Phishing hits one in four Asian banks

By Vivian Yeo, ZDNet Asia
Friday, June 27, 2008 03:31 PM

Banks in the region are realizing the importance of online transaction security but not many have taken steps to address this, according to a new study.

ReadiMinds, which released the survey results, said in a statement Thursday that over 25 percent of banks in Asia have been targets of phishing attempts in the past year. Headquartered in Singapore, ReadiMinds provides security software targeted at financial institutions.

Conducted this month, the survey covered banking institutions in Bangladesh, Cambodia Hong Kong, Indonesia, Malaysia, the Philippines, Singapore, Sri Lanka, Taiwan, Thailand and Vietnam. ReadiMinds did not disclose to ZDNet Asia the number of respondents.

Some 20 percent of banks in the region have implemented stronger online security--in the form of two-factor authentication (2FA)--and the trend is growing, said ReadiMinds. Software-based 2FA is becoming the preferred mode of second-factor authentication, over hardware tokens.

In addition, only 20 percent of financial institutions surveyed had a formal plan to heighten customer awareness against online fraud and identity theft.

Adopting a risk-based approach
A ReadiMinds spokesperson told ZDNet Asia in an e-mail Thursday that most banks have currently not adopted a risk-based approach toward online transactional security. For example, the systems do not factor in the country from which the customer is making a transaction, or the transaction amount.

"They (the systems) follow the same process irrespective of whether you are undertaking the banking transaction from Singapore or Nigeria, or whether you are transferring $200 or $1,000," the spokesperson said.

Applying risk-based transaction authorization, fraud detection and strong user authentication are key to a holistic approach to transaction security, said ReadiMinds.

According to the survey, over 30 percent of banks that have recently implemented stronger online security had adopted a risk-based approach.


WORTHWHILE?

2

2 votes
Blog

Talkback 1 comments

Data theft, breach, online security
There is something that is helping a lot of people, judging by the business blogs I've been reading. It's a defined eCulture called 'The Business-Technology Weave' - it helps to influence employee behavior and morale. The book I.T. Wars: Managing the Business-Technology Weave in the New Millennium is the leading voice, and concentrates on the solution--it helps to influence employee behaviour as regards security, use and integrity of data--as well as protection of hard assets (such as laptops).
The book I.T. Wars is the leading voice, and concentrates on the solution – a proactive treatment and training of people, and reinforcements to their corresponding security awareness. I'd love to see a feature that includes this author's viewpoints - this is relevant: www.businessforum.com/DScott_02.html . Some good stuff here too: www.david-scott.net . We use his book at work - stupid mistakes like deleted and misplaced data have dropped tremendously. Our CEO even requires our vendors to read it.
Posted by John Franks on Friday, June 27 2008 09:12 PM

Guest user

Guest user

Level: 
Joined: —
Already a member? Log in »



 

Loading...

Tech Jobs Now!

How to recession-proof IT

Tech Management

In the current economic environment, IT is well positioned to make a compelling case for strategic spending that can help weather the storm.


Read more »



  • HPC Applications

    Ever wondered if High Performing Computing systems really matter in our day-to-day world? Let Dr David Scott from Intel take you a for quick tour on developing HPC applications.
    Play video


  • Maximize IT Spend: Business Acceleration

    How do you ensure your IT solutions are well integrated and streamlined across your enterprise? Rajen from Oracle highlights the important considerations ...
    Play video


  • HPC Architecture: Explained

    Why is High Performance Computing increasingly in demand in today's businesses? Find out which is the most widely deployed HPC architecture today.
    Play video

Tags

  1. apps
  2. attack
  3. attacks
  4. bank
  5. card
  6. chrome
  7. cisco
  8. data
  9. details
  10. facebook
  11. fix
  12. flaw
  13. flaws
  14. google
  15. hack
  16. issues
  17. makes
  18. malware
  19. mcafee
  20. microsoft
  21. patches
  22. privacy
  23. researchers
  24. risk
  25. security
  26. symantec
  27. uk
  28. updates
  29. us
  30. vmware

No-holds barred on netbooks

Blog thumbnail

The journalist group that I belong to, CyberPress, held our regular industry forum last Friday and I should say that it was the best that we've ever had since we..... by Melvin G. Calimag

Read more »