Intelligent blocking of compromised bank and financial accounts

A proposal from the Wai™ Cybersecurity team to reduce fraud in the financial system.

From the Wai Cybersecurity team we developed this operational draft as a urgent call for attention to banks and financial institutionsThe company's clients, which lose millions per year by taking over amounts stolen by cybercriminals from their customers.

The goal is clear: to quickly and in a coordinated manner disrupt the criminal circuits that allow cybercriminals to empty accounts in a matter of minutes.

Cases such as cell phone theft with access to virtual wallets, phishing scams or digital intrusions continue to grow. Today, criminals not only access the victim's account: immediately transfer the funds to multiple "swallow" accounts, from where they extract cash or channel it to other networks.

Wai's proposal consists of the implementation of a temporary locking system for accounts suspected of being compromised, including both the account holder and those of immediate destination. This blocking would be triggered after validation of a criminal complaint with biometric accreditation by the holder, generating an automatic alert to the BCRA and the financial institutions involved.

How this model would work:

  1. Beginning of the process:
    Phone theft, phishing or other type of digital attack with access to bank accounts or PSP.
  2. Criminal complaint:
    The holder is required to file a report with biometric identity validation (currently not required by the judicial system). At this point, the SIFCOP (Federal System of Police Communications) could intervene to guarantee interjurisdictional interconnectivity. In this section, it is important to bear in mind that also, according to the latest report of EuropolAs a result, biometrics is already beginning to be compromised, although it is still the most secure way to validate identity.
  3. Automated office to the BCRA:
    Integration via GDE to notify banking ecosystem stakeholders.
  4. Automated blocking request:
    A request is automatically issued to the entities involved for the preventive blocking of accounts.
  5. Temporary blocking action:
    Both the account holder and the "swallow accounts" are suspended until the account holder, through biometric validation, requests the unblocking.

This scheme proposes to change the approach: instead of pursuing the crime when it is already too late, act quickly to cut off the criminal chain in real time and leave the forensic issue and the judicial investigation itself for when it is possible to carry it out.

We share a note made to our CEO, Nicolás Pstyga, about a case that shocked the country:


This work is only a first draft. But we firmly believe that it can lay the groundwork for a national protocol for immediate response to digital crimes with financial impactinvolving both the State and the private sector.

Related articles

Cybercrime is no longer a technical problem: it's political

Cybersecurity is no longer just a technical issue: it is a strategic challenge for governments, justice and legislators. This article explains how the new cybersecurity...

Continue reading...

Intelligent blocking of compromised bank and financial accounts

Cybersecurity: how can banks and fintechs implement a temporary blocking system for compromised accounts? A call to action for financial institutions in the face of...

Continue reading...

Beyond Sensors: Redefining Smart Cities

Ubiquitous sensors, massive data and real-time connectivity - is that all that constitutes a smart city? Or does it have more to do with the use...

Continue reading...

en_US

Sentinel Eyes

Sentinel Eyes is an advanced digital protection platform that monitors assets, identifies threats and prevents risks in real time.

Digital Records System

Allows governments to manage files digitally, complying 100% with current regulations. Saves time, resources and guarantees complete traceability and transparency in the management of each file. Adapted to the regulations of 🇦🇷 República Argentina.

GovLink™

GovLink™ is the comprehensive government digitalization suite from Wai™. It modernizes government management with digital procedures, digital records, e-signatures and more. It transforms the relationship between government and citizens.

Govlink IA™.

Govlink IA™ is the tool that transforms raw data into strategic knowledge. Using artificial intelligence, it detects patterns, finds inconsistencies and presents information in a clear and useful way to optimize decision making in public management.

Escudo Digital™.

Escudo Digital™ is the threat and anomaly detection system that turns every computer and mobile device into an active barrier against cyber attacks. Installed directly on endpoints, it allows cybersecurity policies to be implemented in minutes, without the need for a complex infrastructure.