There is a rapid increase in the number of mobile banking applications' users due to an increase in smart mobile devices. Mobile banking is a financial transaction and service offered through mobile devices. Almost all financial institutions now provide mobile banking services to their customers. However, the security of mobile banking applications is of huge concern because of the amount of personal data and information they collect. If an attacker gets hold of personal information, they can access bank payment or card accounts. This research aims to analyze the vulnerability of the UK digital banks' applications to identify vulnerabilities in the apps and proffer countermeasures that can help improve the security of the bank applications. Androbugs, a vulnerability scanner, was used to analyze the vulnerability of six digital banks' android applications. Starling, Monese, Atom bank, Transferwise, Monzo, and Revolut were scanned. All the scanned digital banks' applications have vulnerabilities; however, some have more vulnerabilities than others. For example, Revolut's mobile application has the highest number of identified vulnerabilities. Therefore, there is need for more security in the digital banks' applications as well as other mobile banking applications.
翻译:随着智能移动设备的普及,移动银行应用的用户数量正在快速增长。移动银行是通过移动设备提供的金融交易与服务。目前几乎所有金融机构都向客户提供移动银行服务。然而,由于移动银行应用收集的大量个人数据和信息,其安全性问题备受关注。一旦攻击者获取个人信息,便能访问银行支付账户或银行卡账户。本研究旨在分析英国数字银行应用的安全漏洞,识别其中的脆弱点,并提出可提升银行应用安全性的应对措施。本研究采用漏洞扫描工具Androbugs,对六家数字银行的安卓应用进行了安全性分析,包括Starling、Monese、Atom银行、Transferwise、Monzo和Revolut。所有被扫描的数字银行应用均存在安全漏洞,但部分应用的漏洞数量多于其他应用。例如,Revolut移动应用被识别出的漏洞数量最多。因此,数字银行应用及其他移动银行应用仍需进一步加强安全防护。