Home Today's Paper Most Popular Video Gallery Photo Gallery
Subscription Blog Signin Register
Logo
Tuesday, March 19, 2019 12:37:49 PM
Follow Us On: Facebook Twitter Twitter Twitter Twitter

Cyber attacks growing problem in developing nations

By
11th-Oct-2018       
Comments
Share your thought
Post a comment »
Read all () »

Silvia Baur-Yazbeck  :
Few experiences undermine a digital financial services (DFS) customer's finances and trust in DFS like becoming the victim of a cybercrime. This is especially true of low-income customers, who are least able to rebound from the losses, and of the newly banked, whose trust in financial services may be fragile.
Unfortunately, cybercrime is a growing problem in developing countries, where customers often conduct financial transactions over unsecure mobile phones and transmission lines that are not designed to protect communications. In Africa, the number of successful attacks against the financial sector doubled in 2017, with the biggest losses hitting the mobile financial services sector. DFS providers must adopt stronger cybersecurity measures to protect themselves and their customers. But which threats pose the greatest risk today?
In 2017, CGAP surveyed 11 DFS providers operating in Africa to understand how they perceive and mitigate cyber risks. We learned that all of them have been affected by cybersecurity incidents and are at various stages of implementing cybersecurity measures in their organizations.
While they are still most concerned about better-known types of fraud in DFS, such as malicious employees and agents, they are seeing themselves confronted with four types of risks emerging in cyberspace.
Social engineering
In a social engineering attack, the criminal tricks the victim into revealing sensitive information or downloading malware, which opens the doors to physical locations, systems or networks. The idea is to exploit a vulnerable person rather than a vulnerable system. DFS providers from Ghana, Kenya, Tanzania, Uganda and Zambia told us that fraudsters had duped their employees into sharing their user login details and then accessed corporate information systems. Most DFS providers consider careless or unaware employees to be a major factor in their organization's cyber risk exposure.
But DFS customers are a vulnerability, too. The newly banked are more likely to fall victim to this type of scheme because of their limited experience with digital fraud. Providers can guard against social engineering through regular awareness and education campaigns. It is also important to appropriately manage user access rights, introduce system log monitoring processes and require two individuals for completing sensitive transactions (i.e., maker-checker controls).
Data breaches
Using malware or social engineering, hackers can gain access to valuable information, such as credit card numbers, customer personal identification numbers, login credentials and government-issued identifiers. Weak patch management, legacy systems and poor system log monitoring were cited as the main reasons why DFS providers' systems are susceptible to hacking attacks. In addition to financial losses that can result from a data breach, providers' reputation and customers' trust are at risk. In 2017, thieves breached a DFS provider's systems in Kenya and stole hundreds of customers' identities.
The fraudsters accessed sensitive customer information, such as account types and last transactions, which allowed them to pass as legitimate customers and apply for loans in the victim's name. To protect against data breaches, DFS providers need to regularly update their systems and software, patch their systems, use strong encryption for data at rest and in transit and implement 24/7 system log monitoring.
Outages & denial of service attacks
DFS providers sometimes experience system outages during routine system upgrades or patches. Earlier this year, an upgrade gone awry left DFS users in Zimbabwe without access to their digital money for two days. Systems unavailability can also be the result of a cyberattack. For example, in 2017, M-Shwari customers in Kenya were left without access to their savings and loan products for five days. And, after the outage, several found inconsistencies in their account balances. The most frequent form of attacks that cause system unavailability are denial-of-service attacks.
In a denial-of-service attack, cyber criminals overwhelm a server by flooding it with simultaneous access requests, depriving legitimate users of access to the system.
In most cases, the objective is to harm the business. Yet, in some cases, cyber criminals have launched denial-of-service attacks to distract attention from an attempt to gain access to the system.
Effective countermeasures include continuous network traffic monitoring to identify and detect attacks while allowing legitimate traffic to reach its destination, a solid and tested incident response plan that allows for quick reaction in an emergency and strong change management processes and disaster recovery planning.
Third-party threats
DFS providers rely on third parties for a range of services, such as mobile network, information technology and data storage solutions. Sometimes, these providers misuse their system rights to access confidential customer information that they can sell or use for social engineering.
Also, a third party that handles sensitive information may not have appropriate safeguards against cyberattacks, putting at risk the confidentiality and integrity of the DFS provider's customer data. To address third-party threats, DFS providers should implement due diligence reviews of current and potential partners, including reviews of their security policies and practices.
Impact on low-income customers
If physical money used to be kept safe in bank vaults, what is protecting money now that it is digital? This is a financial inclusion question because the answer is especially important for low-income customers. In developed countries, it is usually the financial services provider that is legally responsible for bearing the cost of fraud. In developing countries, it is often the customer.
The experience of fraud and rumors of fraud experienced by others causes mistrust in DFS, especially among lower-income consumers. The DFS providers we spoke with in Africa recognize their need to invest more in cybersecurity for both themselves and their customers.
They acknowledge that better safeguards are needed to mitigate threats and be better prepared to respond to incidents. Failure to take the relevant steps could deter people from entering the formal financial system and significantly harm consumers and markets.
- IPS

Tariff
Add Rate

News Archive

Inside The New Nation

Football »

Bangladesh Ambassador in Nepal meet women booters


Bangladesh's ambassador in Nepal Mashfee Binte Shams yesterday paid a surprise visit at Xenial Hotel to motivate the Bangladesh eve football team ahead of the Bangladesh's semifinal clash of the SAFF Women's Championship, according to message received here from Bangladesh Football Federation.Mohammed Al Alamul Emam (Councilors and Head of Chancery) ...

Football »

PSG shrug off fan protest to beat rivals Marseille


Angel Di Maria scored twice as Paris Saint-Germain eased to a 3-1 victory over Marseille on Sunday to extend their long unbeaten run against their arch rivals and move 20 points clear at the Ligue 1 summit.A group of PSG ultras were boycotting the opening stages of the game over ...

International »

US-backed force says it has taken positions in IS Syria camp


Reuters, Baghouz, Syria :U.S.-backed fighters said they had taken positions in Islamic State's last enclave in eastern Syria and air strikes pounded the tiny patch of land beside the Euphrates River early on Monday, a Reuters journalist said.Smoke rose over the tiny enclave as warplanes and artillery bombarded it. Another ...

International »

New gun laws to make New Zealand safer after mosque shootings, says PM Ardern


Reuters, Christchurch :New Zealand Prime Minister Jacinda Ardern said on Monday she would announce new gun laws within days, after a lone gunman killed 50 people in mass shootings at two mosques in the city of Christchurch.Australian Brenton Tarrant, 28, a suspected white supremacist, was charged with murder on Saturday. ...

City »

BNP Standing Committee Member Dr. Khondkar Mosharraf Hossain speaking at a memorial meeting on former Secretary General of BNP Khondkar Delwar Hossain at the Jatiya Press Club on Monday on the occasion of the latter's 8th death anniversary.


Editorial »

Rohingya criminals: A new challenge for Bangladesh


ROHINGYA refugee crisis is getting critical day by day. Now unlawful activities of some Rohingya criminal groups have become headache of law enforcement agencies. A Cox's Bazar court on Sunday sent 13 Rohingyas to jail as two groups of the refugees clashed in Ukhiya's Kutupalong camp on Saturday night. Police ...

Entertainment »

Tanuja and Kajol welcome Pranutan to Bollywood


Actress Pranutan who is marking her debut with Salman Khan’s Notebook receives the sweetest message from Kajol and Tanuja. The actress, who is living her dream as she embarks on her Bollywood journey with Notebook, has received an endearing message from Kajol and Tanuja, who are her family members. Hailing ...

Football »

Zidane enjoys winning start but Atletico beaten in Bilbao


Zinedine Zidane brought Real Madrid's outcasts in from the cold and they repaid him with a win over Celta Vigo on Saturday but La Liga's title race could well be over after Atletico Madrid were beaten by Athletic Bilbao. Isco and Gareth Bale each scored in Madrid's 2-0 victory over ...

Editorial »

Land officials` wealth reports should be made public


THE Land Minister after taking charge in January openly declared a crusade against the corruption, and directed the officials and employees to submit their wealth reports by February 28. As per his order, the wealth reports have been submitted but these were not made public.  Rather, Land Secretary says the ...

International »

New Zealand digs graves as mosque massacre toll rises to 50


AP, Christchurch, New Zealand :Anguished relatives were anxiously waiting Sunday for authorities to release the remains of those who were killed in massacres at two mosques in the New Zealand city of Christchurch, while police announced the death toll from the racist attacks had risen to 50.Islamic law calls for ...

International »

Joe Biden (almost) announces he is running for President


AP, Dover :For a brief moment, former Vice President Joe Biden placed himself in the crowded field of Democratic presidential candidates during a speech on Saturday night. Biden seemingly described himself as one of the people "running" while noting he gets criticized by some progressives."I have the most progressive record ...

Entertainment »

Mim in web series


Sheikh Arif Bulbon :Few days ago, National Film Award winner actress Bidya Sinha Saha Mim acted in a web series titled Beauty & Bullet under Animesh Aich’s direction. Tahsan Khan was her co-actor in that series which yet not aired till now. Meanwhile, Mim has started shooting of Golam Sohrab ...

International »

US-Afghan tensions erupt over Kabul's exclusion from peace talks


Reuters, Washington  :The United States and Afghanistan clashed publicly on Thursday over U.S. peace talks with the Taliban, with a visiting Afghan official accusing the chief U.S. negotiator of "delegitimizing" the Kabul government by excluding it from the deliberations.The remarks by Hamdullah Mohib, a former ambassador to Washington who serves ...

Football »

FIFA votes for new Club World Cup, Euro clubs confirm boycott


FIFA will go ahead with a new 24-team Club World Cup starting in 2021, its President Gianni Infantino said on Friday, setting the world soccer governing body in conflict with Europe's top clubs.Infantino, speaking at a news conference, said FIFA had made the decision at its council meeting on Friday.The ...

City »

Children are engrossed in painting at a drawing competition organised by the Jatiya Press Club on the occasion of birthday of Bangabandhu Sheikh Mujibur Rahman and National Children's Day at the club on Saturday.


 
Items that you save may be read at any time on your computer, iPad, iPhone or Android devices.
 
Are you new to our website? Do you have already an account at our website?
Create An Account Log in here
Email this news to a friend or like someone
Email:
Write a comment to this news