National Interests: Priorities and Security

Social engineering as a source of risks in online banking services

Vol. 13, Iss. 9, SEPTEMBER 2017

Received: 19 July 2017

Received in revised form: 6 August 2017

Accepted: 24 August 2017

Available online: 2 October 2017


JEL Classification: G21, G39, L86

Pages: 1747–1760


Revenkov P.V. Financial University under Government of Russian Federation, Moscow, Russian Federation

Berdyugin A.A. Financial University under Government of Russian Federation, Moscow, Russian Federation

Importance Intended for stealing confidential information, social engineering is manipulation of people's actions without any technical means, playing upon biases of the human factor. In finance and banking, it causes breaches in data protection that threaten to the business continuity and security. This subject arises from the improper preparation of customers using electronic financial services that results in thefts from bank accounts.
Objectives The research explores the mutual relation of actions undertaken by data generating functions. We also analyze social engineering techniques for swindling a victim, and undertaking appropriate countermeasures. We also devise methods to reinforce cybersecurity.
Methods The research involves mathematical computations and methods of a systems analysis of scientific literature on theoretical and applied researches. We also applied a pedagogical approach to studying and summarizing the existing experience. The article analyzes the cause-and-effect relations from cyber criminal–victim perspectives.
Results We refer to particular examples of social engineering crimes and countermeasures. We substantiate the importance of conventional training for countering cyber crimes. We devise intellectual development methods, organizational and legal methods for countering social engineering. The article describes how the user's social engineering legitimacy correlates with information security violations.
Conclusions and Relevance The value and novelty of this research are that it provides recommendations for elevating users' literacy with respect to remote banking so to mitigate cyber crime risks. The findings can be used by financial and educational institutions to corroborate the dependence of cybercrimes on the users' literacy and intellectual development methods.

Keywords: online banking, cybersecurity, risk, human factor, commercial bank, social engineering


ISSN 2311-875X (Online)
ISSN 2073-2872 (Print)

