International Peer-Reviewed Journal•Open Access•ISSN 2456-8880
irejournals@gmail.com•+91-7433024337

Home / Current Issue / Paper 1707045

1707045 Vol 6 · Issue 11 Download Paper

Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense

Olusegun Adedeji

Subject area: Science,Engineering and Technology  ·  Area of research: Cybersecurity and Finance

Abstract

Cyberattacks on financial institutions have escalated globally, posing significant threats to the secure flow of capital and information. As the financial sector increasingly embraces digital innovations such as mobile banking, cloud infrastructure, and real-time payment solutions, the attack surface has expanded, making institutions more susceptible to cyber threats. This study conducts a systematic literature review (SLR) to identify prevalent cyberattack tactics, assess their impact on financial institutions, and propose resilience strategies. The findings highlight phishing, ransomware, and distributed denial-of-service (DDoS) attacks as the most common threats, with third-party vulnerabilities and legacy system exploitation also emerging as critical risks. The study underscores the financial, reputational, and operational consequences of cyber incidents, including monetary losses, regulatory penalties, and erosion of consumer trust. To enhance resilience, financial institutions must adopt a multi-layered cybersecurity approach that integrates advanced technical controls, such as encryption and AI-driven threat detection, with robust organizational measures, including employee training and incident response planning. The study also emphasizes the need for regulatory alignment with evolving cyber threats and improved collaboration between stakeholders. Institutional Theory and Resilience Theory provide a theoretical foundation for understanding how financial organizations can balance compliance with proactive security measures. This research contributes to cybersecurity literature by consolidating empirical insights and offering practical recommendations for financial institutions to mitigate evolving threats. Future research should explore emerging technologies like the Internet of Things (IoT) and quantum computing to address new vulnerabilities. Ultimately, financial institutions must prioritize resilience to safeguard assets, maintain trust, and ensure business continuity in an increasingly complex digital landscape.

References

[1] Acar, A., Lu, L., Uluagac, A.S. and Kirda, E., 2019. An analysis of malware trends in enterprise networks. In Information Security: 22nd International Conference, ISC 2019, New York City, NY, USA, September 16–18, 2019, Proceedings 22 (pp. 360-380). Springer International Publishing.

[2] Ahmad, A.S., 2023. Application of Big Data and Artificial Intelligence in Strengthening Fraud Analytics and Cybersecurity Resilience in Global Financial Markets. International Journal of Advanced Cybersecurity Systems, Technologies, and Applications, 7(12), pp.11-23.

[3] Al-Alawi, A.I. and Al-Bassam, M.S.A., 2020. The significance of cybersecurity system in helping managing risk in banking and financial sector. Journal of Xidian University, 14(7), pp.1523-1536.

[4] Böhme, R., Laube, S. and Riek, M., 2019. A fundamental approach to cyber risk analysis. Variance, 12(2), pp.161-185.

[5] Darem, A.A., Alhashmi, A.A., Alkhaldi, T.M., Alashjaee, A.M., Alanazi, S.M. and Ebad, S.A., 2023. Cyber threats classifications and countermeasures in banking and financial sector. IEEE Access, 11, pp.125138-125158.

[6] D'Arcy, J. and Basoglu, A., 2022. The influences of public and institutional pressure on firms’ cybersecurity disclosures. Journal of the Association for Information Systems, 23(3), pp.779-805.

[7] European Union Agency for Cybersecurity (ENISA), 2021. ENISA Threat Landscape 2021: Cyber Attacks, Threat Actors and Trends. [online] Available at: https://op.europa.eu/en/publication-detail/-/publication/98368007-475a-11ec-91ac-01aa75ed71a1/language-en [Accessed 26 January 2023].

[8] Georgiadou, A., Mouzakitis, S. and Askounis, D., 2022. Detecting insider threat via a cyber-security culture framework. Journal of Computer Information Systems, 62(4), pp.706-716.

[9] International Organization for Standardization (ISO), 2018. ISO/IEC 27001 Information Security Management. [online] Available at: https://www.iso.org/standard/27001 [Accessed 26 January 2023].

[10] Kumari, S. and Farheen, S., 2020, May. Blockchain based data security for financial transaction system. In 2020 4th International Conference on Intelligent Computing and Control Systems (ICICCS) (pp. 829-833). IEEE.

[11] Mastroeni, L., Mazzoccoli, A. and Naldi, M., 2023. Cyber Insurance Premium Setting for Multi-Site Companies under Risk Correlation. Risks, 11(10), p.167.

[12] Moher, D., Shamseer, L., Clarke, M., Ghersi, D., Liberati, A., Petticrew, M., Shekelle, P., Stewart, L.A. and Prisma-P Group, 2015. Preferred reporting items for systematic review and meta-analysis protocols (PRISMA-P) 2015 statement. Systematic reviews, 4, pp.1-9.

[13] Paananen, K.M., 2023. The management of information and cybersecurity and the protection of intellectual capital: a systematic literature review.

[14] Patino, C.M. and Ferreira, J.C., 2018. Inclusion and exclusion criteria in research studies: definitions and why they matter. Jornal Brasileiro de Pneumologia, 44, pp.84-84.

[15] Peihani, M., 2022. Regulation of cyber risk in the banking system: a Canadian case study. Journal of Financial Regulation, 8(2), pp.139-161.

[16] Turskis, Z., Goranin, N., Nurusheva, A. and Boranbayev, S., 2019. Information security risk assessment in critical infrastructure: a hybrid MCDM approach. Informatica, 30(1), pp.187-211.

[17] Uchenna, C.C., Jamil, N., Ismail, R., Yan, L.K. and Mohamed, M.A., 2021. Malware threat analysis techniques and approaches for iot applications: A review. Bulletin of Electrical Engineering and Informatics, 10(3), pp.1558-1571.

[18] Von Solms, B. and Von Solms, R., 2018. Cybersecurity and information security–what goes where?. Information & Computer Security, 26(1), pp.2-9.

How to cite this paper

Olusegun Adedeji "Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense" Iconic Research And Engineering Journals Volume 6 Issue 11 2023 Page 936-945
Olusegun Adedeji "Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense" Iconic Research And Engineering Journals, vol. 6, no. 11, May. 2023
Olusegun Adedeji (2023). Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense. Iconic Research And Engineering Journals, 6(11).
Olusegun Adedeji "Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense" Iconic Research And Engineering Journals, vol. 6, no. 11, May. 2023.
@article{1707045,
      author = {Olusegun Adedeji},
      title = {Cyberattack Trends in the Financial Sector: Assessing the Risks and Strategies for Resilient Defense},
      journal = {Iconic Research And Engineering Journals},
      year = {2023},
      volume = {6},
      number = {11},
      pages = {936-945},
      issn = {2456-8880},
      url = {https://www.irejournals.com/formatedpaper/1707045.pdf},
      abstract = {Cyberattacks on financial institutions have escalated globally, posing significant threats to the secure flow of capital and information. As the financial sector increasingly embraces digital innovations such as mobile banking, cloud infrastructure, and real-time payment solutions, the attack surface has expanded, making institutions more susceptible to cyber threats. This study conducts a systematic literature review (SLR) to identify prevalent cyberattack tactics, assess their impact on financial institutions, and propose resilience strategies. The findings highlight phishing, ransomware, and distributed denial-of-service (DDoS) attacks as the most common threats, with third-party vulnerabilities and legacy system exploitation also emerging as critical risks. The study underscores the financial, reputational, and operational consequences of cyber incidents, including monetary losses, regulatory penalties, and erosion of consumer trust. To enhance resilience, financial institutions must adopt a multi-layered cybersecurity approach that integrates advanced technical controls, such as encryption and AI-driven threat detection, with robust organizational measures, including employee training and incident response planning. The study also emphasizes the need for regulatory alignment with evolving cyber threats and improved collaboration between stakeholders. Institutional Theory and Resilience Theory provide a theoretical foundation for understanding how financial organizations can balance compliance with proactive security measures. This research contributes to cybersecurity literature by consolidating empirical insights and offering practical recommendations for financial institutions to mitigate evolving threats. Future research should explore emerging technologies like the Internet of Things (IoT) and quantum computing to address new vulnerabilities. Ultimately, financial institutions must prioritize resilience to safeguard assets, maintain trust, and ensure business continuity in an increasingly complex digital landscape.},
      month = {May},
  }