Skip to content
  • Latest News
  • RESULTS is recognized for its commitment to hiring veterans!
  • CALL: (877) 435-8877
  • SUPPORT: (866) 928-8393
  • CALL: (877) 435-8877
Results TechnologyResults Technology
  • Home
  • About
    • About RESULTS
  • Services
    • Fully Managed IT Solutions for Community Banks
    • Co-Managed IT Services
    • Cloud Consulting
    • Cybersecurity for Banks: Invicta
    • IT Compliance Solutions
    • Business Continuity & Disaster Recovery
    • IT Consulting
    • Advisory Services
  • Who We Serve
    • Community Banks
    • Credit Unions
    • Financial Institutions
  • Resources
    • Blog
    • Testimonials
  • Contact
    • Careers
    • Contact Tech Support
    • Request a Speaker
  • Schedule IT Risk Assessment
  • Contact Helpdesk
Security

Top security threats to financial services

Posted on March 6, 2019February 10, 2021 by RESULTS Technology
keys on a fishhook
06
Mar

Hackers go for the gold. This means that banking information makes for the number one target. These cyber attacks lead to the theft of large sums of money, undermine the economic stability of individuals and organizations, as well as destroy the reputation of banks and other financial institutions. When these incidents occur, the damage can be irreversible and substantial. As such, business owners should learn about the evolving security threats and identify the modus operandi of cybercriminals. Let’s take a closer look.

Related E-book: FINRA Compliance and Data Protections

Extortion
Distributed denial of service (DDoS) attacks, which are typically delivered from massive botnets of zombie computers or internet of things (IoT) devices, have been used to bring down banking networks. This occurs when a targeted server or system is overwhelmed by multiple compromised networks. It’s essentially like a traffic jam clogging up the highway, preventing regular traffic from arriving at its intended destination.

Some cybercriminals are relentless with DDoS attacks and follow them up with cyberextortion, demanding payment in return for release from costly downtime. Banks cannot defend against these attacks alone, so they rapidly share information among themselves through organizations such as FS-ISAC4 and rely upon the ability of their internet service provider to handle and redirect massive quantities of traffic.

Social media attacks
This happens when fraudsters use fake profiles to gather information for social engineering purposes. Thankfully, with new regulations such as the General Data Protection Regulation (GDPR), big companies like Facebook and Twitter have significantly enhanced their security and privacy policy with regards to their data handling practices. The unprecedented reach of social media is something companies cannot afford to ignore because of the possible implications a data breach can have on businesses.

Spear phishing
Spear phishing is an attack where cybercriminals send out targeted emails ostensibly from a known or trusted sender in order to trick the recipient into giving out confidential information. Over the years, hackers have upped their game and cast a bigger net, targeting unwitting employees to wire money. This attack is called business email compromise (BEC), where a fraudster will purport to be a CEO or CFO and request for large money transfers to bogus accounts.

White Paper: “A Human Firewall is Your Best Cyber Security Tool”

Point-of-sale (PoS) malware
PoS malware targets PoS terminals to steal customer payment (especially credit card) data from retail checkout systems. Cybercriminals use a memory scraper that operates by instantly detecting unencrypted type 2 credit card data, which is then sent to the attacker’s computer to be sold on underground sites.

ATM malware
GreenDispenser is an ATM-specific malware that infects ATMs and allows criminals to extract large sums of money while avoiding detection. Recently, reverse ATM attacks have also emerged. Here, PoS terminals are compromised and money mules reverse transactions after money is withdrawn or sent to another bank account. In October 2015, issuers were mandated to shift to EMV or Chip-and-PIN system to address the weakness of the previous payment system.

Credential theft
Dridex, a well-known credential-stealing software, is a banking Trojan that is generally distributed through phishing emails. It infects computers, steal credentials, and obtain money from victims’ bank accounts.

Other sophisticated threats
Various data breach methods can be combined to extract data on a bigger scale. Targeting multiple geographies and sectors at once, this method normally involves an organized crime syndicate or someone with a highly sophisticated setup. For example, the group Carbanak primarily targeted financial institutions by infiltrating internal networks and installing software that would drain ATMs of cash.

Additionally, with the rise of cryptocurrency, cybercriminals are utilizing cryptojacking, a method that involves the secret use of devices to mine cryptocurrency.

The creation of defensive measures requires extensive knowledge of the lurking threats, and our team of experts is up to date on the latest security information. If you have any questions, feel free to contact us to find out more about Tactics, Techniques and Procedures (TTPs) and other weapons in the hacker’s toolbox.

Published with permission from TechAdvisory.org. Source.
This entry was posted in Security and tagged 2019march6security_b, account, attack, bank, crime, customer, cyber, financial, industry, money, safety, sector, security, target, threat.
RESULTS Technology

How can MSPs optimize healthcare?
The cloud is more secure than you think
Recent Posts
  • How Fidelity State Bank Achieved IT Compliance Success
  • Windows 10 Is Past End of Life: What Banks Still Using It Need to Do Now
  • What Should Be in a Bank Event Logging Policy?
  • How to Run a Bank Incident Response Tabletop Exercise That Actually Improves Readiness
  • What Is IT Asset Management and Why Do Bank Examiners Care About It?

RESULTS Technology provides managed IT services specifically for community banks in Kansas City, Overland Park, Wichita, Topeka, and Dodge City. Our solutions include cybersecurity, compliance management, cloud services, and 24/7 IT support, helping banks operate securely, efficiently, and without technology disruptions.

Services

Managed IT Services
Co-Managed IT Services
Cloud Consulting
IT Compliance
Cybersecurity
IT Consulting
Advisory Services

Locations

Kansas City
Overland Park
St. Louis
Olathe
Shawnee
Wichita
Topeka
Dodge City

Contact Us

12022 Blue Valley Parkway, #524 Overland Park, KS 66213

(913) 928-8300

15455 Manchester Rd, #3711 Ballwin, MO 63011

(314) 222-2600

1321 Burlington St, #202
North Kansas City, MO 64116

(314) 916-9438

Copyright © 2026 All Rights Reserved. Powered by Lemonade Stand. | Privacy Policy
  • Home
  • About
    • About RESULTS
  • Services
    • Fully Managed IT Solutions for Community Banks
    • Co-Managed IT Services
    • Cloud Consulting
    • Cybersecurity for Banks: Invicta
    • IT Compliance Solutions
    • Business Continuity & Disaster Recovery
    • IT Consulting
    • Advisory Services
  • Who We Serve
    • Community Banks
    • Credit Unions
    • Financial Institutions
  • Resources
    • Blog
    • Testimonials
  • Contact
    • Careers
    • Contact Tech Support
    • Request a Speaker

Download Now

Co-Managed IT Solutions For Banks

This field is for validation purposes and should be left unchanged.
Name(Required)

Co a managed gated download

Download Now

This field is for validation purposes and should be left unchanged.
Name(Required)


10 steps to cyber resilience