Focusing on the Swiss financial sector, the report investigated the structure of security incidents as observed by contributing organizations, with a special attention to the impact of the COVID-19 pandemic:

Phishing followed by ransomware are the highest perceived threats by the institutions. This correlates with e-mail being the top attack vector on financial organizations. A clear spike of attack activity correlated with the COVID-19 pandemic was observed. Within weeks, organizations shifted to remote working and customers relied more than ever on online banking applications, enlarging attack surfaces and creating new targets for malicious cyber actors. The results show the willingness and capability of cyber actors to quickly adapt their methods to leverage any situation.

Furthermore, the report focused on the structure of Chief Information Security Officer (CISO) operations within the sector, which gives insight into the available resources and their use within organizations. This shows a correlation between reported visibility and number of observed incidents within an organization, where higher visibility increases the number of incidents.

Last but not least the report analysed the following countries in order to identify key similarities and differences between the cyber threat landscape pertaining to the Swiss and the other sample countries’ financial sectors: Germany, France, Spain, the Netherlands, the UK, the US, and Singapore.

In conclusion the key similarity identified is that Ransomware, phishing, and to some extent supply chain attacks, remain the largest cyber security threats to financial organizations, regardless of their size or location. Secondly, an increase in observed cyberattacks occurred during the onset of the COVID-19 pandemic in March, independent of location. These similarities highlight the need for a more global information sharing infrastructure.

Given that most financial institutions are targeted by similar attack methods, financial institutions could benefit greatly from being able to access near real-time information on campaigns targeting other financial organizations. This would enable organizations to put in place specific mitigation measures, as the likelihood of them being targeted by the same or similar campaigns is high.

Download SIX Cyber Security Report 2020 here.

Any questions?

Please do not hesitate to contact Jürg Schneider.

About SIX
SIX provides and operates stable and efficient infrastructure for the Swiss and Spanish financial centers, thus ensuring access to the capital markets and the flow of information and money between financial market players. As a global provider of financial information, SIX delivers high-quality reference, pricing, corporate actions, and ESG data and provides regulatory services and indices to clients around the world. The company is owned by its users (more than 120 banks) with a workforce of 4,160 employees and a presence in 19 countries.