of confidential information is one of the most dangerous risks on the internet today and will be abused by cybercriminals for profit.
The inside trading threat has evolved and the world needs to evolve to prevent and detect such threats.”
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.