Thursday, June 12, 2025

Security Boulevard Logo

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Creators Network
    • Latest Posts
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming Webinars
    • Calendar View
    • On-Demand Webinars
  • Events
    • Upcoming Events
    • On-Demand Events
  • Sponsored Content
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
    • Techstrong.tv Podcast
    • TechstrongTV - Twitch
  • Library
  • Related Sites
    • Techstrong Group
    • Cloud Native Now
    • DevOps.com
    • Security Boulevard
    • Techstrong Research
    • Techstrong TV
    • Techstrong.tv Podcast
    • Techstrong.tv - Twitch
    • Devops Chat
    • DevOps Dozen
    • DevOps TV
  • Media Kit
  • About
  • Sponsor

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Security Bloggers Network 

Home » Security Bloggers Network » Digital Banking — At Risk! A Needed Defense Update

SBN

Digital Banking — At Risk! A Needed Defense Update

by Ken Palla on March 20, 2024

Over 12 years ago, I came across this new online security solution that let me look at my entire set of web and mobile transactions in real time, as the traffic came across the network. As the manager of online security, this was the best data I had ever seen. And I found out I could create real-time alerts against anomalous transactions for any transactions I had — no coding required. And it made a difference immediately. We were effectively stopping unauthorized wire transactions before the money left the bank.

As we fast forward back to today, where we are in a totally different world in 2024 and with a need for totally new solutions to prevent digital fraud in banking.

Although we have seen an explosion in social engineering for consumer financial scams (“authorized” transactions), we are also seeing a growing set of new and more challenging attacks against banks and their customers via the web, mobile and even APIs accessing customer data. So, what do I need to help with this environment? But first, let’s look at the new threats.

Techstrong Gang Youtube
AWS Hub

The New Threats

In March 2024, the Wall Street Journal reported, “Banks and other financial firms are facing a barrage of cyberattacks that aim to temporarily disrupt their websites and apps, primarily driven by a surge in hacktivists who target companies in geopolitical hot spots.” In the article, a DDoS vendor reported an increase of 154% in 2023 amongst its customers.

And earlier this year there was a cyberhack against Change HealthCare. According to The Washington Post, this company is responsible for processing 50% of US medical claims. As a result of this attack, many customers could not get their critical prescriptions on time.

Even major Internet companies are not immune. One major vendor has been in an ongoing effort to fight a nation state cyberattack within its data centers. Their critical source code is at risk. And we find Apple, long considered a safe operating system, doing security updates several times a month.

What we are seeing are cyberattacks that target crippling companies including financial institutions. With banks, there are several goals of these hackers (hacktivists as mentioned above, the old-fashioned cyber crooks and now nation states):

  • Disrupt/shut down banking
  • Steal bank data
  • Gain control of bank data center environment
  • Facilitate financial crime (e.g., establish money mule accounts)
  • Make money from bogus activity

The bad actors’ solutions are evolving from individual attackers creating bots and using fraud farms to cybercrime-as-a-service (CaaS), with teams of smart programmers developing attack code that is then purchased as a service. So, the attacks become more complex. Over time this will grow in complexity with the use of Generative AI models.

What Solutions Banks Need to Have

There has already been much discussion around protection for high volume DDoS attacks. Where less has been said is around lower volume smart (think Generative AI) attacks to gain access to applications, create bogus transactions and more. Much of this can be done by targeted automated bot activity. This is known by many.

But the more difficult part is to understand the bad guys are constantly trying new approaches to defeat the target sites — and rather frequently.

So, what I am noticing now are vendors who are focused on quickly identifying these changes in attack vectors and being able to modify their “solution” more so on the fly. For this to work, the vendor needs a broad variety of customers that catch the attention of the bad guys (think banks, large internet vendors, Gen AI vendors (the new hot target today), health care, etc.) So, a new attack vector is spotted going after one company and the vendor can pivot a solution to its other customers quickly.

Kevin Gosschalk, founder and CEO of Arkose Labs, was telling me a story where “recently an attack hit one of our Internet customers. We learned from it and quickly deployed a solution across our customer base. This capability is a real differentiator for us.”

What concerns me is that with fraudsters having relatively free access to Generative AI models (they are constantly hijacking the Gen AI prompts to get bad outcomes created), we will see a stream of “bad” attack innovation take place. It could almost be non-stop at a point. And there is no meaningful way to contain the bad guys from using Generative AI models.

So, the only good software solution to stop this is one that can constantly learn from the initial attacks. And share the updated solution quickly across the customer base. So, here, a bigger customer base is essential for this “on-demand” software update capability.

When you think of this, it is almost like a consortium process. Normally, when we think of a consortium and sharing data, it is the customer sharing data (e.g., a known money mule account number). But in this case, it is the vendor sharing the data associated with the attack involving the transactions. It is shared indirectly, with protection updates. It is also shared as raw data points with explanation to help customers protect channels that the vendor is not directly involved with.

To make this type of solution work really requires a vendor with a 24/7 operations center and live system staff with “eyes on the glass” to constantly monitor customer traffic. The obvious reason is the bad guys want to attack when the security team is off work — so evening, weekends and, yes, holidays.

In talking with Arkose Labs Chief Customer Officer Patrice Boffa, he said, “The way our operations centers are set 24/7, we can immediately detect the attack, understand how it works by identifying the attack signals and adjusting our defenses to mitigate the attack.” He also said,“Part of our solution involves using our challenge technology and the use of Generative AI to create/modify our challenge technology, quickly, as part of the defense.”

In the future, Boffa sees an acceleration of bad guys using Generative AI to mimic human behavior when executing these automated bot attacks to bypass defenses.

Summary

At the beginning of this blog, I talked about my cool fraud detection solution I found over 10 years ago and how it made such a difference. Today, I think I would be talking about these constantly changing threats that affect my account opening, my logon and my other web and mobile transactions. And how I need a vendor watching for these changes real time and working to quickly update my defenses.

The people attacking banks want to shut us down. There is no better way than to disrupt the digital channel activities. So, I need an always-on solution that catches new attacks and protects me as soon as possible after detection.

*** This is a Security Bloggers Network syndicated blog from Arkose Labs authored by Ken Palla. Read the original post at: https://www.arkoselabs.com/blog/digital-banking-at-risk-a-needed-defense-update/

March 20, 2024March 20, 2024 Ken Palla account security, bot attacks, bot detection
  • ← Pwned by the Mail Carrier
  • New Sysrv Botnet Variant Makes Use of Google Subdomain to Spread XMRig Miner →

Techstrong TV

Click full-screen to enable volume control
Watch latest episodes and shows

Tech Field Day Events

Upcoming Webinars

How to Spot and Stop Security Risks From Unmanaged AI Tools
Software Supply Chain Security: Navigating NIST, CRA, and FDA Regulations

Podcast

Listen to all of our podcasts

Press Releases

GoPlus's Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

GoPlus’s Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

Subscribe to our Newsletters

ThreatLocker

Most Read on the Boulevard

Huge Food Wholesaler Paralyzed by Hack — is it Scattered Spider Again?
BADBOX 2.0 Botnet Infects Million-Plus Devices, FBI Says
No Lollygagging: Cisco IOS XE Flaw With 10.0 Rating Should be Patched Now
Contrast Security Combines Graph and AI Technologies to Secure Applications
Trump EO Takes Aim at Biden, Obama Provisions for Identity, Sanctions, AI
OffensiveCon25 – No Signal, No Security: Dynamic Baseband Vulnerability Research
What is AI Red Teaming?
From StackStorm to DeepTempo
Scalable Solutions for NHI Management
Boost Your Confidence with Strong NHI Management

Industry Spotlight

Huge Food Wholesaler Paralyzed by Hack — is it Scattered Spider Again?
Analytics & Intelligence Cyberlaw Cybersecurity Data Security DevOps Editorial Calendar Endpoint Featured Governance, Risk & Compliance Humor Identity & Access Incident Response Industry Spotlight Malware Most Read This Week Network Security News Popular Post Ransomware Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Social Engineering Spotlight Threat Intelligence Threats & Breaches Vulnerabilities 

Huge Food Wholesaler Paralyzed by Hack — is it Scattered Spider Again?

June 10, 2025 Richi Jennings | 1 day ago 0
Meta’s Secret Spyware: ‘Local Mess’ Hack Tracks You Across the Web
Application Security Cloud Security Cyberlaw Cybersecurity Data Privacy DevOps Endpoint Featured Governance, Risk & Compliance Humor Identity & Access Incident Response Industry Spotlight Malware Mobile Security Most Read This Week Network Security News Popular Post Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Social Engineering Spotlight Threats & Breaches Vulnerabilities 

Meta’s Secret Spyware: ‘Local Mess’ Hack Tracks You Across the Web

June 4, 2025 Richi Jennings | Jun 04 0
USDA Worker, 5 Others Charged in Food Stamp Fraud Operation
Cyberlaw Cybersecurity Data Security Featured Governance, Risk & Compliance Identity & Access Industry Spotlight News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

USDA Worker, 5 Others Charged in Food Stamp Fraud Operation

May 30, 2025 Jeffrey Burt | May 30 0

Top Stories

BADBOX 2.0 Botnet Infects Million-Plus Devices, FBI Says
Application Security Cloud Security Cybersecurity Data Security Featured IoT & ICS Security Malware Mobile Security Network Security News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threat Intelligence 

BADBOX 2.0 Botnet Infects Million-Plus Devices, FBI Says

June 9, 2025 Jeffrey Burt | 2 days ago 0
Trump EO Takes Aim at Biden, Obama Provisions for Identity, Sanctions, AI
Cloud Security Cyberlaw Cybersecurity Data Security DevOps Featured Identity & Access Network Security News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

Trump EO Takes Aim at Biden, Obama Provisions for Identity, Sanctions, AI

June 9, 2025 Jeffrey Burt | 2 days ago 0
RSA Extends Reach of Passwordless Management Platform
Cybersecurity Featured Identity & Access News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

RSA Extends Reach of Passwordless Management Platform

June 9, 2025 Michael Vizard | 3 days ago 0

Security Humor

Randall Munroe’s XKCD ‘Trojan Horse’

Randall Munroe’s XKCD ‘Trojan Horse’

Download Free eBook

The Dangers of Open Source Software and Best Practices for Securing Code

Security Boulevard Logo White

DMCA

Join the Community

  • Add your blog to Security Creators Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: [email protected]

Useful Links

  • About
  • Media Kit
  • Sponsor Info
  • Copyright
  • TOS
  • DMCA Compliance Statement
  • Privacy Policy

Related Sites

  • Techstrong Group
  • Cloud Native Now
  • DevOps.com
  • Digital CxO
  • Techstrong Research
  • Techstrong TV
  • Techstrong.tv Podcast
  • DevOps Chat
  • DevOps Dozen
  • DevOps TV
Powered by Techstrong Group
Copyright © 2025 Techstrong Group Inc. All rights reserved.
×