# Cyber threats for finance organisations to watch in 2023
Author:  Pal Sinha, Barnali 
Author URL: https://financedigest.com/author/pal-sinha-barnali
Published: 2023-02-21
Category: TECHNOLOGY
Category URL: https://financedigest.com/category/technology
Meta Title: Top Cyber Threat Trends for Finance Teams in 2023
Meta Description: Stay ahead of cyber threats in finance with insights on emerging threats like CaaS and LaaS. Learn how to protect your organisation from potential breaches.
URL: https://financedigest.com/cyber-threats-for-finance-organisations-to-watch-in-2023html

![undefined](https://prod.superblogcdn.com/site_cuid_cm5qst7v3003gwirgwqtxn8i8/images/cyber-securi-1736814424251-compressed.jpg)

![](https://prod.superblogcdn.com/site_cuid_cm5qst7v3003gwirgwqtxn8i8/images/derek-manky-1736814424226-compressed.jpg)

_By_ **_Derek_** **_Manky,_** _Chief_ _[Security Strategist & VP Global Threat](https://www.financedigest.com/5-ways-to-protect-your-company-from-cyber-security-threats.html "5 Ways to Protect Your Company From Cyber Security Threats") Intelligence, FortiGuard Labs_

Last year saw security teams in finance having to counter a wave of [cyber threats](https://www.financedigest.com/using-threat-intelligence-to-minimise-cyber-insurance-risks.html "Using Threat Intelligence to Minimise Cyber Insurance Risks"). The [war in Ukraine](https://www.financedigest.com/ukraine-seeks-debt-payment-freeze-as-war-ravages-economy.html "Ukraine seeks debt payment freeze as war ravages economy"), as well as flexible working practices, led to an increase in cyber-criminal activity. With the added backing of nation-states, attackers who were able to identify new weaknesses and exploit them.

The potential impact of a security breach has never been higher, carrying significant operational, reputational and financial consequences. It is therefore imperative that, organisations are equipping themselves with the right tools to prevent catastrophic hacks and breaches from happening.

Here are five threat trends that [finance teams will need](https://www.financedigest.com/7-finance-career-options-to-consider-and-what-you-need-to-know-about-each.html "7 Finance Career Options to Consider and What You Need to Know About Each") to look out for in 2023:

- **Growth in Cybercrime-as-a-Service**

Given cybercriminal success with [Ransomware-as-a-Service](https://www.fortinet.com/blog/industry-trends/what-to-do-ransomware-as-a-service-fueling-the-threat-landscape?utm_source=pr&utm_medium=pr&utm_campaign=RaaS) (RaaS), a growing number of additional attack vectors will be made available to fuel a significant expansion of Cybercrime-as-a-Service (CaaS). CaaS presents an attractive [business model](https://www.financedigest.com/learning-from-the-disrupters-how-finance-brands-can-build-transformative-business-models.html "Learning from the disrupters – how finance brands can build transformative business models") for threat actors. With varying skill levels they can easily take advantage of turnkey [offerings without investing the time and resources](https://www.financedigest.com/copper-miner-teck-resources-rejects-glencores-22-5-billion-offer.html "Copper miner Teck Resources rejects Glencore’s .5 billion offer") up front to craft their own unique attack plan. And for seasoned cybercriminals, creating and [selling attack portfolios](https://www.financedigest.com/iberdrola-hires-barclays-to-sell-stake-in-spanish-renewable-portfolio-expansion-says.html "Iberdrola hires Barclays to sell stake in Spanish renewable portfolio, Expansion says") as-a-service offers a simple, quick, and repeatable payday. Going forward, subscription-based CaaS offerings could potentially provide additional [revenue streams](https://www.financedigest.com/innovation-is-the-path-to-revenue-how-financial-organisations-can-open-up-alternative-revenue-streams.html "Innovation is the path to revenue: How financial organisations can open up alternative revenue streams").

One of the most important methods to defend against these developments is [cybersecurity awareness education and training](https://www.fortinet.com/blog/business-and-technology/fortinet-security-awareness-training-protects-employees?utm_source=pr&utm_medium=pr&utm_campaign=trainingservice). While many [organisations offer basic security training programmes for employees, organisations should consider adding new modules that provide education on spotting evolving methods such as AI-enabled threats](https://www.financedigest.com/why-insider-threat-presents-a-big-risk-to-financial-services-organisations.html "Why insider threat presents a big risk to financial services organisations").

**1.Reconnaissance-as-a-Service [Models could make attacks](https://www.financedigest.com/bother-attacks-the-antiquated-supermarket-model.html "Bother attacks the antiquated supermarket model") more effective**

As attacks become more targeted, threat actors will likely hire “detectives” on the dark web to gather [intelligence on a particular target before launching an attack](https://www.financedigest.com/new-intelligence-points-to-pro-ukraine-group-in-nord-stream-attack-nyt.html "New intelligence points to pro-Ukraine group in Nord Stream attack -NYT"). Like the insights one might gain from hiring a private investigator, Reconnaissance-as-a-Service offerings may serve up attack blueprints. This includes an organisation’s security schema, key cybersecurity personnel, the number of servers they have, known external vulnerabilities, and even compromised credentials for sale, or more, to help a cybercriminal carry out a highly targeted and effective attack. Attacks fuelled by CaaS models means stopping adversaries earlier during reconnaissance will be important.

Luring [cybercriminals with deception technology](https://www.financedigest.com/financial-firms-can-use-technology-combat-todays-cybercriminals.html "How financial firms can use technology to combat today’s cybercriminals") will be a helpful way to not only counter RaaS but also CaaS at the reconnaissance phase. [Cybersecurity deception coupled with a digital](https://www.financedigest.com/smarter-safer-stronger-cybersecurity-is-now-critical-to-digital-future.html "Smarter, safer, stronger cybersecurity is now critical to digital future") risk protection (DRP) service can help organisations know the enemy and gain advantage.

**2.Money Laundering to get a boost from automation and create LaaS**

Money Laundering-as-a-Service (LaaS) could [quickly become mainstream as part of the growing](https://www.financedigest.com/4-strategies-for-quickly-growing-your-startup.html "4 Strategies for Quickly Growing Your Startup") CaaS portfolio. To grow cybercriminal organisations, leaders and affiliate programmes employ money mules who are knowingly or unknowingly used to help [launder](https://www.financedigest.com/money-laundering-made-easy-by-uk-financial-system.html "Money laundering made easy by UK financial system") money. Mule recruitment can be a time-consuming process, so cybercriminals will turn to [machine learning](https://www.financedigest.com/make-time-to-reshape-the-finance-function-with-automation-and-machine-learning.html "Make time to reshape the finance function with automation and machine learning") (ML) to help them to better identify potential mules. Manual mule campaigns will be replaced with automated services that [move money through layers of crypto exchanges](https://www.financedigest.com/exclusive-binance-moved-346-million-for-seized-crypto-exchange-bitzlato-data-show.html "Exclusive-Binance moved 6 million for seized crypto exchange Bitzlato, data show"), making the process faster and more challenging to trace – decreasing the chances of recovering stolen funds.

Looking outside an organisation for [clues about future](https://www.financedigest.com/putins-victory-day-speech-leaves-no-clue-on-future-escalation.html "Putin’s Victory Day speech leaves no clue on future escalation") attack methods will be more important than ever, to help prepare before attacks take place. DRP services are critical for external threat surface assessments, to find and remediate security issues, and to help gain contextual insights on current and imminent threats.

**3.Virtual [cities and online worlds](https://www.financedigest.com/uks-most-liveable-city-manchester-sets-its-sights-on-the-world-from-tourists-to-property-investors.html "UK’s most liveable city, Manchester sets its sights on the world, from tourists to property investors") could fuel cybercrime**

The metaverse is giving rise to new, [fully immersive experiences](https://www.financedigest.com/curating-a-fully-contactless-customer-experience-for-payments.html "Curating A Fully Contactless Customer Experience for Payments ") in the online world. While new [virtual cities open a world](https://www.financedigest.com/why-its-time-to-adapt-to-the-virtual-world-how-to-master-online-negotiations.html "Why it’s time to adapt to the virtual world: how to master online negotiations") of possibilities, they also open the door to an unprecedented increase in cybercrime. An individual’s avatar is essentially a gateway to personally identifiable information (PII), making them prime targets for attackers – especially their digital wallets, crypto exchanges, [NFTs](https://www.fortinet.com/blog/threat-research/nft-lure-used-to-distribute-bitrat?utm_source=pr&utm_medium=pr&utm_campaign=nft), and any currencies used to transact in these virtual cities. Biometric hacking could also become a real possibility because of the AR and VR-driven components, making it easier for a cybercriminal to steal fingerprint mapping, facial recognition data, or retina scans. In addition, the applications, protocols, and transactions within these environments are all also possible targets for adversaries.

Real-time visibility, protection, and mitigation is essential to deal with this threat. Advanced [endpoint detection and response (EDR)](https://www.fortinet.com/products/endpoint-security/fortiedr?utm_source=pr&utm_medium=pr&utm_campaign=edr) can enable real-time analysis, protection, and remediation.

**4.Commoditisation of wiper** [malware will enable more destructive attacks](https://www.financedigest.com/united-bulgarian-bank-selects-onespan-to-help-fight-social-engineering-and-mobile-malware-attacks.html "United Bulgarian Bank Selects OneSpan to Help Fight Social Engineering and Mobile Malware Attacks")

Wiper malware has made a dramatic comeback in 2022, with attackers introducing new variants of this decade-old attack method. The [1H 2022 FortiGuard Labs Global Threat Landscape report](https://www.fortinet.com/blog/threat-research/fortiguard-labs-threat-report-key-findings?utm_source=pr&utm_medium=pr&utm_campaign=threatreport) showed there was an increase in conjunction with the war in Ukraine. But it was also detected in 24 additional countries, not just in Europe. Its growth in prevalence is alarming. The existing reality is threat actors combining a computer worm with wiper malware, and even ransomware for maximum impact. However, the concern going forward is that malware developed and deployed by nation-state actors could be picked up and re-used by criminal groups and used throughout the CaaS model. Given its broader availability combined with the right exploit, wiper malware could cause massive destruction in a short period of time given the organised nature of cybercrime today. This makes [time to detection and the speed at which security teams](https://www.financedigest.com/why-now-is-the-time-to-implement-a-time-saving-business-model-encouraging-team-members-to-discuss-their-challenges.html "Why now is the time to implement a time saving business model, encouraging team members to discuss their challenges") can remediate paramount.

Ultimately, for modern enterprises, being on the receiving end of a cyber-attack is an inevitability. However, many of the [threats businesses face](https://www.financedigest.com/3-top-digital-asset-threats-facing-your-brand-in-2017.html "3 top digital asset threats facing your brand in 2017") are familiar and nothing we haven’t previously seen. It is, therefore, up to [organisations to adequately prepare themselves and ensure they limit](https://www.financedigest.com/lack-of-collaboration-and-skills-shortage-is-limiting-organisations-ability-to-meet-ifrs-9-requirements.html "Lack of collaboration and skills shortage is limiting organisations’ ability to meet IFRS 9 requirements") the impact any breach may have.


---
This blog is powered by Superblog. Visit https://superblog.ai to know more.
---

