• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
Tech

Hackers Prey on Smaller Firms as Big Banks Harden Security

Jeff John Roberts
By
Jeff John Roberts
Jeff John Roberts
Editor, Finance and Crypto
Down Arrow Button Icon
Jeff John Roberts
By
Jeff John Roberts
Jeff John Roberts
Editor, Finance and Crypto
Down Arrow Button Icon
June 23, 2016, 7:30 AM ET
Online Crime
BERLIN, GERMANY - AUGUST 20: Symbolic feature with topic online crime, data theft and piracy and hacker, here the silhouette of a person with a laptop in his hands, on Augut 20, 2015 in Berlin, Germany. (Photo by Thomas Trutschel/Photothek via Getty Images)Photography by Thomas Trutschel Photothek via Getty Images

A tech startup in the New York area was flying high after a big funding round. The cash landed in the company’s bank account, but then disaster struck: Cyber criminals had heard about the funding round too, and decided to steal the money.

Using software that monitored the keystrokes of the CFO and comptroller, the hackers obtained the company’s banking credentials and drained over $1 million from its working capital account, sending funds to bank accounts in Russia, China, and Turkey. The firm, which did not want to be named, never recovered the money.

Get Data Sheet, Fortune’s technology newsletter.

According to Mark McArdle of eSentire, a security firm that advised the startup after the attack, the incident was not an isolated one. Instead, it is part of a growing trend in which sophisticated cyber criminals are eschewing big financial institutions in favor of softer targets.

Hackers move down the food chain

A recent cyber-heist on Bangladesh’s central bank, which saw criminals make off with $80 million, is a reminder the financial sector is still vulnerable to hackers. But in North America, such attacks have become much more difficult.

“Larger banks are getting harder to penetrate since they’ve invested in security for years. They’ve had their big breach through which they get religion, they get spend [more budget] and they get harder,” said Bill Stewart, an EVP with Booz Allen (BAH). “Now, the adversaries are moving down the food chain.” In practice, this means the same hackers who once targeted big banks are seeking easier prey: credit unions, small hedge funds, PR firms, and a wide variety of other mid-tier enterprises.

This Is the Place Where AT&T Stops Hackers

The attackers are led by mafia-like criminal gangs but also outfits like Lazarus, which hit the Bangladesh central banks, and which is widely believed to be tied to the government of North Korea. According to McArdle of eSentire, some nation states are expanding their hacking targets as a way to fund their cyber-military capacities.

He added that the mid-tier firms, now the targets of hackers of all stripes, can be defined as companies that lack resources for chief security officers, and other full-time defense operations.

Brett Hansen, an executive with Dell Security, confirmed this assessment.

“Cyber crime is making a lot of people rich. Because of that you’re going to find a lot of people who want to take a share of windfall,” he said. “It’s an opportunistic enterprise. Just as businessmen will look for low barriers to entry, so will cyber criminals.”

The attacks can come in a variety of forms, including ransomware, boss phishing (emails that trick employees into wiring money) or outright heists like the one that befell the New York tech company.

Cyber-as-a-service and the me-too problem

The prospect of staving off hackers who learned their trade on big banks is a daunting prospect for mid-size companies. Lacking the security sophistication of giants like JP Morgan (JPM), they appear to sitting ducks.

This situation is what is giving rise to the growth of “cyber-as-a-service” outfits like eSentire and Dell Security (DELL), which provide advice and remote monitoring to companies outside the Fortune 500.

One solution, according to McArdle, is to “reduce the attack surface to something manageable” by using dedicated computers for sensitive transactions, and have someone monitor them for unusual activity.

This sort of approach may also be appealing to firms with smaller security budgets, especially given the huge number of vendors offering a bewildering array of cyber-security software.

This Hacker Found a Way to Get Free Domino’s Pizza for Life

According to a recent BTIG report, the saturation of the cyber market is such that there are literally hundreds of companies currently offering similar products. The report, called “Attack of the Clones,” warns investors and companies to beware of “me-too” vendors offering the “next magical cyber security solution.”

Stewart of Booz Allen, which is also expanding its security practice, says the “cyber-as-a-service” option for mid-tier service is likely here to stay, but also offered a word of caution.

“It’s viable but it’s not easy—managed security service is an emerging market, and some services are commoditized,” he said. “Where I see the whole thing heading is that there is going to be consolidation and service integrators will emerge.”

But no matter how things play out in the cyber-security industry, mid-size firms better explore their options. Before North Korea comes calling.

About the Author
Jeff John Roberts
By Jeff John RobertsEditor, Finance and Crypto
LinkedIn iconTwitter icon

Jeff John Roberts is the Finance and Crypto editor at Fortune, overseeing coverage of the blockchain and how technology is changing finance.

See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Image showing multiple computer screens with code.
CybersecuritySecurity
Mercor, a $10 billion AI startup that works with companies including OpenAI and Anthropic, confirms major data breach
By Beatrice NolanApril 2, 2026
4 hours ago
picture of the word "solana"
CryptoCryptocurrency
Latest crypto hack sees thieves make off with $280 million from Solana DeFi platform Drift
By Carlos GarciaApril 2, 2026
5 hours ago
Jack Dorsey and Roelof Botha think AI can make middle management obsolete 
AIBlock
Jack Dorsey and Roelof Botha think AI can make middle management obsolete 
By Jacqueline MunisApril 2, 2026
6 hours ago
china
AIChina
Meet China’s AI-powered recycling robot that sorts 220 pounds of clothes in 2 to 3 minutes
By Tian MacLeod Ji and The Associated PressApril 2, 2026
7 hours ago
In the age of vibe coding, trust is the real bottleneck
AIEye on AI
In the age of vibe coding, trust is the real bottleneck
By Sharon GoldmanApril 2, 2026
7 hours ago
A photo illustration of two laptops with eyeballs over a red background with alert signs.
CryptoNorth Korea
I knew about North Korean hackers—they still tricked me and got into my computer
By Ben WeissApril 2, 2026
8 hours ago

Most Popular

Gen Z fled San Francisco for Texas and Florida. Now they’re turning ‘welcomer cities’ into the next big tech towns
Real Estate
Gen Z fled San Francisco for Texas and Florida. Now they’re turning ‘welcomer cities’ into the next big tech towns
By Fortune EditorsApril 2, 2026
16 hours ago
Current price of gold as of April 1, 2026
Personal Finance
Current price of gold as of April 1, 2026
By Fortune EditorsApril 1, 2026
1 day ago
Two-thirds of parents say their adult Gen Z kids still rely on them financially  for support—even though it's putting them under strain
Success
Two-thirds of parents say their adult Gen Z kids still rely on them financially  for support—even though it's putting them under strain
By Fortune EditorsMarch 31, 2026
2 days ago
The tax escape map: Billionaires are bolting for Florida from the West Coast and taking billions in tax revenue with them
Real Estate
The tax escape map: Billionaires are bolting for Florida from the West Coast and taking billions in tax revenue with them
By Fortune EditorsApril 2, 2026
16 hours ago
Current price of oil as of April 1, 2026
Personal Finance
Current price of oil as of April 1, 2026
By Fortune EditorsApril 1, 2026
1 day ago
Deutsche Bank asked AI if it’s true that AI will solve the economy’s inflation problems. The robots answered
Economy
Deutsche Bank asked AI if it’s true that AI will solve the economy’s inflation problems. The robots answered
By Fortune EditorsApril 1, 2026
1 day ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.