Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Exclusive: Banks face a growing physical security threat
Share
Cyber IntelligenceCyber Intelligence
Aa
  • News
  • Analysis
  • Expert Opinions
  • Resources
Search
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Exclusive: Banks face a growing physical security threat
Share
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
AnalysisBanking Threatscybercrime

Exclusive: Banks face a growing physical security threat

Tony Glover
June 27, 2024 at 12:01 PM
By Tony Glover Tony Glover
Share
physical bank security
SHARE

 

Contents
Remote SIM swaps can take over your smartphoneOnline criminality assists in kidnapping, murder and gun-running

physical bank security

Banks, traditionally the main target for cybercriminal groups, are now being attacked not only by new online hacking techniques but also by a growing range of physical hacking tools and techniques. While financial institutions have high levels of cybersecurity and strong physical security, they currently face a growing threat from combined physical and digital assaults.

“Physical security and cybersecurity convergence in the business environment. A favorite weapon in the hacker arsenal is the Flipper Zero, an inexpensive pocketable device that enables you to hack into nearby smartphones and IT systems,” says Tim Grieveson, Senior Vice President of Global Cyber Risk, BitSight.

Billed as the Flipper Zero Multi-tool Device for Geeks, Flipper Zero is a portable multi-tool designed “for pen testers and geeks in a toy-like body.” It is freely available online for £171 (US$217).

“It [The Flipper Zero” loves hacking digital stuff like radio protocols, access control systems, hardware, and more. It’s fully open-source and customizable, so you can extend it in whatever way you like,” claim its makers.

Other physical hacking devices include the “Pineapple,” which is priced online at US $140. These small portable devices enable threat actors to sit in a location such as the lobby of a business hotel or coffee shop and execute “man-in-the-middle” attacks by hijacking users’ Wi-Fi connections. This poses a particular threat to banking staff who are traveling or working remotely.

Another device, the “Bash Bunny,” widely available online at around US$100, is a USB stick that emulates combinations of trusted USB devices such as gigabit Ethernet, flash storage, and keyboards to fool computers into divulging data, exfiltrating documents, installing backdoors and other exploits. A single Bash Bunny inserted into an unguarded PC or laptop can provide access to the bank’s entire systems. A physical intrusion into the bank’s premises by a threat actor becomes all the more dangerous if he or she is equipped with such a device.

Grieveson adds: “Another type of digital attack combined with a physical one would be for a threat actor to set off fire alarms in an office building, as people are generally instructed to leave their PCs and laptops on  their desks and head straight for the exits, which are generally clearly displayed on the wall for the benefit of the threat actor.”

Remote SIM swaps can take over your smartphone

According to Elijah Jackson, Blockchain Industry Commentator at MyChargeBack: “The finance industry is never totally secure. Opening up your internet is never 100 percent safe…A lot of people don’t like two-factor authentication. But even with your phone, you are not 100 percent safe. SIM swaps can take over your phone if your number is out there anywhere and you are targeted by social engineering.”

The combination of online fraud and a respectable physical presence can also be used simultaneously to evade authority while maintaining a credible façade.

According to Jackson: “A couple of years ago, the respected Spanish newspaper El Pais reported that Spain had become one of the world’s main centers of Forex scams. By then, police in Catalonia had identified 407 fake Forex sites that were targeting investors. Forget about geeks operating from their bedrooms. One suspected Forex scam actually sponsored a Spanish football team for three seasons.”

Online criminality assists in kidnapping, murder and gun-running

The convergence of physical and cyber threats is also evident in regions where digital criminality is used to assist and fund a whole range of traditional physical crimes.

“The Golden Triangle in northeastern Myanmar, northwestern Thailand, and northern Laos were identified 50 years ago by INTERPOL as an international crime center that attracted every type of actor that you can imagine. Today, it is a cybercrime capital, and the UN has published credible reports that the crypto scams based there also engage in kidnapping, murder, and drug running,” adds Jackson.

As well as constantly updating their cybersecurity, banks now need to keep equally ahead of increasingly sophisticated threat actors using physical points of entry such as smartphones and laptops to hack into their systems.

TAGGED: bank, bash bunny, bitsight, cybercrime, Cybersecurity, elijah jackson, finance, financial scams, flipper zero, forex, hacking tech, hacking techniques, hacking tools, Interpol, mychargeback, pen testing, physical threats, pineapple, tim grieveson, two factor authentication
Tony Glover July 3, 2024 June 27, 2024
Share This Article
Twitter LinkedIn Email Copy Link Print
Previous Article Levis Breach Levi’s breach exposes 72k customer details
Next Article deepfake threats affecting share prices Exclusive: Deepfakes being used to manipulate share prices
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Editor's Pick

You Might Also Like

NewsOne Minute RoundupOne Minute Roundup

UK backs AI and intelligence modernization – June 12th

The UK government has announced its plans to invest in digital and artificial intelligence (AI) in public services, including the NHS, aiming to build strong technology foundations and tackle urgent cybersecurity risks.

June 12, 2025
NewsOne Minute RoundupOne Minute Roundup

Cyera secures $540 million in funding – June 11th

Cybersecurity firm Cyera has raised $540 million in a Series E funding round, bringing its total to over $1.3 billion. Cyera’s valuation has surged to $6 billion in six months, reporting a 353 percent year-over-year growth. 

June 11, 2025
One Minute RoundupOne Minute Roundup

Honeywell kicks off AI tools to accelerate industrial autonomy – June 10th

Honeywell has debuted a series of AI-powered tools that intend to boost industrial autonomy, introducing a suite of AI cybersecurity solutions designed to ramp up Operation Technology defenses against the ever-evolving cyberthreat landscape.

June 10, 2025
cybercrimeNewsransomwareRussia

Teenage hackers run rings around cyber-defenses

The recent UK retail cyberattacks that impacted Marks & Spencer and the Co-Op supermarket chain are only the tip of a very large iceberg that now threatens organizations on both sides of the Atlantic. Although media reports have attributed the attacks to a group named “Scattered Spider,” the actual threat is far bigger. For a start, there is no criminal group that actually calls itself “Scattered Spider”, which is just a made-up name attributed by cybersecurity researchers. These attacks and many others in the US and the UK are now known to be the work of a vast sprawling network of hackers, some as young as 14, spread across the US and the UK. They call themselves “the Community”, or “the Com” for short, and are essentially a vast teenage subculture of criminal hackers.

June 10, 2025

Cyber Intelligence

We provide in-depth analysis, breaking news, and interviews with some of the leading minds in cybersecurity and distill critical insights that matter to our readers. Daily.

Linkedin

Category

  • Cybercrime
  • News

Quick Links

  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

© 2023 Cyberintel.media

Welcome Back!

Sign in to your account

Lost your password?