Dubai FSA is alerting institutions to the increased risk of cyber attacks, as it has observed an increase in attacks leveraging known and new malware and a soaring number of newly registered malicious domains referencing COVID-19 since March. Amid these circumstances, Dubai FSA also announced that its Cyber Threat Intelligence Platform (TIP) is gaining traction, as more than 130 DFSA-authorized firms and DFIC-registered [Dubai International Financial Center] companies have joined the platform. Based on the information collected so far, one of the most prominent threats relate to direct targeting of banking customers to obtain credit card data and banking credentials.
The Dubai FSA launched its Cyber Threat Intelligence Platform in January 2020. Since its launch, the Threat Intelligence Platform has collected information on threat actors targeting the Middle East and North Africa region, especially the United Arab Emirates (UAE). The most prominent threats affecting the finance sector fall into three primary categories. These categories include the direct targeting of banking customers to obtain credit card data and banking credentials; ransomware attacks; and the targeting of the finance sector by cyber-criminal syndicates. The Threat Intelligence platform provided members with information and technical indicators on a multitude of cyber threats, with an average of 160 new threats per week. The Threat Intelligence platform is the first financial services regulator-led cyber-threat intelligence platform in the region and is delivered in collaboration with leading government entities—the Dubai Electronic Security Center (DESC), the National Computer Emergency Response Team for the UAE (aeCERT), and the Computer Incident Response Center Luxembourg (CIRCL). The platform is available at no cost to all Dubai FSA-authorized and DIFC-registered companies.
Related Link: Press Release
Keywords: Middle East and Africa, Dubai, Banking, Cyber Risk, TIP, Cyber Threat Intelligence Platform, DIFC, COVID-19, Dubai FSA
Previous ArticleBank of Italy Extends Dividend Payout and P2G Guidance Amid Crisis
EBA finalized the two sets of draft regulatory technical standards on the identification of material risk-takers and on the classes of instruments used for remuneration under the Investment Firms Directive (IFD).
EC published, in the Official Journal of the European Union, a notification that the European Court of Auditors (ECA) has published a special report on resolution planning in the Single Resolution Mechanism.
BoE published a scenario against which it will be stress testing banks in 2021, in addition to setting out the key elements of the 2021 stress test, guidance on the 2021 stress test, and the variable paths for the 2021 stress test.
PRA published a consultation paper (CP3/21) proposes rules regarding the timing of identity verification required for eligibility of depositor protection under the Financial Services Compensation Scheme (FSCS).
FSB published the work program for 2021, which reflects a strategic shift in priorities in the COVID-19 environment.
FCA announced that 50% firms have started using the new data collection platform RegData, which is slated to replace the existing platform known Gabriel.
Bundesbank published Version 5.0 of the derivation rules for completeness check at the form level, with respect to the data quality of the European harmonized reporting system.
FED finalized a rule that updates capital planning requirements to reflect the new framework from 2019 that sorts large banks into categories, with requirements that are tailored to the risks of each category.
ECB published results of the quarterly lending survey conducted on 143 banks in the euro area.
ESAs published the final draft implementing technical standards on reporting of intra-group transactions and risk concentration of financial conglomerates subject to the supplementary supervision in EU.