Banks crack down on cyber-based account takeovers

Only 9 percent of corporate account takeover cyberattacks resulted in money being transferred in early 2012, a survey says

U.S. banks and their customers are doing a better job of protecting themselves against cyberattacks that result in thieves taking over commercial accounts, according to a survey released by the Financial Services-Information Sharing and Analysis Center.

In the first half of 2012, just 9 percent of cyberattacks, involving Trojans, phishing and other electronic attacks, resulted in funds leaving banks, according to the survey of 95 financial institutions and five service providers. In 2011, 12 percent of account takeover attempts resulted in money leaving the banks, while in 2009, 70 percent of attacks involved money leaving the banks, said the survey, released Wednesday.

About 2.1 of every 1,000 corporate customers were the target of account takeover attempts in the first half of 2012, compared to 3.4 per 1,000 in 2011, the FS-ISAC said. When funds were lost, wire transfers were the most frequently used method in 82 percent of the cases in 2012, although the use of the banking Automated Clearing House (ACH) network led to more than 50 percent of the losses last year.

The FS-ISAC survey, conducted by the American Bankers Association, didn't estimate the total amount of losses from corporate account takeovers. Losses from corporate account takeovers appear to be dropping in recent years, said Bill Nelson, president and CEO of FS-ISAC, a group launched in 1999 to help banks share cyberthreat information.

The U.S. Federal Deposit Insurance Corporation estimated US$120 million in activity from online banking fraud involving the electronic transfer of funds in the third quarter of 2009.

Losses are "way down" because of a number of factors, including education of corporate customers about cyberthreats, Nelson said. Corporate customers are using new account authentication methods, and some are using computers dedicated only to banking, he said.

In addition, after an uptick of account takeover activity in 2009, U.S. law enforcement agencies cracked down on criminal activity, and a number of banks were hit with lawsuits because of account takeover losses, Nelson said.

"Corporate customers have woken up," he said. "All these things have added up."

Cybercriminals may find a way around new protection methods, and that could lead to an uptick of corporate account takeover in the future, Nelson said.

Effective methods of combating corporate account takeover included customer education, shutting down compromised accounts, manual reviews of large transactions, and analysis of customer log-in patterns, according to the survey. Banks are also looking for anomalous traffic on their networks, the survey said.

Grant Gross covers technology and telecom policy in the U.S. government for The IDG News Service. Follow Grant on Twitter at GrantGross. Grant's e-mail address is grant_gross@idg.com.

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags fraudfinanceindustry verticalsIdentity fraud / theftU.S. Federal Deposit Insurance CorporationFinancial Services-Information Sharing and Analysis CenterBill NelsonAmerican Bankers Association

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Grant Gross

IDG News Service
Show Comments

Cool Tech

Toys for Boys

Family Friendly

Stocking Stuffer

SmartLens - Clip on Phone Camera Lens Set of 3

Learn more >

Christmas Gift Guide

Click for more ›

Brand Post

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Aysha Strobbe

Microsoft Office 365/HP Spectre x360

Microsoft Office continues to make a student’s life that little bit easier by offering reliable, easy to use, time-saving functionality, while continuing to develop new features that further enhance what is already a formidable collection of applications

Michael Hargreaves

Microsoft Office 365/Dell XPS 15 2-in-1

I’d recommend a Dell XPS 15 2-in-1 and the new Windows 10 to anyone who needs to get serious work done (before you kick back on your couch with your favourite Netflix show.)

Maryellen Rose George

Brother PT-P750W

It’s useful for office tasks as well as pragmatic labelling of equipment and storage – just don’t get too excited and label everything in sight!

Cathy Giles

Brother MFC-L8900CDW

The Brother MFC-L8900CDW is an absolute stand out. I struggle to fault it.

Luke Hill

MSI GT75 TITAN

I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Featured Content

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?