Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Banking > DEFENCE AGAINST THE DARK ARTS – HOW BANKS SHOULD COUNTER THE CYBER THREAT
    Banking

    DEFENCE AGAINST THE DARK ARTS – HOW BANKS SHOULD COUNTER THE CYBER THREAT

    Published by Gbaf News

    Posted on September 27, 2013

    10 min read

    Last updated: January 22, 2026

    This image depicts the European stock market trends, reflecting recent fluctuations. It highlights the balance between rising industrial shares and healthcare losses, relevant to the article on European financial markets.
    European stock market graphic illustrating flat trading amid industrial gains - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Geoff Webb, director, solution strategy, NetIQ

    DEFENCE AGAINST THE DARK ARTS

    DEFENCE AGAINST THE DARK ARTS

    Since the earliest incarnations of the banking industry, security has always been of the highest priority. While security mechanisms have evolved from those times, the mechanisms defending high-street banks are still extensive with pin numbers, safes, security doors and alarms all part of their arsenal.

    Fortunately, these solutions have made it nigh on impossible for criminals to gain access to cash held on site and bank breaches have almost been forgotten as the primary target for criminals. Unfortunately while the physical threat has receded the virtual threat has grown, with it now posing a very real danger to both retail and investment banks. Criminals are no longer limited to stealing what they can carry from a bank as they can steal far more data by going online. The internet has created a situation where criminals now assume far less risk to themselves, for far greater rewards. Funds stolen by cyber criminals dwarf the amount their physical forbears could ever hope to have escaped with, and data thefts can be far more damaging than stolen funds.

    The techniques used by modern cyber criminal are sophisticated and varied in their approach. One technique that has come to the fore in recent years is the Distributed Denial of Service (or DDoS) attack, where criminals flood a bank’s server with requests in an attempt to bring down its network. Research by analysts has uncovered a number of DDoS attacks that have taken place as a way of diverting the attention of IT security teams while millions is being stolen through fraudulent wire transfers. The DDoS attacks do not even need to succeed in bringing down a whole network, a slower network can cause a trading floor to seize up entirely causing considerable financial losses. Internet Service Providers (ISPs) are usually effective at responding to a DDoS attack, providing much needed support when they take place. However, when a DDoS attack does take place it is imperative that banking institutions don’t focus all their attention on this intrusion, as the main attack may in fact be occurring elsewhere undetected.

    Geoff Webb

    Geoff Webb

    One major difficulty for banks is that modern cyber-criminals can be almost indistinguishable from genuine employees. Once inside an organisation’s perimeter a cyber criminal will immediately aim to elevate his own authorisation levels to one of a privileged employee, using the clearance to steal data and other assets. As a result, talking about insider and outside threats to banking security is an increasingly outdated way of thinking. Banks have to assume that they have already been breached and as a result need to act accordingly.

    At the same time, however, some hackers have shifted the focus of their attention away from fraud, to stealing raw company data which can be even more damaging. A customer’s personal financial information has real value to cyber-hackers as it can be sold on to other criminals running sophisticated fraud operations. If a customer’s account is compromised in this way, real damage can be incurred to that institution’s finances and reputation.

    With this growing online threat, how should banks respond? No firewall can guarantee to keep out every attacker, so it’s inevitable that their perimeter will be compromised, so how can banks limit this threat and ensure corporate information is secure and protected? There is no doubt that this is a considerable challenge as banks are global institutions with thousands of employees. Identifying one intruder posing as an employee is no mean feat.

    Some organisations try to identify the tools a hacker is using. This method is flawed as it’s easy to build unidentifiable tools but what can be uncovered is the unusual activity and behaviour a hacker displays. Is there an abnormal level of traffic going to a particular area of the bank or is data flowing in new ways around the business? Being able to spot and identify these signs gives banks a far greater chance of spotting an attack.

    While identifying the irregular signs indicating an intrusion is important, ultimately actions need to be taken to prevent an attacker getting a foothold within the bank to begin with. This comes down to carefully controlling what employees can access and ensuring they can only access the data they need. An individual may move departments and not need the access they previously had, this should be acted upon but in reality many organisations struggle to implement this approach. Limiting access across an organisation makes it easier to spot hackers masking themselves as employees and better protects resources. Once this is in place it makes it far easier for the IT team to identify the eratic behaviour of a hacker and mitigate their effect.

    The final action banks need to take is to put in place a plan of action for when a bad actor is found. What is the response? Who should be informed? Without this in-depth planning which seems obvious to many, organisations can end up struggling to respond effectively, leaving themselves exposed to greater damage.

    Banks need to make available the time and resource to manage the access rights of their employees and get back on the front foot in the struggle with cyber criminals. If this is overlooked it will become increasingly difficult for banks to spot irregular behaviour early and mitigate the effects. Cyber attacks aren’t about to go away and banks need to ensure that they have the tools and processes in place to reduce the chances for fraud or a damaging data breach.

    Geoff Webb, director, solution strategy, NetIQ

    DEFENCE AGAINST THE DARK ARTS

    DEFENCE AGAINST THE DARK ARTS

    Since the earliest incarnations of the banking industry, security has always been of the highest priority. While security mechanisms have evolved from those times, the mechanisms defending high-street banks are still extensive with pin numbers, safes, security doors and alarms all part of their arsenal.

    Fortunately, these solutions have made it nigh on impossible for criminals to gain access to cash held on site and bank breaches have almost been forgotten as the primary target for criminals. Unfortunately while the physical threat has receded the virtual threat has grown, with it now posing a very real danger to both retail and investment banks. Criminals are no longer limited to stealing what they can carry from a bank as they can steal far more data by going online. The internet has created a situation where criminals now assume far less risk to themselves, for far greater rewards. Funds stolen by cyber criminals dwarf the amount their physical forbears could ever hope to have escaped with, and data thefts can be far more damaging than stolen funds.

    The techniques used by modern cyber criminal are sophisticated and varied in their approach. One technique that has come to the fore in recent years is the Distributed Denial of Service (or DDoS) attack, where criminals flood a bank’s server with requests in an attempt to bring down its network. Research by analysts has uncovered a number of DDoS attacks that have taken place as a way of diverting the attention of IT security teams while millions is being stolen through fraudulent wire transfers. The DDoS attacks do not even need to succeed in bringing down a whole network, a slower network can cause a trading floor to seize up entirely causing considerable financial losses. Internet Service Providers (ISPs) are usually effective at responding to a DDoS attack, providing much needed support when they take place. However, when a DDoS attack does take place it is imperative that banking institutions don’t focus all their attention on this intrusion, as the main attack may in fact be occurring elsewhere undetected.

    Geoff Webb

    Geoff Webb

    One major difficulty for banks is that modern cyber-criminals can be almost indistinguishable from genuine employees. Once inside an organisation’s perimeter a cyber criminal will immediately aim to elevate his own authorisation levels to one of a privileged employee, using the clearance to steal data and other assets. As a result, talking about insider and outside threats to banking security is an increasingly outdated way of thinking. Banks have to assume that they have already been breached and as a result need to act accordingly.

    At the same time, however, some hackers have shifted the focus of their attention away from fraud, to stealing raw company data which can be even more damaging. A customer’s personal financial information has real value to cyber-hackers as it can be sold on to other criminals running sophisticated fraud operations. If a customer’s account is compromised in this way, real damage can be incurred to that institution’s finances and reputation.

    With this growing online threat, how should banks respond? No firewall can guarantee to keep out every attacker, so it’s inevitable that their perimeter will be compromised, so how can banks limit this threat and ensure corporate information is secure and protected? There is no doubt that this is a considerable challenge as banks are global institutions with thousands of employees. Identifying one intruder posing as an employee is no mean feat.

    Some organisations try to identify the tools a hacker is using. This method is flawed as it’s easy to build unidentifiable tools but what can be uncovered is the unusual activity and behaviour a hacker displays. Is there an abnormal level of traffic going to a particular area of the bank or is data flowing in new ways around the business? Being able to spot and identify these signs gives banks a far greater chance of spotting an attack.

    While identifying the irregular signs indicating an intrusion is important, ultimately actions need to be taken to prevent an attacker getting a foothold within the bank to begin with. This comes down to carefully controlling what employees can access and ensuring they can only access the data they need. An individual may move departments and not need the access they previously had, this should be acted upon but in reality many organisations struggle to implement this approach. Limiting access across an organisation makes it easier to spot hackers masking themselves as employees and better protects resources. Once this is in place it makes it far easier for the IT team to identify the eratic behaviour of a hacker and mitigate their effect.

    The final action banks need to take is to put in place a plan of action for when a bad actor is found. What is the response? Who should be informed? Without this in-depth planning which seems obvious to many, organisations can end up struggling to respond effectively, leaving themselves exposed to greater damage.

    Banks need to make available the time and resource to manage the access rights of their employees and get back on the front foot in the struggle with cyber criminals. If this is overlooked it will become increasingly difficult for banks to spot irregular behaviour early and mitigate the effects. Cyber attacks aren’t about to go away and banks need to ensure that they have the tools and processes in place to reduce the chances for fraud or a damaging data breach.

    More from Banking

    Explore more articles in the Banking category

    Image for Latin Securities Named Winner of Two Prestigious 2026 Global Banking & Finance Awards
    Latin Securities Named Winner of Two Prestigious 2026 Global Banking & Finance Awards
    Image for Pix at five years: how Brazil built one of the world’s most advanced public payments infrastructures - and why other countries are paying attention
    Pix at five years: how Brazil built one of the world’s most advanced public payments infrastructures - and why other countries are paying attention
    Image for Idle Stablecoins Are Becoming a Systemic Efficiency Problem — and Banks Should Pay Attention
    Idle Stablecoins Are Becoming a Systemic Efficiency Problem — and Banks Should Pay Attention
    Image for Banking Without Boundaries: A More Practical Approach to Global Banking
    Banking Without Boundaries: A More Practical Approach to Global Banking
    Image for Lessons From the Ring and the Deal Table: How Boxing Shapes Steven Nigro’s Approach to Banking and Life
    Lessons From the Ring and the Deal Table: How Boxing Shapes Steven Nigro’s Approach to Banking and Life
    Image for The Key to Unlocking ROI from GenAI
    The Key to Unlocking ROI from GenAI
    Image for The Changing Landscape of Small Business Lending: What Traditional Finance Models Miss
    The Changing Landscape of Small Business Lending: What Traditional Finance Models Miss
    Image for VestoFX.net Expands Education-Oriented Content as Focus on Risk Awareness Grows in CFD Trading
    VestoFX.net Expands Education-Oriented Content as Focus on Risk Awareness Grows in CFD Trading
    Image for The Hybrid Banking Model That Digital-Only Providers Cannot Match
    The Hybrid Banking Model That Digital-Only Providers Cannot Match
    Image for INTERPOLITAN MONEY ANNOUNCES RECORD GROWTH ACROSS 2025
    INTERPOLITAN MONEY ANNOUNCES RECORD GROWTH ACROSS 2025
    Image for Alter Bank Wins Two Prestigious Awards in the 2025 Global Banking & Finance Awards®
    Alter Bank Wins Two Prestigious Awards in the 2025 Global Banking & Finance Awards®
    Image for CIBC wins two Global Banking and Finance Awards for student banking
    CIBC wins two Global Banking and Finance Awards for student banking
    View All Banking Posts
    Previous Banking PostAROUND FIVE MILLION UK CURRENT ACCOUNT HOLDERS READY TO SWITCH BANKS
    Next Banking PostVPBANK TO BE RATED AT STABLE OUTLOOK BY MOODY’S