Mainichi.Jp Japan Sees Record Losses in Online Banking Fraud and Ransomware in 2025
Article Content
- •Online banking fraud losses in Japan reached a record 10.4 billion yen in 2025.
- •Phishing scams accounted for 90% of fraudulent online banking transfers.
- •Ransomware attacks rose to 226 cases, primarily impacting small and medium-sized firms.
In 2025, Japan experienced unprecedented losses from online banking fraud, totaling approximately 10.4 billion yen ($65 million), according to the National Police Agency. This figure represents an increase of 1.7 billion yen from the previous year, with individuals accounting for 55% of the losses and companies for 45%. The surge in company losses reached around 4.7 billion yen, more than quadrupling the previous year's amount. Phishing scams were identified as the primary method for these fraudulent transfers, comprising 90% of cases, with a record high of 2,454,297 incidents reported. Additionally, the number of fake websites rose by 300,000 to over 1 million. Ransomware attacks also increased, with 226 reported cases, affecting mainly small and medium-sized firms. In a survey, half of the impacted companies reported recovery costs exceeding 10 million yen, with five cases surpassing 100 million yen. Most firms struggled to restore operations due to data encryption or deletion by attackers, despite having backup systems in place.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…