Combating Banking Fraud Attacks
Arm yourself with knowledge and actionable steps to safeguard your finances against evolving banking fraud attacks.
According to the assessment made by NSA, CISA and FBI, the People’s Republic of China has sponsored cyber actors to exploit the commonly known vulnerabilities and exposures. These state-sponsored cyber actors exploit known vulnerabilities to actively target government as well as software and hardware companies to steal intellectual property and develop access into sensitive networks.
NSA, CISA, and FBI suggest governments, critical infrastructure, and private sector organizations to apply the recommendations listed in the mitigations section to increase their defensive posture and reduce the threat of compromise from the state-sponsored malicious cyber actors.
Also read: Defending Against DDoS Attacks: Strategies and Solutions
Companies affected – Apache, Pulse Connect Secure, GitLab, Atlassian, Microsoft, F5 Big-IP, VMware, Citrix ADC, Cisco, Buffalo, Hikvision, Sitecore, ZOHO.
Exploits – Remote Code Execution, Arbitrary File Read, Path Traversal, Command Line Execution, Command Injection, Authentication Bypass by Spoofing.
These state-sponsored actors continue to use virtual private networks (VPNs) to obfuscate their activities and target web-facing applications to establish initial access. Many of the vulnerabilities allow the actors to surreptitiously gain unauthorized access into sensitive networks, after which they seek to establish persistence and move laterally to other internally connected networks. PRC state-sponsored cyber actors continue to target government and critical infrastructure networks with an increasing array of new and adaptive techniques—some of which pose a significant risk to technology organizations (including telecommunications providers), Defense Industrial Base (DIB) Sector organizations, and other critical infrastructure organizations.
NSA, CISA, and FBI suggest organizations to apply the below recommendations on a regular basis:
Resources:
Arm yourself with knowledge and actionable steps to safeguard your finances against evolving banking fraud attacks.
One of the disruptions from the COVID-19 pandemic was an unprecedented shift of consumers to online channels. As the world locked down, people had no choice
Discover how to enhance scalability, reliability, agility, resilience and customer satisfaction with mainframe modernization.
Altimetrik is committed to protecting your personal information. To apply for a position, you will need to provide your email address and create a login. Your information will be used in accordance with applicable data privacy laws, our Privacy Policy, and our Privacy Notice.
