Digital revolution creates achilles heel for Swiss bank secrecy
February 14, 2010 by Alix Rijckaert
The digital revolution is turning into the achilles heel of Swiss banks, according to security and banking experts quizzed about recent stolen data turning up in the hands of neighbouring countries.
The digital revolution is turning into the achilles heel of Swiss banks, according to security and banking experts quizzed about recent stolen data turning up in the hands of neighbouring countries.
CD-ROMs, USB sticks and even mobile phone cameras have become handy options for disgruntled or ambitious staff to copy computer data on thousands of clients when a few years ago a cumbersome paper trail was needed.
Swiss banks built much of their recent reputation around a legal obligation to maintain secrecy on their customers' banking affairs -- criminal cases aside -- including from the taxman, whether in Switzerland or abroad.
But preventing one-off leaks, which can have much a bigger scope than before, is becoming a conundrum.
Banks are "big consumers of Information Technology" and have to "square the circle" to counter the threat, Gregoire Ribordy, director of network security firm IDQuantique told AFP.
Measures are available, such as minimising the extent of information open to client advisers, automatic access restrictions, multiplying the number of people needed to unlock encrypted data, or prohibiting USB keys and CD-ROMs at the workplace.
Nonetheless, "information has to circulate so that people can do their jobs," said Ribordy.
Yet, even a miniature camera on a cellphone is enough to take a snapshot of data displayed on a computer screen, he pointed out.
The 1934 law on bank secrecy was specifically designed to discourage staff from leaking client data to foreign powers by making it a criminal offence, but that was in the era of hand or type-written ledgers and punch cards.
In 1996, a private security guard became a whistleblower by recovering documents from the shredding room of UBS bank in Zurich to reveal details on hidden Holocaust-era accounts.
But little has filtered on the exact origins of a CD-ROM with stolen Swiss bank data German authorities recently said they were ready to buy for 2.5 million euros in a crackdown on tax-dodging German taxpayers.
A spokesman for the Swiss Bankers Association, Thomas Sutter, acknowledged that the case "is not a good thing for the financial centre."
The German case emerged just months after French authorities picked up a CR-ROM with raw data taken by a former employee of HSBC Private Bank in Geneva, Herve Falciani, allegedly with details on some 3,000 clients.
And in 2008, an anonymous whistleblower sold data on thousands of clients at Liechtenstein banks, helping Germany investigate suspected tax evasion by business executives, sports stars and entertainers.
In the French case, Falciani was a computer expert at the bank.
While in recent years public attention has focused on external attacks by hackers or thefts exploiting Internet Banking, IT security specialist Jerry Krattiger told Le Temps newspaper that about 70 percent of leaks were by insiders.
Hans Geiger, of the Swiss Banking Institute at Zurich University, said there was generally a "high probability" that such leaks would emerge from the IT or computer department.
"I think they are always within the bank or from a service provider to the bank," he told AFP.
"They don't walk away with data or info about two or three clients, they walk away with CDs with hundreds of thousands of clients."
"There is no absolutely safe way," he added.
Another way for banks to tackle the whistleblowing threat is to foster trust and loyalty among their staff, according to Arturo Bris, professor of finance at IMD business school in Lausanne.
Human resources also have a crucial role to play in detecting "suspect behaviour, an employee who is frustrated or faces personal problems" and therefore more likely to be tempted by data theft.
"The bigger the group, the more difficult it is to find the rotten apple," Bris added.
Switzerland's two biggest banks, UBS and Credit Suisse, declined to discuss their security arrangements but insisted that security for private clients was a major priority.
Geiger said banks relied on "a real internal police force," including IT specialists.
While information technology is of "strategic" importance, Krattiger regretted that it was a largely "hermetic world" for senior executives and directors.
Meanwhile, the very same managers hold the purse strings, but security is not a revenue generator, Ribordy noted.
(c) 2010 AFP
-
Human error puts online banking security at risk
Nov 07, 2007 |
not rated yet |
0
-
Too much security reduces trust in online banking
Jan 29, 2008 |
not rated yet |
0
-
Cambridge researchers show Chip and PIN system vulnerable to fraud
Feb 11, 2010 |
not rated yet |
0
-
Wake-up call to business: Tighten up on information security
Jun 30, 2008 |
not rated yet |
0
-
Crises lead banks to operate more opportunistically
Sep 21, 2009 |
not rated yet |
0
-
Engineers build first sub-10-nm carbon nanotube transistor
Feb 01, 2012 |
4.9 / 5 (31) |
30
-
Something old, something new: Evolution and the structural divergence of duplicate genes
Jan 31, 2012 |
4.6 / 5 (7) |
1
-
The hidden nanoworld of ice crystals: Revealing the dynamic behavior of quasi-liquid layers
Jan 30, 2012 |
5 / 5 (3) |
1
-
Stock market network reveals investor clustering
Jan 27, 2012 |
3.9 / 5 (23) |
8
-
Of microchemistry and molecules: Electronic microfluidic device synthesizes biocompatible probes
Jan 26, 2012 |
5 / 5 (1) |
0
-
Calling function with no input argument
15 hours ago
-
Force free body diagram problem on gym equipment
16 hours ago
-
Empirical data regarding shower heads and water
Feb 10, 2012
-
feed hold button on CNC lathe
Feb 09, 2012
-
RFAC in Fortran
Feb 09, 2012
-
dynamics 2/32
Feb 08, 2012
- More from Physics Forums - General Engineering
More news stories
Anonymous knocks CIA website offline (Update)
The website of the Central Intelligence Agency was inaccessible on Friday after the hacker group Anonymous claimed to have knocked it offline.
9 hours ago |
5 / 5 (9) |
16
Google users warned of threat to smartphone wallets
Users of Google smartphone wallets were being warned on Friday that there is a way to crack pass codes intended to thwart thieves from going on illicit shopping sprees.
8 hours ago |
5 / 5 (2) |
0
New error-correcting codes guarantee the fastest possible rate of data transmission
Error-correcting codes are one of the triumphs of the digital age. Theyre a way of encoding information so that it can be transmitted across a communication channel such as an optical fiber o ...
Technology / Computer Sciences
18 hours ago |
4.9 / 5 (8) |
6
|
New power source discovered
(PhysOrg.com) -- Researchers at the Massachusetts Institute of Technology (MIT) and RMIT University have made a breakthrough in energy storage and power generation.
Technology / Energy & Green Tech
17 hours ago |
4.8 / 5 (29) |
8
|
Small modular reactor design could be a 'SUPERSTAR'
(PhysOrg.com) -- Though most of today's nuclear reactors are cooled by water, we've long known that there are alternatives; in fact, the world's first nuclear-powered electricity in 1951 came from a reactor ...
Technology / Energy & Green Tech
17 hours ago |
4.4 / 5 (13) |
23
|
Humans may have helped the decline of African rainforests 3000 years ago
(PhysOrg.com) -- Large areas of rainforests in Central Africa mysteriously disappeared over three thousand years ago, to be replaced by savannas. The prevailing theory has been that the cause was a change ...
The power of estrogen -- male snakes attract other males
A new study has shown that boosting the estrogen levels of male garter snakes causes them to secrete the same pheromones that females use to attract suitors, and turned the males into just about the sexiest ...
Complex wiring of the nervous system may rely on a just a handful of genes and proteins
Researchers at the Salk Institute have discovered a startling feature of early brain development that helps to explain how complex neuron wiring patterns are programmed using just a handful of critical genes. ...
Could Venus be shifting gear?
(PhysOrg.com) -- ESAs Venus Express spacecraft has discovered that our cloud-covered neighbour spins a little slower than previously measured. Peering through the dense atmosphere in the infrared, the ...
Advanced power-grid model finds low-cost, low-carbon future in West
(PhysOrg.com) -- The least expensive way for the Western U.S. to reduce greenhouse gas emissions enough to help prevent the worst consequences of global warming is to replace coal with renewable and other ...
Fool's gold may prove an unlikely alternative to overexploited catalytic materials
Catalytic materials, which lower the energy barriers for chemical reactions, are used in everything from the commercial production of chemicals to catalytic converters in car engines. However, with current catalytic materials ...
Feb 14, 2010
Rank: 2.5 / 5 (2)
Recently we have become aware that an intrusion may have occurred that may have compromised the security of account information. As a precautionary measure, we are closing your consumer account, and issuing a new access card. You will receive your new card and account information in the mail in 5-7 business days. Please destroy any card(s) linked to your old account(s)."
Nice reminder of the essentially egalitarian nature of crime.