Protecting Tochka bank from DDoS attacks
Diana Kamkina • February 15, 2021
Protecting Tochka bank – the world’s first online-only bank for businesses – by efficiently combating DDoS attacks and without compromising genuine users.
Tochka is the world’s first online-only bank focused on businesses and entrepreneurs. Its goal is to simplify the financial world for existing and emerging organisations – without offices, queues, too much bureaucracy and formality.

To date, it already serves more than 300,000 entrepreneurs with around a thousand new customers joining daily.

Award winning online banking

Its innovative approach has allowed Tochka to achieve deserved recognition and get numerous international awards in mobile banking and finance innovation. The bank is recommended by 74% of its customers – this is one of the world’s highest Net Promoter Scores (a loyalty rating) across banks.

Tochka provides all its services online – via its internet banking solution as well as Android and iOS applications. Tochka’s online banking not only allows users to make instant transactions but also monitor all their registered businesses, accounts, balances and services in one dashboard. Customers acknowledge its simplicity and high speed.

Variti first connected with Tochka in 2017, after an inquiry about protecting their core solution (along with the website and 3D Secure authentication) from DDoS attacks was made.

Protecting Tochka bank from DDoS

The enquiry was made due to the bank experiencing an active DDoS attack with a potential to cause online resource service denial.

Immediate and quick action was required. Within hours Variti’s team had stopped the attack and established a stable protection on the network and transport layers (L3 & L4) as these tend to be targeted by cyber criminals in most cases.
An IT Security Architect at Tochka bank commented: ‘I was impressed by how Variti handled our DDoS attack. The team members were highly professional, knowledgeable and efficient. Their attitude and expertise put me at ease despite the crisis situation and I was very happy to have the issue resolved on the same day.’

It is Variti’s Active Bot Protection technology and the incredible team of bot mitigation experts that made this quick turnaround possible. Variti’s technology allows for comprehensive protection to be switched on and configured in an individual control panel, it recognises bots in real time from the very first request to the resource – without the standard market practice of data accumulation and analysis over a certain time period. To add, Variti’s technology does not disturb legitimate users in their banking experience.
Variti for the long run

Once the attack was resolved, Tochka bank decided to improve its security strategy and work with Variti as its long-standing security partner. This decision was based not only on the positive first impressions but also Variti’s ability to meet the bank’s long term needs and priorities.

‘Modern banks are one of the key targets for cyber criminals. Since Tochka bank is an online-only financial organisation for business needs, having all-level security is crucial. Thanks to Variti, our traffic is now filtered through their nodes where bots are easily blocked…thus we are effectively removing all automated cyber threats to our company, solutions, services and most importantly customers.’, says the IT Security Architect.

Also Variti’s expertise and previous experience with protecting companies that process thousands of cash transactions daily like banks, microcredit organisations, and large online stores was invaluable for Tochka.

Banks at risk

Banks have long been the favourite target for criminals. According to a cyber security report by Carbon Black, 67% of the banks and other financial organisations experienced various attempted cyber attacks in 2019. Many hackers launched automated attacks that successfully stole data or money, or otherwise disrupted business. Meanwhile, only 37% of respondents described their banks' ability to prevent DDoS attacks as effective.

It important now more than ever that banks and other businesses protect themselves against cyber threats.
To understand more about how automated attacks can affect your business and how Variti solutions can help you combat them, get in touch today.
Unique bot and DDoS mitigation solutions for your websites and APIs - so you can forget about bots, have a clear picture of your traffic as well as gain new customers, and ensure the existing ones are happy.
Legal stuff

33 King's Road
ООО "Варити"

ИНН 7723434732, ОГРН 1167746227945
109004, г. Москва,
ул. Николоямская, д 52, строение 1
Copyright © 2016 — 2022 Variti Limited. All rights reserved.