kaspersky fraud prevention: digital banking

13
© 2015 Kaspersky Lab. All rights reserved. ONLINE BANKING THREATS Alexander Ermakovich

Upload: alexander-ermakovich

Post on 13-Aug-2015

41 views

Category:

Documents


4 download

TRANSCRIPT

Page 1: Kaspersky Fraud Prevention: Digital Banking

© 2015 Kaspersky Lab. All rights reserved.

ONLINE BANKING THREATS Alexander Ermakovich

Page 2: Kaspersky Fraud Prevention: Digital Banking
Page 3: Kaspersky Fraud Prevention: Digital Banking

TYPICAL PHISHING ATTACK

FAKE

!

Page 4: Kaspersky Fraud Prevention: Digital Banking

MAN IN THE BROWSER

Customer makes the transfer but malware changes destination and amount

Website seen by Bank

Website seen by Customer

Page 5: Kaspersky Fraud Prevention: Digital Banking

MOBILE FAKE APPLICATIONS

Page 6: Kaspersky Fraud Prevention: Digital Banking

SECOND FACTOR STEALING FINAL STEP

2. SMS “Security Update”

Zeus-infected PC

4. Legit SMS now forwarded to Fraud Phone

3. ZitMo

1. Phone number entered

Page 7: Kaspersky Fraud Prevention: Digital Banking
Page 8: Kaspersky Fraud Prevention: Digital Banking

Account Takeover

An account takeover can happen when a fraudster or computer criminal poses as a genuine customer, gains control of an account and then makes unauthorized transactions

Transaction Tampering

Illegitimate financial transactions by means of changing transaction details, or creating a new transaction on behalf of the customer

THE PROBLEMS

Page 9: Kaspersky Fraud Prevention: Digital Banking

TYPICAL ATO ATTACK

Phase 1

Phase 2

Phase 3

Sell Credentials

Data Breach

Man-in-the

-middleSocial

Engeneering

Phishing, SMiShing

Steal user credentials

Validation

Attack

Surveillance

Malware

Brute Force

Bots

Page 10: Kaspersky Fraud Prevention: Digital Banking
Page 11: Kaspersky Fraud Prevention: Digital Banking

MANAGEMENT & PROTECTION

KASPERSKY FRAUD PREVENTION PLATFORM

Clientless Engine

USER PROTECTION

Endpoints & Mobile

SECURITY INTELLIGENCE SERVICES

Kaspersky Security Network

Page 12: Kaspersky Fraud Prevention: Digital Banking

WHY KASPERSKY?

FAST DELIVERY

Page 13: Kaspersky Fraud Prevention: Digital Banking

HAPPY END