Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > Scams – Have we created our own Catch-22?
    Business

    Scams – Have we created our own Catch-22?

    Published by Jessica Weisman-Pitts

    Posted on September 16, 2021

    9 min read

    Last updated: January 20, 2026

    A focused businesswoman seated at her office desk, using a laptop and phone, symbolizing the complexities of online security in finance. This image highlights the article's discussion on evolving authentication methods and the rise of scams.
    Businesswoman sitting in an office with a laptop and phone, representing modern authentication challenges - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    By Amir Nooriala, Chief Commercial Officer at Callsign

    Anyone who grew up with the internet as a regular feature in their lives has long had the fear of clicking on the wrong link or visiting the wrong website. One bad move online can not only compromise your devices’ security, but your entire identity.

    This fear has always been mitigated by the assurance that, if we, the consumer, do our part and follow the security instructions of the business we’re trying to engage, we’d be safe. However, that’s no longer as straightforward as it should be.

    That’s because the means of authenticating identity that businesses regularly use have long been compromised by scammers. The vulnerabilities of passwords are well known, but in the last couple of years we’ve seen a meteoric rise in fraud attacks through another authentication method – the SMS OTP (one-time-password). Whether it’s through SIM-swap attacks or the prevalence globally of SMS scam messages in which fraudsters socially engineer us into transferring away our life savings, SMS OTPs, which were once the main channel of security and communication between brands and their customers, have now become the number one channel for fraudsters. The more businesses depend on these methods to further bolster security, the more vulnerabilities they create for scammers to exploit. And often times, consumers aren’t given the choice of channel through which to authenticate themselves when interacting with these businesses. Being asked to authenticate by a business through the same channel that a fraudster is attempting to scam is ludicrous.

    Businesses and consumers now find themselves in a catch-22 – and the only way out of this cycle is for organisations to completely revolutionise their strategies for customer security to match the realities of the modern world.

    The limitations of analogue 

    The reason that our current authentication methods are vulnerable is because we have taken what are essentially analogue processes and digitised them – leaving them open to exploitation in the new online world.

    For instance, the password is a 60-year-old innovation, regularly bought and sold on the dark web for a few dollars. And while OTPs seem like a digital translation of the password, it’s merely the digitised version of a physical tool, which when used digitally is open to significantly more attack vectors from malware to SIM swap attacks and phishing.

    With individuals more reliant on digital channels than ever before due to the Covid-19 pandemic, it’s no surprise that this has led to a boom in these kinds of online scams. Customers today live in constant doubt as to whether a text message they’ve received is from a legitimate company or a criminal mimicking that business. Our own research revealed that consumers receive up to three scam texts a day, and over a quarter say they get more messages from scammers than their friends and family.

    These ploys are getting increasingly harder to spot, with some scammers even coaching victims around warning messages and security measures. But we shouldn’t be allowing customers to get to this stage, we can prevent this by re-thinking some of the channels we’re using to authenticate.

    The limitations of passwords, pins and OTPs to authenticate organisations’ customer base, have been laid bare by the pandemic.

    It’s time for businesses to begin exploring new options and look towards solutions designed and built to tackle today’s digital challenges.

    Businesses need the right technology

    The post-pandemic world we’re emerging into is much more virtualised than when we went in. That means the kind of scams mentioned above will only become more frequent and more sophisticated – unless we break the cycle and stop relying on analogue methods of authentication.

    We need to move away from a reliance on outmoded technologies such as SMS OTPs – that are now as ubiquitous with fraudsters day-to-day activities as they are as an authentication method. Looking towards more digital solutions, which are not only designed to protect digital identities, but are designed as digital first meaning they fit seamlessly into customer journeys.

    A robust way to confirm digital identities is to layer contextual data and behavioural biometrics on top of passwords, devices, or location data. This helps businesses create a strong means of confirming a person’s identity (as opposed to a password which doesn’t actually prove a person is who they say they are).

    Solutions that work to positively identify the customer whilst simultaneously identify bots and malware can work passively in the background, helping organisations to offer true personalisation. Most importantly, this empowers businesses to start investing in ways to develop digital trust with customers. By digitally transforming (instead of simply digitising), they can evolve their security challenges into new opportunities – ones that are more contextual to users and add value to their journeys.

    The most successful online businesses will be those that earn digital trust with their customers. To do this, organisations must give customers the confidence that when they interact with their business online, that they are safe.

    Businesses need to stop using the same channels to authenticate users that fraudsters are using to scams us. We must break the Catch- 22. We need to move away from SMS OTPs.

    By Amir Nooriala, Chief Commercial Officer at Callsign

    Anyone who grew up with the internet as a regular feature in their lives has long had the fear of clicking on the wrong link or visiting the wrong website. One bad move online can not only compromise your devices’ security, but your entire identity.

    This fear has always been mitigated by the assurance that, if we, the consumer, do our part and follow the security instructions of the business we’re trying to engage, we’d be safe. However, that’s no longer as straightforward as it should be.

    That’s because the means of authenticating identity that businesses regularly use have long been compromised by scammers. The vulnerabilities of passwords are well known, but in the last couple of years we’ve seen a meteoric rise in fraud attacks through another authentication method – the SMS OTP (one-time-password). Whether it’s through SIM-swap attacks or the prevalence globally of SMS scam messages in which fraudsters socially engineer us into transferring away our life savings, SMS OTPs, which were once the main channel of security and communication between brands and their customers, have now become the number one channel for fraudsters. The more businesses depend on these methods to further bolster security, the more vulnerabilities they create for scammers to exploit. And often times, consumers aren’t given the choice of channel through which to authenticate themselves when interacting with these businesses. Being asked to authenticate by a business through the same channel that a fraudster is attempting to scam is ludicrous.

    Businesses and consumers now find themselves in a catch-22 – and the only way out of this cycle is for organisations to completely revolutionise their strategies for customer security to match the realities of the modern world.

    The limitations of analogue 

    The reason that our current authentication methods are vulnerable is because we have taken what are essentially analogue processes and digitised them – leaving them open to exploitation in the new online world.

    For instance, the password is a 60-year-old innovation, regularly bought and sold on the dark web for a few dollars. And while OTPs seem like a digital translation of the password, it’s merely the digitised version of a physical tool, which when used digitally is open to significantly more attack vectors from malware to SIM swap attacks and phishing.

    With individuals more reliant on digital channels than ever before due to the Covid-19 pandemic, it’s no surprise that this has led to a boom in these kinds of online scams. Customers today live in constant doubt as to whether a text message they’ve received is from a legitimate company or a criminal mimicking that business. Our own research revealed that consumers receive up to three scam texts a day, and over a quarter say they get more messages from scammers than their friends and family.

    These ploys are getting increasingly harder to spot, with some scammers even coaching victims around warning messages and security measures. But we shouldn’t be allowing customers to get to this stage, we can prevent this by re-thinking some of the channels we’re using to authenticate.

    The limitations of passwords, pins and OTPs to authenticate organisations’ customer base, have been laid bare by the pandemic.

    It’s time for businesses to begin exploring new options and look towards solutions designed and built to tackle today’s digital challenges.

    Businesses need the right technology

    The post-pandemic world we’re emerging into is much more virtualised than when we went in. That means the kind of scams mentioned above will only become more frequent and more sophisticated – unless we break the cycle and stop relying on analogue methods of authentication.

    We need to move away from a reliance on outmoded technologies such as SMS OTPs – that are now as ubiquitous with fraudsters day-to-day activities as they are as an authentication method. Looking towards more digital solutions, which are not only designed to protect digital identities, but are designed as digital first meaning they fit seamlessly into customer journeys.

    A robust way to confirm digital identities is to layer contextual data and behavioural biometrics on top of passwords, devices, or location data. This helps businesses create a strong means of confirming a person’s identity (as opposed to a password which doesn’t actually prove a person is who they say they are).

    Solutions that work to positively identify the customer whilst simultaneously identify bots and malware can work passively in the background, helping organisations to offer true personalisation. Most importantly, this empowers businesses to start investing in ways to develop digital trust with customers. By digitally transforming (instead of simply digitising), they can evolve their security challenges into new opportunities – ones that are more contextual to users and add value to their journeys.

    The most successful online businesses will be those that earn digital trust with their customers. To do this, organisations must give customers the confidence that when they interact with their business online, that they are safe.

    Businesses need to stop using the same channels to authenticate users that fraudsters are using to scams us. We must break the Catch- 22. We need to move away from SMS OTPs.

    More from Business

    Explore more articles in the Business category

    Image for How Commercial Lending Software Platforms Are Structured and Utilized
    How Commercial Lending Software Platforms Are Structured and Utilized
    Image for Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Image for Why More Mortgage Brokers Are Choosing to Join a Network
    Why More Mortgage Brokers Are Choosing to Join a Network
    Image for From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    Image for From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    Image for Global Rankings Revealed: Top PMO Certifications Worldwide
    Global Rankings Revealed: Top PMO Certifications Worldwide
    Image for World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    Image for Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Image for The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    Image for Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    Image for Using Modern Team Management Methods to Improve Collaboration in Hybrid Work Models
    Using Modern Team Management Methods to Improve Collaboration in Hybrid Work Models
    Image for Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    View All Business Posts
    Previous Business PostOver 40% of larger UK businesses struggling to recruit
    Next Business PostA roadmap to profitability: Kickstarting a high impact Procurement Transformation starts with a realistic plan