Sony Pixel Power calrec Sony

Akamai Threat Research: Phishing and Credential Stuffing Attacks Remain Top Threat to Financial Services Organizations and Customers

01/08/2019

Akamai Threat Research: Phishing and Credential Stuffing Attacks Remain Top Threat to Financial Services Organizations and Customers Latest State of The Internet / Security Report Observes 3.5 Billion Malicious Login Attempts Targeting the Financial Services Sector; Illustrates Akamai's Unique Threat Visibility

Cambridge, MA | July 31, 2019

Newly released data from Akamai's 2019 State of the Internet / Security Financial Services Attack Economy Report has found that 50% of all unique organizations impacted by observed phishing domains were from the financial services sector. The data shows that, in addition to unique phishing attempts, adversaries also leveraged credential stuffing attacks to the tune of 3.5 billion attempts during an 18-month period, putting the personal data and banking information of financial services customers at risk.

The report indicates that between December 2, 2018 and May 4, 2019, nearly 200,000 (197,524 to be exact) phishing domains were discovered, and of those domains, 66% targeted consumers directly. When taking the phishing domains targeting consumers only into consideration, 50% of those targeted companies in the financial services industry.

We've seen a steady rise in credential stuffing attacks over the past year, fed in part by a growth in phishing attacks against consumers, said Martin McKeay, Security Researcher at Akamai and Editorial Director of the State of the Internet / Security Report. Criminals supplement existing stolen credential data through phishing, and then one way they make money is by hijacking accounts or reselling the lists they create. We're seeing a whole economy developing to target financial services organizations and their consumers.

Once criminals have succeeded in their schemes, they need to process their ill-gotten data and funds. As Akamais report highlights, one method of dealing with this situation centers on bank drops' - packages of data that can be used to fraudulently open accounts at a given financial institution. Bank drops will typically include a persons stolen identity - often called fullz by criminals online, including name, address, date of birth, Social Security details, drivers license information, and credit score. Secure access to the fraudulent accounts comes via remote desktop servers, which are matched to the geographic location of the bank and the fullz.

Financial institutions continue to investigate the ways in which criminals are opening these drop accounts, and are working diligently to stay ahead of the curve. What most businesses don't realize, however, is that criminals are recycling old attack methods.

Akamai's findings revealed that 94% of observed attacks against the financial services sector came from one of four methods: SQL Injection (SQLi), Local File Inclusion (LFI), Cross-Site Scripting (XSS), and OGNL Java Injection (which accounted for more than 8 million attempts during this reporting period). OGNL Java Injection, made famous due to the Apache Struts vulnerability, continues to be used by attackers years after patches have been issued.

In the financial services industry, criminals have also started launching DDoS attacks as a distraction to conduct credential stuffing attacks or to exploit a web-based vulnerability. Over the course of 18 months, Akamai uncovered more than 800 DDoS attacks against the financial services industry alone.

Attackers are targeting financial services organizations at their weak points: the consumer, web applications and availability, because that's what works, said McKeay. Businesses are becoming better at detecting and defending against these attacks, but point defenses are bound to fail. It requires being able to detect, analyze, and defend against an intelligent criminal who's using multiple different types of tools for a business to protect its customers. For more than twenty years, Akamai has been leveraging its unique visibility into the full spectrum of attacks to help protect customers from these types of ever-evolving nefarious activities.

The criminal economy thrives, in part, because they target the financial services industry. By targeting banks for example, criminals attempt to steal sensitive data, and then turn around and use that same data to open fake accounts and lines of credit. Its a continuous cycle of crime. There is a deep level of irony in the fact that criminals are targeting the very industry they need to survive. While financial institutions are becoming better at detecting these attacks, adversaries continue to find success with old tricks, and that's a problem.

The Akamai 2019 State of the Internet / Security Report is available for download here. For additional information where the security community can access, engage with, and learn from Akamai's threat researchers and the insight that the Akamai Intelligent Edge Platform affords into the evolving threat landscape, visit Akamai's Threat Research Hub.

About Akamai Akamai secures and delivers digital experiences for the world's largest companies. Akamai's intelligent edge platform surrounds everything, from the enterprise to the cloud, so customers and their businesses can be fast, smart, and secure. Top brands globally rely on Akamai to help them realize competitive advantage through agile solutions that extend the power of their multi-cloud architectures. Akamai keeps decisions, apps and experiences closer to users than anyone - and attacks and threats far away. Akamai's portfolio of edge security, web and mobile performance, enterprise access and video delivery solutions is supported by unmatched customer service, analytics and 24/7/365 monitoring. To learn why the world's top brands trust Akamai, visit www.akamai.com, blogs.akamai.com, or @Akamai on Twitter. You can find our global co
LINK: https://www.akamai.com/uk/en/about/news/press/2019-press/state-of-the-...
See more stories from akami

Most recent headlines

26/12/2024

M&E Not Ready to Fully Embrace AI in 2024

Talking about artificial intelligence in 2024 is akin to talking about the internet in 1994 everyone's excited about it and thinks it will have an enormous ...

26/12/2024

Check Out All the Must-See Trailers From Netflix's NFL Christmas Gameday Live

Back to All News Check Out All the Must-See Trailers From Netflix's NFL Chr...

26/12/2024

Beyonc Delivers Epic Gift of a Halftime Performance + "Beyonc Bowl" Is Coming to Netflix Soon!

Back to All News Beyonc Delivers Epic Gift of a Halftime Performance "Beyonc...

26/12/2024

Get in the Game With Squid Game' Season 2 Complete Coverage Guide

Back to All News Get in the Game With Squid Game' Season 2 Complete Coverage Guide Entertainment 26 December 2024 Global Link copied to clipboard Are...

26/12/2024

Cheers to 2024: GeForce NOW Recaps Year of Ultimate Cloud Gaming

This GFN Thursday wraps up another incredible year for cloud gaming. Take a look back at the top games and new features that made 2024 a standout for GeForce NO...

24/12/2024

PARTICIPATE AT SERIES MANIA FORUM 2025

The National Film and Video Foundation (NFVF) is calling for applications from South African film and television filmmakers to be part of the NFVF's delegat...

24/12/2024

FCC Fines Paramount Global $244,952 for Emergency Alert Violations

WASHINGTON, D.C. The Federal Communications Commission Enforcement Bureau said Paramount Global is being fined $244,952 for violations of emergency alerting rul...

24/12/2024

Streamer Carnegie Hall+ Features Holiday Programming and Music

NEW YORK Carnegie Hall's video-streaming channel, Carnegie Hall+, said it will celebrate the holiday season by offering a wide selection of holiday-themed o...

24/12/2024

PlayersTV Acquires Cloud Media Center

LOS ANGELES PlayersTV, an athlete and fan-owned media company, has announced the acquisition of Cloud Media Center, an AI-driven sports adtech and media distrib...

24/12/2024

The Best Playlists of 2024

The Best Playlists of 2024 The top playlists we created in 2024, from dad rock to dembow. By Tara Bellucci December 23, 2024 Image by Kelly Davidson Tak...

24/12/2024

From Generative to Agentic AI, Wrapping the Year's AI Advancements

Editor's note: This post is part of the AI Decoded series, which demystifies AI by making the technology more accessible, and showcases new hardware, softwa...

23/12/2024

Broadcast and the IT industry: an inevitable evolution?

At IBC2024, Grass Valley CTO Ian Fletcher told attendees at GV Forum that broadcast is now an IT industry. During our discussions at the show, TVBEurope heard v...

23/12/2024

Cracking creation: Fun facts from Wallace & Gromit: Vengeance Most Fowl

According to co-director Nick Park, the production team embraced technology to help create the iconic duos latest adventure By Jenny Priestley Published: Dec...

23/12/2024

Mapping the great wave: how Lux Aeterna produced data-centric visuals for Tsunami: Race Against Time

VFX house Lux Aeterna used wave height data from the National Oceanic & Atmosphe...

23/12/2024

DAZN acquires Australia's Foxtel in $2.2 billion deal

We are committed to supporting and investing in Foxtel's television and streaming services, across both sports and entertainment, using our world-leading te...

23/12/2024

Looking back at 2024: the industry trends that stood out

From AI to IP, the cloud to virtual production, key industry executives take a look back at some of the biggest trends that impacted the media and entertainment...

23/12/2024

BOOST GRAPHICS THE SPECIALIST INTERNATIONAL GRAPHICS SUBS...

Boost Graphics, the specialist international graphics and virtual production subsidiary of EMG / Gravity Media, the leading force in production and content & me...

23/12/2024

LucidLink Earns TPN Gold Certification to Advance Secure...

LucidLink, the leading storage collaboration platform revolutionizing how global teams work, proudly announces its achievement of the prestigious Trusted Partne...

23/12/2024

Mediagenix Welcomes Bruno Langlais as Business Developmen...

Mediagenix, a leader in software solutions for content strategy, content value management, and content scheduling, announces the appointment of Bruno Langlais a...

23/12/2024

NextGen TV Live Spanish Captions Debut on PMVG Test Bed S...

WCTEPublic Media Venture Group (PMVG) has announced that it is now providing real-time translation of closed captioning from English to Spanish on PMVG's Ne...

23/12/2024

Deltatre Appoints Charlie Mitchell to Head Up Sports in t...

Deltatre, the tech company behind the media and sporting moments that matter, has appointed Charlie Mitchell as Head of Sports for the Americas. Charlie will sp...

23/12/2024

Media Excel Welcomes Industry Veteran Matthew Goldman to...

Media Excel, a global leader in real-time video solutions, proudly announces the appointment of Matthew Goldman to its Technical Advisory Board. A distinguished...

23/12/2024

Disguise Nikon and MRMC bring Studio Extreme immersive ac...

Disguise the company behind the virtual production technology used on commercials for Apple Music and Lenovo, as well as feature film Daddio starring Sean Pen...

23/12/2024

Moments Lab and Bitcentral Partner for AI-Powered Content...

Leading AI and video search company Moments Lab is pleased to announce its integration with Bitcentral. The integration enables Bitcentral Oasis MAM users to en...

23/12/2024

ABC Commercial Partners With Amagi to Launch Suite of FAS...

Amagi, the global leader in cloud-based SaaS technology for broadcast and connected TV (CTV), today announced that ABC Commercial has partnered with Amagi to la...

23/12/2024

Digital Alert Systems Vice President of Global and Govern...

Digital Alert Systems, the global leader in emergency communications solutions for media providers, today announced that Ed Czarnecki, the company's vice pr...

23/12/2024

New Matthews Multipurpose Adapter for Moving Lights

Matthews Studio Equipment, known for the heftiest hardware, has a new solution to simplify mounting live production moving lights to standard grip equipment. Th...

23/12/2024

Matthews Studio Equipment Debuts RoadBags

Matthews Studio Equipment expands its trusted Road-line with the launch of RoadBags, durable fillable sandbags available in three sizes. Whether in the studio o...

23/12/2024

Sport Lisboa e Benfica Enhances Stadium Communications wi...

Sport Lisboa e Benfica, one of Portugal's most prestigious football clubs, has partnered with Clear-Com to upgrade the communications system at the Est dio...

23/12/2024

Black Box at Hamburg Open 2025

At stand B6.734, Black Box will showcase its Emerald KVM-over-IP solution, which enables smarter studio control with secure remote access from anywhere, along...

23/12/2024

OOONA Partners with Audio Description Associates

OOONA, a leading provider of professional management and production tools for the media localization industry, announced today a partnership with Audio Descript...

23/12/2024

Dunk The Halls: ESPN Refines Animated Altcast Tech and Ops with a Helping Hand From Mickey and Minnie

Dunk The Halls: ESPN Refines Animated Altcast Tech and Ops with a Helping Hand F...

23/12/2024

Leading Through Change: In Conversation with Michal Masset, Chief People Officer

With the holiday season in full swing, we are delighted to bring you a special digital event, Leading Through Change with Technicolor Group's Chief People O...

23/12/2024

Netflix Kicks Off NFL Christmas Games: Behind the Scenes With the Streaming Giant and Its Production Partners

Netflix Kicks Off NFL Christmas Games: Behind the Scenes With the Streaming Gian...

23/12/2024

ESPN's Tina Thornton on Producing The Simpsons Funday Football, Upcoming Dunk the Halls Alternative Broadcast on Christmas Day

ESPN's Tina Thornton on Producing The Simpsons Funday Football, Upcoming Dun...

23/12/2024

Dunk The Halls: ESPN Refine Animated Altcast Tech and Ops with a Helping Hand From Mickey and Minnie

Dunk The Halls: ESPN Refine Animated Altcast Tech and Ops with a Helping Hand Fr...

23/12/2024

NFL Christmas Gameday Live Comes to Netflix With Blimps, Hot Cocoa Trucks and Two Superstar Performances

Back to All News NFL Christmas Gameday Live Comes to Netflix With Blimps, Hot C...

22/12/2024

News Corp Announces Agreement to Sell Foxtel to DAZN for Enterprise Value of A$3.4 Billion

News Corp Announces Agreement to Sell Foxtel to DAZN for Enterprise Value of A$3...

22/12/2024

Netflix Showcases Global Anime Hits and New Releases at Jump Festa 2025

Back to All News Netflix Showcases Global Anime Hits and New Releases at Jump Festa 2025 Entertainment 22 December 2024 GlobalJapan Link copied to clipboar...

21/12/2024

L3Harris Thrusters Position NASA Probe for Closest Approaches to the Sun

Artist's concept of the Parker Solar Probe spacecraft approaching the sun. Credit: NASA/Johns Hopkins APL...

21/12/2024

Dallas Mavericks Roll Out New Streaming Platform

DALLAS and NEW YORK The NBA's Dallas Mavericks, working with Endeavor Streaming, Softtek and the NBA, have launched an official streaming platform for MavsT...

21/12/2024

Former FCC Chair Expresses Concern' Over Musk's Influence

As tech billionaire Elon Musk takes an increasingly high-profile policy role in the incoming Trump administration, a former Federal Communications Commission ch...

21/12/2024

Gray Media Renews Comscore Measurement Deal

RESTON, Va. Comscore has announced that it has renewed and expanded its measurement deal with Gray Media....

21/12/2024

Sinclair, Gray Media to Broadcast Columbus Blue Jackets NHL Games

The Columbus Blue Jackets, Sinclair and FanDuel Sports Network have signed a deal that will allow Sinclair and Gray Media stations in select markets to simulcas...

21/12/2024

Our Favorite Songs of 2024

Our Favorite Songs of 2024 Explore a playlist featuring some of the top songs of the year, as picked by members of the Berklee community. By Tara Bellucci De...

21/12/2024

Berklee Wrapped 2024: Our Top News and Stories

Berklee Wrapped 2024: Our Top News and Stories Take a look at some of our best stories of the year, including announcing our next president, hosting Andr 300...

21/12/2024

Alumna Allison de Groot Awarded 2024 Steve Martin Banjo Prize

Alumna Allison de Groot Awarded 2024 Steve Martin Banjo Prize De Groot, a former student of the American Roots Music Program, was recognized for her unique so...

20/12/2024

Thinking of Launching a Podcast? Let Our New Guide Show You How

Podcasting has become one of the most popular ways to tell stories and connect with audiences, but getting started can be intimidating, especially when it comes...

20/12/2024

2025 Sundance Film Festival Reveals 92 Projects for Feature Film and Episodic Programs

Top L-R: The Legend of Ochi, Rabbit Trap, East of Wall, Seeds Center Row L-R: Re...