Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > ARE YOUR MOBILE BANKING OR PAYMENT APPS AND PERSONAL DATA TRULY PROTECTED?
    Technology

    ARE YOUR MOBILE BANKING OR PAYMENT APPS AND PERSONAL DATA TRULY PROTECTED?

    ARE YOUR MOBILE BANKING OR PAYMENT APPS AND PERSONAL DATA TRULY PROTECTED?

    Published by Gbaf News

    Posted on February 26, 2015

    Featured image for article about Technology

    By Mark Noctor, Director of Sales EMEA at Arxan Technologies

    The rate of mobile consumer adopters continues to steeply rise. Statista predicts that mobile app downloads is set to rise to almost 270 billion by 2017.The subject of mobile banking and payments in particular has been recently hitting the headlines as market scrutiny has been stirred by the launch of Apple Pay and how it has renewed popular interest in mobile payment services via Near Field Communication (NFC) on mobile devices, including wearables. In addition to Apple Pay, Android devices offer a similar capability, and have a larger consumer footprint.

    There is plenty at stake for the banking and financial institutions that are launching these innovative approaches for financial services via mobile applications; especially to the larger Android market base that tends to host more malware.  One critical question that needs to be addressed in this new mobile landscape is that of security. As financial brands race to compete on the latest and greatest apps to gain either new consumers or maintain existing loyalty, there is the risk that security will fall by the wayside in favour of aggressive time-to-market deadlines. Yet this need not and should not be the case, as the stakes are high in terms of revenue loss and reputation damage.

    The recent European-wide Data Protection Day bought to the forefront the need for both banks and end users to question whether the mobile banking and payment apps that are available have the correct security measures in place to ensure that the sensitive data held within them remains secure. We predict security risks in the financial sector will be a key threat area in 2015.   With this in mind, it is vital that mobile application security is a top priority as bank, payment providers and customers continue to do more on the mobile platform.

    How big is the threat?

    Mark Noctor

    Mark Noctor

    With mobile now a mainstay in the financial sector, the threat to banking and payment applications is high with hackers keen to gain access to the valuable data held within them for nefarious gains. We recently conducted in-depth research into the State of Mobile App Security, which revealed that 95% of the top 100 Android financial apps and 70% of iOS apps have been subject to hacking in the past year. Supporting this alarming statistic is research conducted by RiskIQ®showing that more than 40,000 (or 11 percent) of the 350,000 apps which reference banking in the world’s top 90 app stores contain malware or suspicious binaries.

    These research findings clearly highlight the criticality for application security to be a top priority and an integral component of upholding consumer data privacy. With this in mind,banking and payment customers can be more informed about what steps or questions they should be considering in their use of a mobile financial application.  Such considerations can help to ensure increased security and protection of their data.

    Asking the Right Questions

    For customers who are using or considering banking or financial applications, the four following considerations should be undertaken to increase the level of security surrounding mobile financial transactions.

    1. Rule number one is to only download banking and payment applications from official app stores. To some this may sound obvious but it is amazing how easy it can be to be duped into downloading an app from an illegitimate site that has been engineered to look like the real thing. To safeguard against the risk of this happening there is a capability to ensure that your phone settings are set to prevent any app downloads from unofficial stores.
    1. Has the bank or financial institution built in protection to ensure the app cannot be reverse engineered? Don’t be afraid to ask the question to your provider and put the app under the scrutiny that it deserves. After all, these apps will hold valuable and private information relating to your individual service, payments and transactions history. Typically, reverse engineering is the first step used by app hackers to infiltrate an app ecosystem. This is easily achieved by leveraging simple hacker tools found on the internet that can be used to engineer the app back to its original source code.  In doing so, hackers can analyse the app and understand critical parts of the app for tampering of app functionality or malware insertion that will provide them with unauthorised access or send sensitive information where it shouldn’t be going.If there are no safeguards in place to stop hackers from reverse engineering the app then it can leave you and your data wide open.
    1. Again this may sound basic but don’t connect to your banking app, or any other sensitive app or account, over public and unsecured Wi-Fi. We are all guilty sometimes of trying to get something done in a rush and with mobile apps designed to make our lives easier when we are on the go it is possible to forget the basics. But think of it like this – would you say your pin number out loud when making an in-store payment? No, you wouldn’t because then everybody in the vicinity could hear it. Public Wi-Fi works the same way. If the network is unsecured then anybody could either inadvertedly or maliciously gain access to the app and possibly gain full access to your banking or payment details and, potentially, information stored on other apps on your phone. If public Wi-Fi is unavoidable, perhaps because you travel and spend a lot of time in cafes, hotels or airports, then pay for access to a Virtual Private Network (VPN) that will significantly improve your privacy on these networks.
    1. Another question for your bank is whether they have deployed application self-protections for the apps. You can’t wholly rely on mobile anti-virus, anti-spam or the enterprise wide device security solutions already residing on your phone. For example, these solutions do not provide sufficient protection against app hacking attacks. This is clearly evidenced by the recent app attacks that have been launched, namely Wirelurker or Masque. For the greatest security available, many of the leading mobile app developers of financial services are building self-protections into the application development process for both runtime and ‘at-rest’ defence against hacker attacks.  Does your financial institution deploy application self-protections to prevent or mitigate these app risks?

    Don’t compromise on Security

    The need to prioritise the protection of sensitive and highly valuable data is more important than ever, with the app ecosystem in the financial sector rapidly expanding and everything from payment transactions to brokering now occurring on the mobile platform. With mobile banking and payments becoming a main fixture in the financial sector, it is important for application security to be a top priority so that data privacy protections are continuously upheld.

    Related Posts
    Treasury transformation must be built on accountability and trust
    Treasury transformation must be built on accountability and trust
    Financial services: a human-centric approach to managing risk
    Financial services: a human-centric approach to managing risk
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    How Integral’s CTO Chidambaram Bhat is helping to solve  transfer pricing problems through cutting edge AI.
    How Integral’s CTO Chidambaram Bhat is helping to solve transfer pricing problems through cutting edge AI.

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Previous Technology PostAPPLE PAY 2.0 BRINGS THE VALUE
    Next Technology PostCOLOCATION DOESN’T HAVE TO BE AN EITHER OR WHERE CLOUD IS CONCERNED

    More from Technology

    Explore more articles in the Technology category

    Why Physical Infrastructure Still Matters in a Digital Economy

    Why Physical Infrastructure Still Matters in a Digital Economy

    Why Compliance Has Become an Engineering Problem

    Why Compliance Has Become an Engineering Problem

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    How Nclude.ai   turned broken portals into completed applications

    How Nclude.ai turned broken portals into completed applications

    The Silent Shift: Rethinking Services for a Digital World?

    The Silent Shift: Rethinking Services for a Digital World?

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    View All Technology Posts