Cybersecurity Guidelines for Financial Sector Te…

Indonesian Financial Services Authority

7. Man-in-the-Middle (MitM)

8. Zero-Day Attack

Man-in-the-Middle (MitM) is an attack that intercepts communication between two parties and impersonates one of them. MitM can be used to steal data, alter messages, or disrupt communication.

Zero-Day Attack exploits software vulnerabilities that are unknown to the developers. This attack is harder to detect and prevent as there are no available patches to address them.

9. Cyber Espionage

10. Supply Chain Attack

Cyber Espionage is the theft of confidential or sensitive information, such as business data, government data, or trade secrets. It is often carried out by state- sponsored hackers or criminal organizations.

Supply Chain Attack targets third- party suppliers to gain access to larger organizational systems or data. This attack can be very dangerous as it can affect multiple organizations simultaneously.

11. Credential Stuffing

Credential Stuffing is an attack that uses illegally obtained credentials, such as usernames and passwords, to access online accounts. These credentials can be obtained through phishing, data breaches, or malware.

Cyberattacks are not limited to the examples above. FSTI Providers must continuously update their security measures of the ever-evolving cyber threats.

19

Made with FlippingBook. PDF to flipbook with ease