Online Fraud Is A British Security Nightmare

Fraud in Britain has risen to a level where it poses a “national security threat”, according to the banking industry, with £754m stolen from bank customers during the first half of this year, a 30% rise on the same period in 2020.  

UK MPs are calling on the Government to legislate on mandatory reimbursement by banks to victims of authorised push payment fraud and new rules to bring the technology industry exert control over social media scams. A new report by the parliamentary Treasury Select Committee is calling on the Government to "push harder and act faster on the growing fraud epidemic".

The Royal United Services Institute (RUSI) has now reported that fraud should now be seen as a national security issue and is costing £190b a year. UK Finance said fraudsters had capitalised on the coronavirus pandemic, with criminals targeting children as young as 14 via social media to become money mules. Britain's intelligence agencies and the police should play a greater role in responding, according to the RUSI Report, which says that the amount of fraud against the private sector has had a negative impact on the UK as a place to do business.

The Crime Survey for England and Wales found 3.7 million reported incidents in 2019-20 of members of the public being targeted by credit card, identity and online fraud.

The private sector takes the biggest financial losses. One estimate from 2017 put the cost of fraud to businesses at £140bn. However, the losses go beyond the financial, the Survey authors say. "Fraud has the potential to disrupt society in multiple ways, by psychologically impacting individuals, undermining the viability of businesses, putting pressure on public services, fuelling organised crime and funding terrorism." The report cites evidence that terrorist groups and lone actors turn to fraud in order to finance their activities. In one case, eight supporters of the Islamic State group were convicted of defrauding UK pensioners out of more than £1m, which was alleged to be used in part to fund travel from the UK to Syria. 

The digitisation of everyday life has been accelerated by Coronavirus has increased the risks, with organised crime groups showing increased sophistication in their tactics. "The UK has become a target destination for global fraudsters," the RUSI argues. But the extent to which international criminals focus on the UK is hard to gauge, because intelligence agencies have not traditionally focused on the issue. 

Classifying fraud as a national security issue would help ensure the right level of resourcing and prioritisation, the authors argue. 

RUSI recommend more focused intelligence direction from the National Security Council, including greater tasking for GCHQ as well as the National Crime Agency to understand the issue. They call for better information-sharing and use of data analytics, as well as more money and attention from police forces to address what they call a "responsibility vacuum".

The RUSI report makes a number of recommendations for policymakers to consider. At its core, it advocates that the National Security Council commissions a whole-of-system public-private fraud strategy, including a local networked criminal justice response, pathways for cross-government collaboration, and a clearer role for the financial, e-commerce and telco sectors.

Gov.UK:      Computer Weekly:      RUSI:       Finextra:       Guardian:       BBC:  

You Might Also Read: 

Britain's Cyber Security Strategy Focuses On Resilience:
 

« A Quick Guide To Remote Code Execution (RCE)
Most SMEs Do Not Provide Cyber Security Training »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Fuel Recruitment

Fuel Recruitment

Fuel Recruitment is a specialist recruitment company for the IT, Telecoms, Engineering, Consulting and Marketing industries.

GigaOm

GigaOm

GigaOm's mission is to provide enterprises with information and analysis to help them make better decisions about technology.

MarQuest

MarQuest

MarQuest provides services and systems to enhance network reliability and security.

Oxford BioChronometrics

Oxford BioChronometrics

By building profiles based on electronically Defined Natural Attributes, or e-DNA, Oxford BioChronometrics protects digital networks, communities, individuals and other online assets from fraud.

Waratek

Waratek

Waratek is a pioneer in the next generation of application security solutions known as Runtime Application Self-Protection or RASP.

ComCERT

ComCERT

ComCERT SA is an independent, private consulting company focusing in the assistance of its customers facing the dangers of cyber threats and security incidents.

S2S Group

S2S Group

S2S Group specialise in the destruction and management of IT assets at the end of the lifecycle.

Informer

Informer

Informer provides an Attack Surface Management SaaS platform alongside penetration testing services. We combine machine learning and human intelligence to reduce cyber risk.

Dynatrace

Dynatrace

Dynatrace provides software intelligence to simplify cloud complexity and accelerate digital transformation.

GitProtect.io

GitProtect.io

​GitProtect is a fully manageable, professional GitHub and Bitbucket backup and recovery software that protects repositories and metadata from any event of failure.

Jisc

Jisc

Jisc is a membership organisation working in partnership with the UK’s research and education communities to develop the digital technologies they need to teach, discover and thrive.

VanishID

VanishID

VanishID (formerly Picnic) is a gritty, pioneering team of intelligence and cybersecurity specialists focused on solving the security challenge of our time - social engineering.

Akto

Akto

Akto, the plug & play API security platform. Discover your APIs, run tests and find business logic vulnerabilities at ludicrous speed.

NetApp

NetApp

The NetApp portfolio includes intelligent cloud services, data services, and storage infrastructure that helps organizations manage applications and data everywhere across hybrid cloud environments.

Borwell

Borwell

Borwell delivers software and IT solutions to the UK MoD and to UK Government departments, which are secure by design.

National Renewable Energy Laboratory (NREL) - USA

National Renewable Energy Laboratory (NREL) - USA

NREL is transforming energy through research, development, commercialization, and deployment of renewable energy and energy efficiency technologies.

Lyvoc

Lyvoc

Lyvoc is a premier cybersecurity integration partner renowned for its expertise in supporting its clients to accelerate and secure their digital transformation.

Novera

Novera

Novera offer security assessment and advisory services to help businesses manage risks from AI, cyber and privacy.