UK finance firms urged to work together to fight cyber crime

The report argues the growing threat cybercrime poses to the financial sector cannot be countered


Reuters April 23, 2018
A projection of cyber code on a hooded man is pictured in this illustration picture taken on May 13, 2017. PHOTO: REUTERS

LONDON: Britain’s financial firms need to pull together to fight cybercrime, working with government and law enforcement to attack criminals’ infrastructure and put them out of business, a report by KPMG and industry body UK Finance said on Monday.

The report argues the growing threat cybercrime poses to the financial sector cannot be countered just by spending more money, and that a revamped approach is needed.

Pyeongchang Games organisers probe possible cyber attack

This includes working together and with governments and law enforcement to render the markets, tools and systems cybercriminals use ineffective, it said.

“(That) imposes the cost on them (the criminals), because they then have to reconstruct that botnet, those phishing sites,” said David Ferbrache, technical director and head of cyber and space at KPMG.

“For us, it’s very much a bit of a call to arms across the community ... There’s a lot more we can do,” he said.

Some groups, such as the Cyber Defence Alliance, whose members include some of the world’s biggest banks, are already doing this, but different initiatives need to be linked up, report authors Ferbrache and Dan Crisp, interim director of technology and digital policy at UK Finance, told Reuters.

Cybercrime is big business, with the global impact exceeding $450 billion a year, and is now second only to political risk in terms of challenges facing the financial sector, according to the report.

The attack on the Bank of Bangladesh in 2016, where hackers made off with $81 million, shows the growing sophistication of attacks on financial firms, it said. Banks’ cyber chiefs have also warned that tools previously only available to nation states are now being used by criminals.

Iran hit by global cyber attack that left US flag on screens

While UK banks alone spent $360 million on IT in 2016, it continued, approaches are often slow and constrained by regulation relative to the methods used by cybercriminals, who can operate beyond borders and the law and are constantly updating their methods.

This requires a quicker and more collaborative response, both within and among affected firms and law enforcement and governments, the report said.

“Ultimately, the financial sector as a community needs to organize this themselves,” said Ferbrache.

COMMENTS

Replying to X

Comments are moderated and generally will be posted if they are on-topic and not abusive.

For more information, please see our Comments FAQ