430,000 people hit with financial malware
Financial malware, that is malware that targets finances, cryptocurrencies and web-money services, has increased by 7% from the same period last year, according to new research from Kaspersky.
New research finds that 430,000 users faced this issue in the first half of 2019. Of this, more than a third (30.9%) were corporate users, which is double the figure discovered in the first half of 2018 (15.3%).
Financial malware, commonly known as banking Trojans, is aimed at stealing finances and financial data, as well as providing threat actors with access to users and financial organisations assets and machines, Kaspersky says.
According to the company, these threats have always occupied a significant part of a threat landscape, as finance is the most common motivation for cybercriminals and fraudsters.
Kaspersky data on new samples of these threats highlight that malware aimed at stealing funds is active and dangerous, especially when it comes to corporate environments.
This is due to the fact that most corporate networks usually rely on connected devices, and if one is compromised then the whole entity may be under threat.
According to the research, typical attack vectors for malware are spam emails and phishing web pages. Web pages generally appear to be legitimate websites, but are created by threat actors in an attempt to steal credentials, bank card details or other types of sensitive information, Kaspersky says.
According to the report, during the first half of 2019, more than 339,000 phishing attacks from web pages disguised as landing pages of large banks have been detected.
The research also identified the most popular banking Trojan families that were used to attack corporate users.
Four-in-ten (40%) financial threats on corporate users came from the RTM banking Trojan – one of the most dangerous types of banking malware for businesses in 2018 Kaspersky says.
RTM is followed by the Emotet banking Trojan at 15%. This threat can be particularly damaging as once it gets inside the entity’s network perimeter, it can self-distribute through vulnerabilities in unpatched devices and then download extra threats onto the victim’s device, Kaspersky says.
Trickster banking Trojan is the top three identified malware, with 12% of discovered threats.
For private users, the situation was found to be different. The list of malware that attempted to attack them is topped by Zbot malware (26%), which steals credentials with the option of remote control by threat actors, followed by RTM and Emotet.
In 2018 RTM was almost entirely aimed at organisations, while figures from the first half of 2019 show that this malware is now reaching a significant share of ordinary, domestic users, according to Kaspersky.
Kaspersky security researcher Oleg Kupreev says, “We expect to see a rise in the number of attacked users in the second half of 2019. Usually, we see a rise in malicious activity after the holiday season, when people are using their devices less than usual and therefore are less likely to fall a victim to threat actors.”
“We urge everyone to be extra careful with all banking and finance-related operations that they perform online and remain vigilant,” says Kupreev.
To protect your business from financial malware, Kaspersky security specialists advise introducing cybersecurity awareness training for employees, installing the latest updates and patches for all software, forbidding the installation of programs from unknown sources, implement EDR solutions for endpoint level detection and remediation, and finally integrating Threat Intelligence into your SIEM and security controls in order to access the most relevant and up-to-date threat data.
On education, Kaspersky says it is important to train particularly those who are responsible for accounting and teach them how to distinguish phishing attacks. For instance, do not open attachments or click on links from unknown or suspicious addresses.
Kaspersky recommends private users always install security updates as soon as possible, do not install software from unknown sources, and use a reliable security solution.
Latest Jobs
-
- Azure Identity Consultant
- Netherlands
- discussed on applications
-
Are you a cybersecurity expert passionate about identity and access management? We are seeking a talented IAM Technical Specialist to join our Sec Ops team. In this role, you will play a pivotal part in developing and maintaining our IAM infrastructure, ensuring the highest levels of security and compliance. What you'll do: Design, implement, and maintain IAM solutions for both on-premise and cloud environments. Collaborate with cross-functional teams to integrate IAM systems into various applications and processes. Conduct security assessments and risk analysis to identify and mitigate vulnerabilities. Stay up-to-date with the latest IAM technologies and industry best practices. What we're looking for: Experience: experience as a technical specialist with expertise in AD management. IGA concepts: Experience with Identity Governance and Administration (IGA) concepts such as RBAC, PAM, SIEM, SSO, segregation of duties (SoD), data classification, and recertification. Azure Identity Management: Minimum 2 years of demonstrable experience with Azure identity management, specifically within complex organizations. IT knowledge: Good general knowledge of IT environments such as Active Directory, Azure Cloud, Office 365, SharePoint Online, etc. Protocol knowledge: Familiar with SAML, OIDC, OAuth, and SCIM. Programming languages: Minimum 3 years of experience with development languages such as PowerShell; knowledge of Java or C# is a plus.
-
- Cloud Architect- German Speaker
- Hungary
- Upto €48000 per year + bonus + benefits
-
As a Senior Pre-Sales Solutions Architect, you will play a pivotal role in driving our sales success by translating complex technical solutions into compelling proposals that resonate with our clients. You will collaborate closely with our sales teams to understand customer needs, design tailored solutions, and negotiate successful deals. Responsibilities: Solution Design: Develop comprehensive technical solutions that align with customer business objectives and industry best practices. Proposal Development: Create compelling proposals, including requirements gathering questionnaires, presentation materials, and Statements of Work (SOWs). Customer Engagement: Build strong relationships with clients, understanding their technical, business, and commercial requirements. Collaboration: Work closely with sales teams, delivery teams, and third-party partners to ensure successful project execution. Pricing Strategy: Define and deliver pricing strategies that align with customer needs and company objectives. Requirements: Experience in technical pre-sales or sales support roles. Proven track record in designing and delivering successful customer solutions. Strong technical foundation in areas such as VMware, Azure, AWS, cloud computing, and data center technologies. Excellent understanding of sales principles, account management, and negotiation techniques. Ability to explain complex technical concepts clearly and concisely. Experience working in international teams and supporting clients across multiple regions. Fluency in German and English is essential. Benefits: Competitive salary and benefits package Opportunity to work on challenging and rewarding projects Collaborative and supportive work environment Potential for career growth and advancement Please note that this role is focused on supporting German clients, but will also involve global client support as needed.
-
- Microsoft Sentinel Architect
- United Kingdom
- discussed on applications
-
Microsoft Sentinel Architect We're seeking a talented and experienced Microsoft Sentinel Architect to be responsible for the design, deploy of a new Sentinel solution into an expanding Services business. As a key member of our team, you'll play a vital role in driving security operations and protecting clients' assets. Responsibilities: Solution Design: Develop comprehensive Microsoft Sentinel architectures aligned with our clients' specific needs and industry best practices. Deployment and Configuration: Oversee the deployment and configuration of Sentinel components, including data connectors, analytics rules, and playbooks. Integration: Integrate Sentinel with other security tools and platforms within our MSSP ecosystem. Tuning and Optimization: Continuously monitor and optimize Sentinel performance to ensure maximum effectiveness and efficiency. Training and Mentoring: Mentor junior team members and provide training on Sentinel technologies and best practices. Required Skills and Experience: Proven experience as a Microsoft Sentinel Architect with a deep understanding of its capabilities and limitations. Strong technical skills in Azure, security operations, and data analytics. Experience designing and implementing complex security solutions, into a services environment Knowledge of threat intelligence, incident response, and compliance frameworks. Excellent communication and problem-solving skills.
-
- Network & Security Consultant
- Romania
- €54000 plus benefits
-
Senior Network & Security Engineer to join a Managed Network & Security Team in Europe. In this critical role, you will: Play a pivotal role in managing and securing network infrastructure across datacenters, customer connections, and on-premise deployments. Proactively monitor network and security devices, analyse incidents, and implement solutions to ensure optimal performance and security. Collaborate with colleagues and customers to troubleshoot issues, troubleshoot outages, and implement effective resolutions. Lead and participate in network system installations for new facilities and expansions. Develop and maintain network infrastructure procedures, recommend technical strategies, and propose improvements to enhance network capabilities. Stay up-to-date on the latest network and security technologies and trends. Work as part of a collaborative international team, contributing to team presentations and knowledge sharing. To be successful, you'll need: Proven expertise in Cisco network solutions (CCNP R&S/Sec/Wireless preferred) for both BAU and project work. In-depth knowledge of network security principles and experience with Fortinet firewalls. Experience deploying and managing large, complex network infrastructure (routing, switching, wireless, security). Solid understanding of ITIL v3 framework for incident, change, and problem management. Excellent troubleshooting skills with experience using Wireshark or similar protocol analysers. Strong communication and teamwork skills, with the ability to work independently and collaborate effectively.