• Latest

Security breaches within financial services damage far more than just reputation

2 August, 2012
China Liberal Education Holdings Limited Starts Higher Volume Production and Expands Domestic Sales Channels of All-in-one Machine AI-Space

China Liberal Education Holdings Limited Starts Higher Volume Production and Expands Domestic Sales Channels of All-in-one Machine AI-Space

19 December, 2020
Bell connecting Canadians at home for the holidays with free TV programming and no extra usage fees on residential Internet

Bell connecting Canadians at home for the holidays with free TV programming and no extra usage fees on residential Internet

18 December, 2020
TEMSA: Bus exports to be delivered to the heart of the European Union

TEMSA: Bus exports to be delivered to the heart of the European Union

18 December, 2020
EU tries to reshape the rules of the Internet

EU tries to reshape the rules of the Internet

17 December, 2020
Matterport Brings 3D Capture to the iPhone

Matterport Brings 3D Capture to the iPhone

5 May, 2020
NASA Administrator Statement on Agency Coronavirus Status

NASA Administrator Statement on Agency Coronavirus Status

15 March, 2020
Technology Supports Social Distancing in age of Covid-19

Technology Supports Social Distancing in age of Covid-19

15 March, 2020
Second Staff Exchange Between EU CyberSecurity Organizations

Second Staff Exchange Between EU CyberSecurity Organizations

19 February, 2020
Iranian Professor on the Iran-US escalation: “Iranians expected to hear a clear and steadfast condemnation from Turkish authorities over Soleimani’s death”

Iranian Professor on the Iran-US escalation: “Iranians expected to hear a clear and steadfast condemnation from Turkish authorities over Soleimani’s death”

16 February, 2020
Badly Trained Spam – Only A Quarter of Brits Train their Spam Filter

Badly Trained Spam – Only A Quarter of Brits Train their Spam Filter

6 February, 2020
Year 2020: What is the Status of 5G Rollout Worldwide and Turkey

Year 2020: What is the Status of 5G Rollout Worldwide and Turkey

31 January, 2020
Turkish Competition Authority’s Android Decision

Turkish Competition Authority’s Android Decision

18 December, 2019
  • About Us
  • Contact Us
  • Homepage
  • Latest News
  • News Widget
  • Privacy Policy
Wednesday, March 29, 2023
Social icon element need JNews Essential plugin to be activated.
  • Login
  • Register
Globaltelconews
Advertisement
  • IT
  • Telecom
  • Mobile
  • e-Commerce
  • Fintech
  • Security
  • New Tech
  • About
    • About Us
    • Contact Us
    • Privacy Policy
No Result
View All Result
  • IT
  • Telecom
  • Mobile
  • e-Commerce
  • Fintech
  • Security
  • New Tech
  • About
    • About Us
    • Contact Us
    • Privacy Policy
No Result
View All Result
Globaltelconews
No Result
View All Result

Security breaches within financial services damage far more than just reputation

globaltelconews-admin by globaltelconews-admin
2 August, 2012
in English
0

It costs the banking and finance industry far more than a dent in their reputation if personal data is compromised, states Simon Bain, CTO of Simplexo.

It hits them where it hurts the balance sheet. And we are not just talking dives in the share price, we are talking dramatic increases in the cost of doing business such as professional indemnity insurance and increasingly the impact this could also have on the ratings agencies themselves what I would call the hidden cost of crisis management and all this before we start looking at the total cost associated with upgrading and improving IT security systems, he stated.

Credit card processing companies have to manage and authorise millions of card transactions every day. They have to store, search and access each transaction individually to make sure that it can be authorised and processed. These companies have the daunting task of managing every credit and debit card purchase that individuals or corporates make, each and every day of the year. This amounts to millions of transactions every day. Each of these transactions requires a database to house the record and also a messaging platform, such as the Internet or dedicated banking payment platform to pass the transaction through.

It is the job of the processing companies to securely yet speedily create a seamless purchase transaction for their customers the banks and the banks customers the credit or debit card user. If the transaction is slow or has any type of interruption, then the card user is able to move their custom on.

Simon continued: This can lead to a number of compromises taking place within the data, the main one being the database records held in plain text. This leaves the data open to unauthorised access. To help alleviate this threat, the majority of the records can be encrypted leaving only parts in plain text. This is done to enable a record to be searched and then accessed, via the plain text part. Both of these scenarios leave the database vulnerable to attack,

Generally due to the current firewall and other messaging security that is placed around the database, this attack would be from an internal source. Such as a disgruntled employee, or a contract worker who has been brought in to undertake routine maintenance on the data. In either case having any of the data in plain text would mean instant and simple access to the information and a major security breach. Even if the majority of the record were encrypted using current database industry standards, this would still leave the data open and vulnerable. As this technique places the encryption within the database engine. When a hacker gains access to a database they generally do so by using credentials that the database trusts, and therefore all encryption would be rendered irrelevant and the records shown in plain text.

Simplexo Data-Secure SDK has been built to enable developers and database administrators to have an easy-to-use toolset with which to secure and search database records. This is done by providing the user with a set of C++, .NET, Java and PHP modules, which can be integrated into existing projects and systems.

Simon Bain CTO, Simplexo, stated: The Simplexo Data Secure SDK enables database administrators full control over encryption of all database fields. With AES 256 x 2 encryption and full text searchability, it provides full security and integrity for your database records.

In addition, it is the ideal solution for an organisations Cloud strategy as it secures all database records, and provides a secure on-line database for content searching. In other words, all information placed in the Cloud is only viewable by those who are authorised to access it.

Simon continued: Hacking will always be with us. It is not something that we can stop. However allowing un-encrypted data to be held in a database is unforgivable. Peoples private information should be just that. Private. Because we see that hacking is inevitable we have worked hard to find ways of making the database information useless to any would be hackers. So what weve done is create a way for all database records to be fully encrypted while remaining searchable. This means that there are now no excuses for not having the information stored in your databases encrypted.

At the end of the day this is about managing risk the role todays Corporate Compliance Officer is supposed to be responsible for. If a credit or debit card transaction were ever to be compromised, and this compromise became public knowledge, then the company concerned would have the possibility of being sued. Not only by their customers but also those individuals and organisations who had been defrauded due to the breach. In addition to this insurance premiums would rise and market cap could suffer along with any credit ratings agency rating. This in turn could lead to the organisation being stripped of their ability to manage the transactions, directly leading to loss of sales and revenue, he concluded.

Previous Post

How Exactly Do Price Comparison Websites Save You Money?

Next Post

Businesses still failing to deal with growing threat of cybercrime

Next Post

Businesses still failing to deal with growing threat of cybercrime

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Navigation

  • Authors
  • Author Login
  • Author Application
  • Advertisement
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • Sitemap
Social icon element need JNews Essential plugin to be activated.

© 2018 Globaltelconews.com

No Result
View All Result
  • IT
  • Telecom
  • Mobile
  • e-Commerce
  • Fintech
  • Security
  • New Tech
  • About
    • About Us
    • Contact Us
    • Privacy Policy

© 2018 Globaltelconews.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In