Security News

Payment fraud attack rate across fintech ballooned 70% in 2021
2022-03-21 05:30

Sift released a report, detailing the increasingly sophisticated - and often automated - tactics cybercriminals leverage to commit payment fraud. Derived from a global network of over 34,000 sites and apps and a survey of over 1,000 consumers, the index reveals that the payment fraud attack rate across fintech ballooned 70% in 2021-making it the highest increase across any vertical in the network.

Fintech firm hit by log4j hack refuses to pay $5 million ransom
2021-12-29 12:07

One of the largest Vietnamese crypto trading platforms, ONUS, recently suffered a cyber attack on its payment system running a vulnerable Log4j version. Threat actors approached ONUS to extort a $5 million sum and threatened to publish the customer data should ONUS refuse to comply.

Fintech developers dissatisfied with their current roles, a major risk for their employers
2021-10-14 03:30

Rapyd published a report conducted by 451 Research, to assess the market dynamics of fintech developers around the world. Key findings in the report include a growing demand for fintech developers to create payment applications and building in-house tools as well as general job dissatisfaction.

Fintech Startup Offers $500 for Payroll Passwords
2021-05-10 14:25

One financial startup that's targeting the gig worker market is offering up to $500 to anyone willing to hand over the payroll account username and password given to them by their employer, plus a regular payment for each month afterwards in which those credentials still work. On its blog, Argyle imagines a world in which companies choose to integrate its application platform interface and share their employee payroll data.

Leading Indian fintech platform MobiKwik denies data breach
2021-03-30 15:20

Indian digital financial services platform Mobikwik denies claims that almost 8 TB of data put up for sale was allegedly stolen from its servers. The threat actor who put the allegedly stolen data up for sale also created a search portal to allow anyone to check if their data is included in the stolen data.

Fintech Giant Fiserv Used Unclaimed Domain
2021-03-17 14:26

If you sell Web-based software for a living and ship code that references an unregistered domain name, you are asking for trouble. A quick search of WHOIS registration records showed the domain was unregistered.

DigiPli’s solution transforms AML and KYC protocols for FinTechs and other financial services firms
2021-02-17 03:00

Founded by seasoned compliance veterans, DigiPli is transforming Anti-Money Laundering and Know Your Customer protocols for FinTechs and other financial services firms. DigiPli announces the official launch of its holistic Onboarding-as-a-Service solution, which addresses a financial institution's complete onboarding and KYC needs.

How consumers protect sensitive information when using FinTech apps
2021-02-01 03:30

42% of global consumers use a free FinTech app or platform. The research reveals interesting findings about how consumers protect their sensitive information when using financial technology applications.

Python-based Spy RAT Emerges to Target FinTech
2020-09-03 15:28

The malware's emergence dovetails with a change in the chain of infection and an expansion of infrastructure for the APT. According to researchers at Cybereason, PyVil RAT enables the attackers to exfiltrate data, perform keylogging and take screenshots, and can roll out secondary credential-harvesting tools such as LaZagne. The latest series of campaigns observed by Cybereason that use PyVil RAT are widespread yet targeted, taking aim at FinTech companies across the U.K. and E.U. The attack vector is spear-phishing emails, which use the Know Your Customer regulations as a lure.

Evilnum Group Targets Fintech Companies in Europe
2020-07-10 12:43

For the past two years, a threat group tracked as Evilnum has been observed targeting financial technology companies, mainly ones located in the European Union and the U.K., ESET reports. Golden Chickens components used in Evilnum attacks are from the TerraLoader family.