Malware Snifula Targets Banks in North & Latin America Using Windows Certificate Store API Functions

The Snifula family of malware has been making a name for itself recently in Japan, targeting multi-national and smaller regional financial institutions alike. The effectiveness of this kind of malware is putting banks at risk in other parts of the world too, including North and South America. Our research indicates that most financial institutions in …

Read more

Hard Cheese –Defending against Multi vector, Combined, Intelligent Attacks like Operation Emmental

Last week, reports flooded security forums and publications highlighting an increase in the rate of a fraud attack named Operation Emmental. The threat type was first noticed by security companies approximately 5 months ago, but the recent rise in successful attacks against mobile banking users has been alarming and underlined the effectiveness of the attack. …

Read more

Webinar: FFIEC Announces Cybersecurity Assessments. Is Your Bank Prepared?

Cybersecurity risks remain the same for all financial institutions, regardless of size or resources. The FFIEC recently announced that examiners will be conducting “state of cybersecurity assessments” this summer, specifically targeting community banks. Examiners want to ensure that cybersecurity is engrained into the culture of all financial institutions, and that management is well aware of …

Read more

What Do Bitcoin and other Digital Currencies Mean for Fraud?

I write this post with mixed feelings about the adoption and use of crypto and digital currencies. For those who might not know, cryptocurrencies like Bitcoin, Dogecoin and others offer digital online wallets of virtual money. Initially envisioned as irreversible ‘peer-to-peer’ trustless exchanges, these currencies claim to offer the possibility of anonymous transactions between strangers, …

Read more

InfoRisk Today on P.F. Chang’s Breach

InfoRiskToday (http://www.inforisktoday.co.uk/) has a great article out today, that highlights some of the key developments in the P.F. Chang’s breach. While there are no indicators of card fraud yet, we’ll be monitoring closely for any activity. Easy Solutions’ Bryan Jardine also shares his insights within the piece, noting that “Often the valuation of a card decreases …

Read more