Cyber attacks on banks: from messaging-network heists to stealthy intrusions

Regulation & securityBy: Parsa Aghabarari2 min readSource: SWIFT
Cyber attacks on banks: from messaging-network heists to stealthy intrusions

1Introduction

Breaching a bank leads directly to money or valuable customer data, attracting well-resourced groups.

2Discussion

In the 2016 Bangladesh Bank heist, attackers used compromised SWIFT credentials to issue fraudulent transfers, prompting SWIFT’s Customer Security Programme.

Groups such as Carbanak used spear phishing, watched internal processes for months, then manipulated balances, ATMs and transfers.

Customer-side threats: OTP-stealing mobile malware, fake gateways, account takeover and ATM jackpotting.

Lessons: segmentation, MFA, behavioural monitoring, four-eyes approval and independent reconciliation.

3Conclusion

Cybersecurity belongs in enterprise risk management at board level.

Share:TelegramWhatsAppLinkedIn

Sources

  1. SWIFT ↗
  2. Civilica ↗
همفکران فناوری شریفThis article summarises the official sources cited, prepared by the Hamfekran Fanavari Sharif team for finance leaders.
Want to see these solutions in your organisation?Book a free demo

Related articles

Regulation & securityDigital customer onboarding (eKYC): opening accounts without visiting a branchRemote identity verification is the gateway to digital banking; the challenge is balancing convenience with fraud resistance.Regulation & securityPCI DSS v4: card data security in the digital payments eraAny organisation storing, processing or transmitting card data faces PCI DSS; v4 introduces a more flexible, risk-based approach.Regulation & securityInformation security risk management: from assets to management decisionsAbsolute security does not exist; informed risk management targets security spending.Regulation & securityRespected cybersecurity certifications: from CISSP to OSCPProfessional certifications are the global job market’s common language; knowing each one’s role helps choose well.