FinAi News

No products in the cart.

Subscribe
  • News
  • AI News Tool
  • Data
  • Transactions
  • Events
    • FinAi Banking Summit
    • FinAi Lending Summit
  • Podcast
  • WEBINARS
    • Webinar Library
Log In
No Result
View All Result
  • Banking
  • Lending
  • Payments
  • Risk & Security
  • Strategy
FinAi News
  • News
  • AI News Tool
  • Data
  • Transactions
  • Events
    • FinAi Banking Summit
    • FinAi Lending Summit
  • Podcast
  • WEBINARS
    • Webinar Library
BAN PLUS
Log In
No Result
View All Result
FinAi News
No Result
View All Result

Security pros on how to thwart ransomware attacks

Automation on network, endpoints can help

Loraine LawsonbyLoraine Lawson
September 20, 2021
in Strategy
Reading Time: 3 mins read
0
Share on Facebook

This year has seen the most significant number of ransomware attacks on record — from the May shutdown of the Colonial Pipeline with a ransomware demand of $4.4 million to the July attack on IT solutions provider Kaseya that resulted in more than 1,000 companies, including U.S. banks, being held ransom for a $70 million payout.

Photo by CanStock

In many cases, ransomware relies on automated attacks to steal valuable data, Justin Estadt, head of product at SEI IT Services and a 20-plus-year veteran of IT security, told Bank Automation News.

“One-hundred percent, automation is playing a role in how things are committed most of the time, once whatever the technology mechanism is that is going to actually get the ransomware onto a machine or infrastructure,” Estadt said.

Often, cybercriminals use phishing techniques, spoofed websites and other methods to infiltrate a network. Ransomware may remain in a network for three to six months, spreading through it and collecting data, Estadt said.

BAN contacted several digital security experts to learn how financial institutions can defend against ransomware attacks.

Prioritize cybersecurity investment

The ransomware attack on Kaseya shows how important it is to invest in cybersecurity now, said Safi Raza, director of cyber security at risk management software provider Fusion Risk Management.

“Ransomware attacks are only rising in popularity, and cyber criminals are continually looking for new ways to exploit vulnerabilities for their own benefit,” Raza told BAN. “Organizations in the financial services industry must invest in robust cybersecurity programs as part of their risk management and operational resilience strategy — and get ahead of skilled and opportunistic criminals.”

That means creating a strong, security-focused culture at all levels of the organization, he added.

An automated defense is the best offense

Since ransomware often leverages email phishing that targets employees, one automated step that financial institutions can take is to block executables from being downloaded or transferred via email, Estadt said. At the network level, it is important to block uncategorized sites, particularly brand-new URLs or domain names.

“If it’s not categorized at all, why are your business folks trying to get access to it, unless it’s the latest and greatest software? But even then, better to be safe than sorry,” Estadt said. “That’s a very big win from automation on the network side.”

An additional precaution is to monitor at the network layer for combat and control (C2) 2 servers, which are command and control center messages that tell the attacker not only what information is available but how to “remote desktop in and other aspects that would be part of that campaign to allow that compromised to take place,” Estadt said. C2C server messages can be used to launch automated bot attacks as well.

Vet third-party vendors

It is vitally important to vet third-party providers, Barbara Kissner, chief information security officer at fintech Tassat, said. She explained that companies can do this by inspecting SOC 2 reports, an auditing procedure that ensures service providers will securely manage a client’s data.

“Financial institutions should perform in-depth due diligence reviews of their vendors, including close inspection of the SOC 2 reports,” Kissner said. “Vendors should demonstrate strong resiliency strategies and provide their clients with demonstrated proof the ability to recover.”

Understand data flow

IT will struggle to mitigate an attack without understanding how data flows within the organization, said Simon Eyre, chief information security officer and managing director for cybersecurity software and solutions company Drawbridge.

“Data flow analysis within a business is a vital first step to understanding where corporate and personal data is held,” Eyre said. “Without that, controls cannot be applied to mitigate or limit the effectiveness of a ransomware attack.”

That applies to third-party vendors and supply chain partners, which are increasingly under attack, Eyre added. When mapping data flow, layering their access and capabilities onto data flow charts will build a picture of the attack risks within the firm.

It all boils down to practicing “good cyber hygiene,” Raza said.

“Until financial organizations commit to these steps and create third-party risk management plans that incorporate the same level of risk scrutiny for them as internally, these ransomware attacks will continue to run rampant,” Raza warned.

Tags: cyberattackscybersecurityPremiumransomware
Previous Post

Credit unions eye automation, AI for digital auto refi

Next Post

Global fintech investments top $24 billion in Q2

Related Posts

Strategy

Feeding the beast: 3 keys to data quality in the AI era

June 25, 2026
Courtesy/JPMorgan Chase
Strategy

JPMorgan’s Lake exits, setting up new race to succeed Dimon

June 25, 2026
A Microsoft data center in Aldie, Virginia, US, on Tuesday, Oct. 28, 2025. Microsoft Corp. is scheduled to release earnings figures on October 29. Photographer: Lexi Critchett/Bloomberg
Strategy

Data center surge brings risk for states and munis, Moody’s Says

June 25, 2026
Next Post
Pexels

Global fintech investments top $24 billion in Q2

Stay Informed with Our Newsletters

* indicates required

By clicking submit below, you consent to allow FinAi News (Royal Media Group) to store and process the personal information submitted above to provide you the content requested.

For more information, please visit www.royalmedia.com/legal.

We use Mailchimp as our marketing platform. By clicking below to subscribe, you acknowledge that your information will be transferred to Mailchimp for processing. Learn more about Mailchimp’s privacy practices.

EMERGING FINTECH DIRECTORY

Emerging Fintech Directory

The Buzz Podcast

SPONSORED

How AI and Product Experts Turn Fuzzy Requirements Into Focused Dev-ready Roadmaps

April 19, 2026

Is Your Technology Supplier There for You?

April 1, 2026

Hiding in Plain Sight: How to Use Data to Spot Consumer Accounts Being Used by Small Businesses

November 10, 2025

  • About Us
  • Help Center
  • Contact Us
  • Privacy Terms
  • ADA Compliance
  • Advertise

 [wt_cli_manage_consent]

Connect

twitter linkedin podcast podcast podcast
© 2026 Royal Media
No Result
View All Result
  • NEWS
    • All News
    • Banking
    • Lending
    • Payments
    • Risk & Security
    • Strategy
  • AI News Tool [Beta]
  • DATA
  • TRANSACTIONS
  • EVENTS
    • FinAi Banking Summit
    • FinAi Lending Summit
  • PODCAST
  • WEBINARS
    • Webinar Library
  • SUBSCRIBE
  • Log In / Account

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Unlock This Article

Create your free FinAi News account to access this article and stay informed on how AI is transforming financial services including banking, lending, payments, and risk.

Yes, I'd like to receive FinAi News updates, breaking news, and exclusive AI insights for financial services leaders.

Continue Reading with FinAi News Premium - Less than $2/Day

Upgrade to FinAi News Premium for unlimited access to news, insights, trends, and intelligence on how AI is transforming financial services including banking, lending, payments, and risk.
Upgrade to FinAi News Premium Subscription
No Result
View All Result
  • NEWS
    • All News
    • Banking
    • Lending
    • Payments
    • Risk & Security
    • Strategy
  • AI News Tool [Beta]
  • DATA
  • TRANSACTIONS
  • EVENTS
    • FinAi Banking Summit
    • FinAi Lending Summit
  • PODCAST
  • WEBINARS
    • Webinar Library
  • SUBSCRIBE
  • Log In / Account