No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

Remote access detection in 2023: Unmasking invisible fraud

August 23, 2023
in Protection
0
Do You Really Need a CISO?


In the ever-evolving fraud landscape, fraudsters have shifted their tactics from using third-party devices to on-device fraud.

Now, users face the rising threat of fraud involving remote access tools (RATs), while banks and fraud detection vendors struggle with new challenges in detecting this invisible threat.

Let’s examine the modus operandi of fraudsters, prevalence rates across different regions, classic detection methods and Trusteer’s innovative approach to RAT detection through keystroke analysis.

A rising threat

As Fraud detection methods become more and more accurate, fraudsters have moved from account takeovers (ATOs) from a third-party device to on-device fraud. This can be done either by a legitimate remote access tool (RAT) or by one developed by fraudsters.

Trusteer’s customer data analysis shows that RAT device takeover has become a prevalent form of fraud, constituting a significant proportion of browser-based fraudulent activities in the U.K. and Australia.

This modus operandi started in English-speaking countries and then moved to Spain and Latin America. It has recently surfaced in France and Japan, where it was previously unreported.

Modus operandi: The classic tech support scam

A popular method fraudsters use involves a legitimate RAT, such as Team Viewer or AnyDesk, which allows them to access the victim’s device remotely. These frauds typically involve a social engineering component to convince the user to install the tool and allow the fraudsters to access their device.

Most tech support scams follow these steps:

Step 1: A user is browsing online and is redirected to a malicious website with a pop-up claiming that the device has been infected with malware. The pop-up contains a phone number to a rogue technical support team that can “assist” with “cleaning” the device.

Step 2: The user calls the phone number and is asked to download a RAT and grant the fraudster permission to connect to their device remotely.

Step 3: Next, the legitimate user establishes a banking session to pay for the services. If a one-time password is required to authenticate a new target account identifier, this action is authorized by the victim.

Explore IBM Security Trusteer Solutions

Typical detection methods

One of the typical methods to detect RAT is through lower mouse movement frequency.

If on-device mouse movements comprise many small, frequent events, some of these events get lost while transmitting remote mouse movements. This results in fewer measurable events.

The image below illustrates how these movements would look in a graphic form.

However, the rise of remote work during COVID-19 pushed forward many improvements in remote communication tools — RATs included — altering the old detection models.

Challenge accepted: Trusteer’s innovative solution

Trusteer’s research teams have risen to the RAT fraud detection challenge by exploring alternative detection methods. We have identified distinct behavioral patterns unique to each RAT. The unique behavioral “fingerprints” allow Trusteer’s fraud detection products to detect the use of a RAT and identify the specific tool used during the attack.

For example, the following graphic shows a distinct behavioral pattern, leveraging data from user flow, key and mouse elements in fraud sessions with a RAT mainly used in central Europe.

(Source: IBM Trusteer)

These patterns have been recorded in about 20% of fraud sessions using RATs, as opposed to only 0.01% of legitimate sessions. This helps our teams detect RAT-enabled fraud with more certainty.

Stay safe from RAT fraud

RAT fraud has reached every corner of the world while becoming increasingly invisible, posing a challenge to banks and security teams.

However, Trusteer’s fraud detection system, Pinpoint Detect (PPD), can identify fraud sessions involving RATs with remarkable coverage and accuracy based on behavioral analyses.

If you have further questions about RAT fraud, please contact IBM Trusteer Enterprise Support by opening a case in the Customer Portal.

This post was made possible through the contributions of Nir Somech, Andrey Finkelshtein and Dean David Hershkowitz.

Fraud Analytics Team Leader – IBM Security

Editorial Team

Editorial Team

Related Posts

How Much Training Do You Really Need to Do Hyrox?
Protection

How Much Training Do You Really Need to Do Hyrox?

May 20, 2026
These Are the Best Google Alternatives If You Want Less AI in Your Search Results
Protection

These Are the Best Google Alternatives If You Want Less AI in Your Search Results

May 20, 2026
You Can Try These New Google I/O Features for Free Right Now
Protection

You Can Try These New Google I/O Features for Free Right Now

May 20, 2026
I Ran a Half-Marathon the Garmin Forerunner 970 on One Wrist and This AmazFit Running Watch on the Other, and Here's How They Compared
Protection

I Ran a Half-Marathon the Garmin Forerunner 970 on One Wrist and This AmazFit Running Watch on the Other, and Here’s How They Compared

May 20, 2026
Sony's Signature WH-1000XM5 Headphones Are $150 Off Right Now
Protection

Sony’s Signature WH-1000XM5 Headphones Are $150 Off Right Now

May 20, 2026
I Refused to Use Passkeys Until Apple Added This Feature to Its Passwords App
Protection

I Refused to Use Passkeys Until Apple Added This Feature to Its Passwords App

May 20, 2026
Load More
Next Post
Kemi Badenoch seeks cash for UK ‘advanced manufacturing plan’

Kemi Badenoch seeks cash for UK ‘advanced manufacturing plan’

Popular News

  • Why two Wall Street titans have turned bullish on U.S. stocks

    Why two Wall Street titans have turned bullish on U.S. stocks

    0 shares
    Share 0 Tweet 0
  • Gen Z single women are buying homes. They need an estate plan

    0 shares
    Share 0 Tweet 0
  • Allvue and RSM launch AI model to automate capital calls

    0 shares
    Share 0 Tweet 0
  • 12 Best Online Stock Brokers in the UK for 2023 • Benzinga

    0 shares
    Share 0 Tweet 0
  • Samsung Just Quietly Raised the Prices of These Smartphones and Tablets

    0 shares
    Share 0 Tweet 0

Latest News

Bond yields, oil fall amid hopes for Iran deal; stocks end up with chip shares 

Bond yields, oil fall amid hopes for Iran deal; stocks end up with chip shares 

May 20, 2026
0

Bond yields, oil fall amid hopes for Iran deal; stocks end up with chip shares 

How We Spent Our Family Vacation: A Kid-Friendly Expedition to Antarctica

How We Spent Our Family Vacation: A Kid-Friendly Expedition to Antarctica

May 20, 2026
0

Antarctica represented a genuine unknown for all of them. Rebecca had never envisioned it for herself, and bringing a child...

How Much Training Do You Really Need to Do Hyrox?

How Much Training Do You Really Need to Do Hyrox?

May 20, 2026
0

My fellow Lifehacker writer Beth Skwarecki is a weightlifter. I'm a marathon runner. Together, we make one reasonably competent Hyrox...

Cointelegraph

Missouri AG Sues Crypto ATM Operator CoinFlip ‘For Enabling Scams’

May 20, 2026
0

Missouri is suing the company behind cryptocurrency ATM operator CoinFlip for “knowingly facilitating fraudulent transactions and profiting from them,” in...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.