Threat landscape financial sector REST ASSURED Threat landscape financial sector Lebanon, November 2017 www.csis.dk
Threat landscape financial sector Agenda 1.00 Trends 2.00 Security solution for the financial sector 3.00 Prediction for Lebanon
Threat landscape financial sector 1.00 Trends
Sophisticated malware attack Distributing malware such as Trickbot
Sophisticated malware attack Targeting specific brands and circumvent two-factor authentication 08080808 1234 ******* 08080808 ******* 14-11-2018
CEO and supplier/vendor fraud Either compromising mail systems or using typo squatting domains
Smaller, more targeted phishing campaigns Try to phish both credit cards and/or login credentials
Mobile malware primarily targeting Android Most mobile malware is only advanced phishing attacks (overlay attacks)
Threat actors becoming more patient, more professional Carbanak case
Threat landscape financial sector 2.00 Security solution for the financial sector
CSIS eCrime solution Dedicated solution developed with the financial sector adopted in to one web portal Sharing platform Incident system Knowledge base 24/7 support platform Crimeware database Forensics system Malware statistics Early warning alerts
CSIS eCrime solution Dedicated solution developed with the financial sector adopted in to one web portal Sharing platform Incident system Knowledge base 24/7 support platform Crimeware database Forensics system Malware statistics Early warning alerts
Threat landscape financial sector 3.00 Prediction for Lebanon
Targeted attacks against employees inside the bank (SWIFT) Prediction for Lebanon Top 5 cyber security threats for the financial sector in Lebanon Targeted attacks against employees inside the bank (SWIFT) Malware attacks once functionality increases in online banking CEO and supplier/vendor fraud attack increasing Targeted phishing attacks against credit cards and logins Ransomware and extortion against banks
Thank you! Jan Kaastrup <jka@csis.dk> CSIS at glance: REST ASSURED CSIS at glance: Danish private security company founded in 2003 Advisory Board member of EC3 since 2013 100+ Employees from 25 different nationalities Data centers located across the globe 150+ financial institutions Advisors to law enforcement agencies Copenhagen Cybercrime Conference hosts Credited by Gartner Group Actionable and renowned threat intelligence Known for outstanding reversing, incident response and forensics capabilities 24/7 center with access to specialists www.csis.dk