Blog

2019 Attack Predictions for the Payment Sector

The Cyber Crime in the Payments Sector report from Anomali Labs explores trending threats, a strategic industry outlook, and recommendations for protecting organizations.

Anomali Threat Research
January 10, 2019
Table of contents
<p><br/> Anomali Labs published this week a report, “Cyber Crime in the Payments Industry,” that examines threat trends affecting this sector. The report, <a href="https://www.anomali.com/resources/whitepapers/cyber-crime-in-the-payments-industry-anomali-threat-research">available for download</a>, details attacks and techniques, and provides recommendations for organizations that process credit card transactions.</p><p>The payments industry, including retail, hospitality, restaurants and payment processors, has long been a target for fraud and cybercrime. For malicious actors the attraction is obvious as successful attacks can produce significant rewards. One recent ATM Cash-Out scheme involved cloning of 450 cards within a 24-hour period and withdrawal of over $11.5 million across 28 countries. The Magecart cybercrime group leveraged vulnerabilities in web forms on merchant websites. These undetected breaches allowed credit card payment information to be collected from unsuspecting clients for months.</p><p>In recent years payment processors have adopted EMV (Europay, Mastercard and Visa), a credit card payment processing standard that leverages an embedded chip to enable encrypted transactions and facilitate secure storage. This advance in payment security has pushed cybercriminals to find other soft targets - specifically a move away from brick-and-mortar retailers, where customers must have physical possession of the card to online and e-commers merchants where Card Not Present (CNP) transactions take place. Visa Threat Intelligence estimates that over 60% of reported breaches worldwide now involve smaller merchants.</p><p>The Cyber Crime in the Payments Sector report from Anomali Labs explores these trends and threats and provides a strategic outlook for the sector and recommendations for protecting organizations.</p><p style="text-align: center;"><a class="button button-xlarge button-rounded button-blue-grad" href="https://www.anomali.com/resources/whitepapers/cyber-crime-in-the-payments-industry-anomali-threat-research" target="_blank">Download Report</a><br/>  </p>
Anomali Threat Research

Anomali's Threat Research team continually tracks security threats to identify when new, highly critical security threats emerge. The Anomali Threat Research team's briefings discuss current threats and risks like botnets, data breaches, misconfigurations, ransomware, threat groups, and various vulnerabilities. The team also creates free and premium threat intelligence feeds for Anomali's industry-leading Threat Intelligence Platform, ThreatStream.

Propel your mission with amplified visibility, analytics, and AI.

Learn how Anomali can help you cost-effectively improve your security posture.

January 10, 2019
-
Anomali Threat Research
,

2019 Attack Predictions for the Payment Sector

<p><br/> Anomali Labs published this week a report, “Cyber Crime in the Payments Industry,” that examines threat trends affecting this sector. The report, <a href="https://www.anomali.com/resources/whitepapers/cyber-crime-in-the-payments-industry-anomali-threat-research">available for download</a>, details attacks and techniques, and provides recommendations for organizations that process credit card transactions.</p><p>The payments industry, including retail, hospitality, restaurants and payment processors, has long been a target for fraud and cybercrime. For malicious actors the attraction is obvious as successful attacks can produce significant rewards. One recent ATM Cash-Out scheme involved cloning of 450 cards within a 24-hour period and withdrawal of over $11.5 million across 28 countries. The Magecart cybercrime group leveraged vulnerabilities in web forms on merchant websites. These undetected breaches allowed credit card payment information to be collected from unsuspecting clients for months.</p><p>In recent years payment processors have adopted EMV (Europay, Mastercard and Visa), a credit card payment processing standard that leverages an embedded chip to enable encrypted transactions and facilitate secure storage. This advance in payment security has pushed cybercriminals to find other soft targets - specifically a move away from brick-and-mortar retailers, where customers must have physical possession of the card to online and e-commers merchants where Card Not Present (CNP) transactions take place. Visa Threat Intelligence estimates that over 60% of reported breaches worldwide now involve smaller merchants.</p><p>The Cyber Crime in the Payments Sector report from Anomali Labs explores these trends and threats and provides a strategic outlook for the sector and recommendations for protecting organizations.</p><p style="text-align: center;"><a class="button button-xlarge button-rounded button-blue-grad" href="https://www.anomali.com/resources/whitepapers/cyber-crime-in-the-payments-industry-anomali-threat-research" target="_blank">Download Report</a><br/>  </p>

Get the Latest Anomali Updates and Cybersecurity News – Straight To Your Inbox

Become a subscriber to the Anomali Newsletter
Receive a monthly summary of our latest threat intelligence content, research, news, events, and more.