Financial Crimes (Banking, credit card, Debit card related)

Financial cyber crimes directly money के पीछे जाते हैं: online banking fraud, credit और debit card fraud, banking credentials के लिए phishing, और identity theft, सब funds या इन्हें चुराने के लिए चाहिए information चुराने का aim रखते हुए।

10 min read · 7 cards · 2 checks

Read in: English · हिन्दी · ગુજરાતી


Theory

Directly Money की तरफ जाना

कुछ cyber crimes data चाहते हैं, कुछ reputations चाहते हैं, पर financial cyber crimes सबसे direct prize चाहते हैं: money। ये bank accounts, credit और debit cards, और इन्हें access करने के लिए चाहिए personal information को target करते हैं।

Crime unit का यह closing lesson main financial crimes cover करता है, banking fraud, card fraud, phishing, और identity theft, और attackers इन्हें कैसे pull off करते हैं। क्योंकि e-commerce payments पर run करता है, ये वे crimes हैं जिनके against एक online store और इसके customers को सबसे ज़्यादा guard करना चाहिए। इन्हें समझना अगली unit में study किए गए defences का bridge है।

At a glance

Crimeयह क्या करता है
Online Banking FraudMoney transfer या चुराने के लिए bank accounts में unauthorised access
Credit / Debit Card FraudUnauthorised purchases के लिए stolen card details इस्तेमाल करना
PhishingFake emails/sites के through users को banking या card credentials reveal करने के लिए trick करना
Identity TheftFinancial gain के लिए किसी को impersonate करने के लिए personal information चुराना

Theory

ये कैसे काम करते हैं

Online banking fraud में किसी के bank account में unauthorised access पाना involve है, stolen credentials के through, money transfer या withdraw करने के लिए। Credit और debit card fraud ऐसी purchases बनाने के लिए stolen card details इस्तेमाल करता है जिन्हें real owner ने कभी authorise नहीं किया (card skimming devices card data capture कर सकते हैं)।

Phishing common gateway है: attackers fake emails भेजते हैं या fake websites setup करते हैं जो genuine दिखती हैं (आपका bank, एक store) आपको अपने credentials enter करने के लिए trick करने के लिए, जिन्हें ये फिर इस्तेमाल करते हैं। Identity theft आपको impersonate करने और आपके नाम पर accounts खोलने या transactions करने के लिए enough personal information चुराता है। अक्सर ये साथ chain होते हैं: phishing या एक data breach details देता है, जो फिर fraud के लिए इस्तेमाल होते हैं।

Formula

Financial Crime के Against कैसे Defend करें

क्योंकि ये crimes credentials चुराने पर rely करते हैं, defences इन्हें protect और verify करने पर focus करते हैं। Strong authentication, especially two-factor (एक password plus एक one-time code, OTP), मतलब सिर्फ़ एक stolen password काफ़ी नहीं है। Secure connections (SSL/TLS) details को transit में intercept होने से रोकते हैं। और user vigilance vital है: कभी भी एक unexpected email के link से banking details enter न करें, check करें site genuine है (padlock, real address), और urgent requests से sceptical रहें, phishing का hallmark।

तो financial crime का answer technology (authentication, encryption) को awareness (phishing spot करना) के साथ combine करता है। दोनों matter करते हैं, क्योंकि attackers इनमें से weakest को target करते हैं।

Quiz

एक attacker आपके bank होने का pretend करता एक fake email भेजता है, एक lookalike site से link करते हुए आपको अपने login details enter करने के लिए trick करने के लिए। इस technique को क्या कहते हैं?

  1. एक denial-of-service attack
  2. Phishing, fake emails या websites के through users को credentials reveal करने के लिए trick करना
  3. Software piracy
  4. Cyber squatting
Show the answer

Phishing, fake emails या websites के through users को credentials reveal करने के लिए trick करना

Users को अपने credentials reveal करने के लिए trick करने के लिए fake emails भेजना या lookalike websites setup करना phishing है, financial crime का एक common gateway। Option A, denial of service, एक system को unavailable बनाने के लिए flood करता है, यह users को credentials देने के लिए trick नहीं करता। Option C, software piracy, software illegally copy करना है, login details चुराने से unrelated। Option D, cyber squatting, bad faith में एक brand का domain register करना है, credentials harvest करने के लिए एक bank को impersonate करने से अलग। Phishing deception पर rely करता है (fake पर convincing messages और sites) आपको अपनी details hand over कराने के लिए, जो फिर fraud के लिए इस्तेमाल होती हैं। Unexpected links से कभी credentials enter न करके और real site verify करके defend कीजिए।

Think first

Two-Factor Authentication Financial Crime के Against इतना Help क्यों करता है?

अगर एक attacker phishing के through आपका password चुरा ले, two-factor authentication अभी भी आपको क्यों protect करता है? फिर tap कीजिए।

Show the answer

क्योंकि two-factor authentication password से आगे identity का एक SECOND, separate proof मांगता है, तो भले एक attacker आपका password चुरा ले, इनके पास अभी भी second factor नहीं होता और ये अंदर नहीं आ सकते, यह उस attack को तोड़ता है जिसे एक stolen password अकेला complete कर देता। ज़्यादातर financial crime एक attacker द्वारा आपके CREDENTIALS पाने से शुरू होता है, अक्सर सिर्फ़ एक password, phishing, malware, या एक data breach के through। Single-factor login (सिर्फ़ password) के साथ, वह stolen password पूरी key है: attacker इसे type करता है और अंदर है, आपका account drain करने में able। Two-factor authentication एक अलग KIND की second requirement add करता है, typically 'something you have' 'something you know' के अलावा: password के बाद, आपको एक one-time code (OTP) भी देना पड़ता है जो आपके phone पर भेजा गया या एक app से generate हुआ, या अपने device पर एक prompt approve करना पड़ता है। अब एक stolen password काफ़ी नहीं है, attacker को second factor पाने के लिए आपका phone या device भी चाहिए होगा, जो इनके पास almost certainly नहीं है। तो सबसे common attack, एक password चुराना, अकेले succeed नहीं होता, और account protected रहता है। यही वजह है banks और serious services two-factor authentication को इतना push करते हैं: यह account takeover dramatically reduce करता है, क्योंकि यह exactly उस weakness (एक single stolen secret) के against defend करता है जिसे attackers सबसे ज़्यादा exploit करते हैं। यह perfect नहीं है, sophisticated attackers OTPs intercept करने या आपको इन्हें reveal कराने की कोशिश कर सकते हैं, यही वजह है user vigilance अभी भी matter करता है, पर यह अकेले password से bar enormously raise करता है। एक second, separate factor मांगना मतलब एक stolen credential अब पूरी key नहीं है, यही वह है जो two-factor authentication को इतना effective defence बनाता है। दो अलग keys चाहिए वाले दो locks एक से pick करना बहुत harder हैं।

Summary

Key takeaways

  • Financial cyber crimes directly money को target करते हैं: bank accounts, cards, और इन्हें access करने के लिए चाहिए information।
  • Online banking fraud money transfer या चुराने के लिए accounts में unauthorised access पाता है।
  • Credit/debit card fraud unauthorised purchases के लिए stolen card details इस्तेमाल करता है (skimming card data capture करता है)।
  • Phishing users को fake emails और lookalike websites के through credentials reveal करने के लिए trick करता है; identity theft financial gain के लिए किसी को impersonate करता है।
  • ये अक्सर chain होते हैं: phishing या एक breach details देता है, जो फिर fraud के लिए इस्तेमाल होती हैं।
  • Defences: strong two-factor authentication (अकेला एक stolen password काफ़ी नहीं है), secure connections (SSL), और phishing के against vigilance।
  • Memory hook: financial crime money या इसके लिए credentials चुराता है; two-factor authentication, encryption, और phishing awareness से defend कीजिए।
  • अगर आप किसी specific transaction या account को लेकर worried हैं, अपने bank को इसके official channels के through contact कीजिए, आपको भेजे गए किसी link से नहीं।

Study this properly

This page is the lesson to read. In Gri-Learn the same topic is a graded deck: the self-checks are scored and your weak topics are tracked. Free to start.

Start this topic

Already have an account? Sign in

More from Introduction to Cyber Crimes

Gri-Learn · syllabus-mapped B.C.A. lessons in English, Hindi and Gujarati

Financial Crimes (Banking, credit card, Debit card related) · E-Commerce and Cyber Security (Minor-6-01) · Gri-Learn