Menu
Banking Exchange Home
Menu

ATM, DDoS attacks increasing

FFIEC directs banks to be prepared and boost defenses

ATM, DDoS attacks increasing

The Federal Financial Institutions Examination Council members issued statements to notify financial institutions of the risks associated with cyber-attacks on automated teller machine and card authorization systems and the continued distributed denial of service (DDoS) attacks on public-facing websites.

The statements describe steps the members expect institutions to take to address these attacks and highlight resources institutions can use to help mitigate the risks posed by such attacks.

Cyber-attacks on financial institutions to gain access to, and alter the settings on, web-based ATM control panels used by small- to medium-sized institutions are on the rise. The members expect financial institutions to take steps to address this threat by reviewing the adequacy of their controls over information technology networks, card issuer authorization systems, ATM usage parameters, and fraud detection processes. In addition, the members expect financial institutions to have effective response programs to manage this type of incident.

The members also expect financial institutions to address DDoS readiness as part of their ongoing information security and incident plans. More specifically, each institution is expected to monitor incoming traffic to its public website, activate incident response plans if it suspects that a DDoS attack is occurring, and ensure sufficient staffing for the duration of the attack, including the use of pre-contracted third-party servicers, if appropriate.

Read more

John Ginovsky

John Ginovsky is a contributing editor of Banking Exchange and editor of the publication’s Tech Exchange e-newsletter. For more than two decades he’s written about the commercial banking industry, specializing in its technological side and how it relates to the actual business of banking. In addition to his weekly blogs—"Making Sense of It All"—he contributes fresh, original stories to each Tech Exchange issue based on personal interviews or exclusive contributed pieces. He previously was senior editor for Community Banker magazine (which merged into ABA Banking Journal) and for ABA Banking Journal and was managing editor and staff reporter for ABA’s Bankers News. Email him at jginovsky@sbpub.com.

back to top

Sections

About Us

Connect With Us

Resources