Markets at Risk Due to Cyberattacks Against Exchanges

Survey finds more than half of the world's financial exchanges fell victim to some kind of cyberattack in the last year.

A new report from the Research Department of the International Organization of Securities Commissions (IOSCO) and the World Federation of Exchanges (WFE) Office says that cybercrime within the securities markets can be considered a potentially systemic risk.

[ Quiz: Separate Cyber Security Fact From Fiction ]

[ 7 Cybercrime Facts Executives Need to Know ]

A joint study, published by the IOSCO and the WFE, examines how cybercrime is evolving, and what kind of threat it poses to the world's markets. In a survey of 46 financial exchanges, 53 percent of them reported experiencing some kind of cyberattack in the last year. As such, the study's authors say that cybercrime within the securities markets can be considered a potentially systemic risk, a notion that a majority of the exchanges surveyed agreed with.

[Related: Wall Street sets example for testing security defenses ]

Based on the responses sent by the exchanges, most of the attacks that have been experienced are disruptive in nature, such at DDoS attacks that seek to prevent access to websites and networks. Other wise they are malware related. It should be noted that financial theft didn't show up in any of the responses. These responses, the report notes, suggest a shift from financial gain, and towards more disruptive aims.

In addition, the report also says there is "a high level of awareness of the threat across exchanges surveyed." Accordingly, 93 percent of the exchanges responded that cyber threats are discussed and understood by senior management, and the same amount also confirmed that there are disaster recovery plans in place to deal with the aftermath of an attack. All of them reported that they'd be able to identify a cyberattack within 48-hours.

Overall, the report shows that exchanges are highly aware of the risks they face, the full extent of the threat remains unknown.

"One way to overcome this uncertainty and still engage with cybercrime is to envision and list potential factors and scenarios where cybercrime could have the most devastating impacts and then mould responses to best engage with those factors, effectively minimizing opportunities for cyber attacks to manifest systemic consequences," the report concludes.

One thing that a majority of the respondents confirmed was the fear that the potential impact of a major cyberattack could affect confidence and reputation, followed by integrity and efficiency, and financial stability. Thus, a broader and more robust system-wide response to the issue is needed.

This story, "Markets at Risk Due to Cyberattacks Against Exchanges" was originally published by CSO.

To comment on this article and other CIO content, visit us on Facebook, LinkedIn or Twitter.
Download the CIO Nov/Dec 2016 Digital Magazine
Notice to our Readers
We're now using social media to take your comments and feedback. Learn more about this here.