{"id":51821,"date":"2024-02-26T23:26:38","date_gmt":"2024-02-26T17:56:38","guid":{"rendered":"https:\/\/www.5paisa.com\/finschool\/?p=51821"},"modified":"2025-03-11T15:04:10","modified_gmt":"2025-03-11T09:34:10","slug":"is-indias-fintech-fast-furious-and-fraudulent","status":"publish","type":"post","link":"https:\/\/www.5paisa.com\/finschool\/is-indias-fintech-fast-furious-and-fraudulent\/","title":{"rendered":"Is India\u2019s Fintech Fast, Furious and Fraudulent?"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"51821\" class=\"elementor elementor-51821\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-2ca4a5e elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"2ca4a5e\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-a94af5d\" data-id=\"a94af5d\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-cc7d404 elementor-widget elementor-widget-text-editor\" data-id=\"cc7d404\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<h2>Fintech and India<\/h2><p>The pandemic has given rise to greater adoption of financial technology or \u201cfintech\u201d. As a result, the \u201cFintech Revolution\u201d has begun, with solutions designed to help companies, business owners and consumers better manage their financial operations, processes, and lives. Unfortunately, this increase, and increased frequency of digital transactions, has led to higher rates of fraud occurrence and loss.\u00a0 In particular, identity fraud and security issues are impacting the fintech industry and creates a sense of urgency to develop new prevention methods for the industry.\u00a0<span data-ccp-props=\"{\">\u00a0<\/span><\/p><p>One of India\u2019s largest hospitals, the All India Institute of Medical Sciences (AIIMS) in New Delhi, was hit by a ransomware attack in November 2022. The attack cut off access to approximately 1.3 terabytes of data and impacted the hospital\u2019s electronic medical records system. Its patient scheduling and billing systems were also affected, forcing the hospital to curtail its outpatient services for several days. Not only did it inconvenience patients, it also resulted in substantial financial losses for the hospital. After this incident, AIIMS strengthened its network by switching to a dedicated and secure local area network, among other security measures. Six months later, when another malware attack was mounted, it was thwarted. This isn\u2019t an isolated incident. Such instances are rising across both government and private enterprises. Data from Indian Computer Emergency Response Team (CERT-In) reveals that India Inc. encountered nearly 1.4 million cyberattacks in 2022, and among these, attacks on cloud systems were the highest.<\/p><h2><strong>But Why The Cloud?<\/strong><\/h2><p>As businesses increasingly adopt cloud-based solutions, cyber criminals\u2014who are constantly looking for new vulnerabilities to exploit\u2014are finding it easier to engineer data breaches, explains Rajesh Garg, EVP, Chief Digital Officer &amp; Head of Applications &amp; Cybersecurity at data centre service provider Yotta Data Services. Around 98 per cent of organizations globally now utilize some form of cloud-based tech, while many have adopted multi-cloud deployments from multiple cloud service providers. The massive adoption of the cloud environment has also given rise to Shadow IT, where employees or departments use hardware or software from external sources without the knowledge of the IT or security group of the organisation. This creates a vacuum, where the responsibility of managing security within organizations is not clearly defined.<\/p><h3><strong>Unravelling The Attacks<\/strong><\/h3><ul><li>Primarily motivated by financial gain, recognition and visibility, espionage, geopolitical reasons, etc., cyber intruders usually target industries that have large-scale manufacturing or sales operations, or those that deal with sensitive personal information, such as hospitals and financial services firms, or those that run critical infrastructure, such as power plants, and transmission and distribution companies, among others.<\/li><\/ul><h3><strong>Securing The Cloud<\/strong><\/h3><ul><li>Enterprises should focus on fundamental security policies and procedures necessary to protect their systems. To begin with, a configuration management database is imperative, with visibility into who has access to what and whether access is being monitored and audited. Running vulnerability scans and developing a plan to address those vulnerabilities is also critical, along with identifying end-of-life\/end-of-support technologies.<\/li><li>The model involves implementing the principle of least privilege, risk-based authentication built on network segmentation, continuous monitoring for signs of attacks, and active defence mechanisms. Businesses should also conduct regular security assessments and penetration tests to identify vulnerabilities.<\/li><\/ul><h3><strong>Is India Prepared?<\/strong><\/h3><ul><li>A lack of awareness among enterprises plays an integral role in companies not deploying sufficient security measures for their IT systems. Sundar Balasubramanian, MD of Check Point Software Technologies, India &amp; SAARC says, \u201cLimited awareness, budget constraints, misaligned priorities, trust concerns, and compliance requirements are some potential reasons for companies hesitating to invest in cloud security.\u201d He adds that raising awareness among companies around cloud security risks, offering cost-effective solutions, building trust in service providers, and ensuring compliance with regulations are crucial.<\/li><li>Fintech firms that give apps to consumers and QR codes to merchants ensure speed by putting their computing operations in the cloud, where activity can be scaled up quickly without having to invest in on premise servers. However, at the two bookends of any transaction, there are deposit-taking institutions, one for the payer to send money and the other for the payee toreceive the funds. They\u2019re trying to cope with the surge in volumes with core banking software running on IBM mainframe computers.\u00a0<\/li><li>The lack of a data protection law also hampers cloud security. The \u201caverage spending on cloud security in India among large-cap companies, SMEs and start-ups ranges from $1-5 million, $100,000-$1 million, and $50,000-$100,000, respectively. It can be difficult for companies to know what they need to do to protect their data when there are no clear regulations and guidelines. \u201cThis can lead to complacency and a lack of investment in security measures.\u201d<\/li><li>However, recent advisories by regulators and government agencies have reiterated the need to deploy robust cybersecurity measures and incident response systems for everyone from mainstream organizations to emerging fintech companies, start-ups and SMEs. Whatever the reasons, it is only by adopting a comprehensive cybersecurity approach that organizations in India can mitigate risks, safeguard sensitive data, and ensure the resilience of their digital infrastructure in the face of an expanding threat landscape.\u00a0The RBI has tried to license nodal-account operators as payment aggregators, so it can have oversight on these fintech firms. Still, no matter what it does, the regulator may always find itself a little out of touch.<\/li><li>Three fundamental sources of infirmity need fixing. First, the know-your-customer process needs a more solid underpinning: If Aadhaar is here to stay, it must be made credible and secure. Second, 40 per cent of payments are digital, but they have their origin and destination in a banking system that earns very little from it. Since most UPI transactions are free, traditional lenders have little incentive to shorten their technology-upgrade cycle. Third, the National Payments Corporation of India, which runs the UPI, is a monopoly. What is fast and furious will inevitably be more than a little fraudulent as long as the country\u2019s preferred system for moving money online is devoid of fair charges \u2014 and free from competition.<\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Fintech and India The pandemic has given rise to greater adoption of financial technology or \u201cfintech\u201d. As a result, the \u201cFintech Revolution\u201d has begun, with solutions designed to help companies, business owners and consumers better manage their financial operations, processes, and lives. Unfortunately, this increase, and increased frequency of digital transactions, has led to higher &#8230; <a title=\"Is India\u2019s Fintech Fast, Furious and Fraudulent?\" class=\"read-more\" href=\"https:\/\/www.5paisa.com\/finschool\/is-indias-fintech-fast-furious-and-fraudulent\/\" aria-label=\"Read more about Is India\u2019s Fintech Fast, Furious and Fraudulent?\">Read more<\/a><\/p>\n","protected":false},"author":1,"featured_media":51849,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[17],"tags":[],"class_list":["post-51821","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-whats-brewing"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/posts\/51821","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/comments?post=51821"}],"version-history":[{"count":28,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/posts\/51821\/revisions"}],"predecessor-version":[{"id":68628,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/posts\/51821\/revisions\/68628"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/media\/51849"}],"wp:attachment":[{"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/media?parent=51821"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/categories?post=51821"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.5paisa.com\/finschool\/wp-json\/wp\/v2\/tags?post=51821"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}