EU Banking Watchdog Extends Anti-Money Laundering Measures to Cover Crypto Firms

CoinDeskPolicy發佈於 2024-01-15更新於 2024-01-16

文章摘要

The European Banking Authority's new guidance for crypto firms will take effect on Dec. 30.

The European Union's banking watchdog on Tuesday issued guidance for crypto firms to comply with its anti-money laundering and terrorist-financing requirements.

By extending the scope of its existing measures to cover crypto, the European Banking Authority (EBA) "harmonizes the approach" that crypto asset service providers (CASP) across the EU should adopt to combat financial crime, it said in a press statement.

10

"The risks of this happening can be increased, for example because of the speed of crypto-asset transfers or because some products contain features that hide the user’s identity. Therefore, it is important that CASPs know about these risks and put in place measures that effectively mitigate them," the statement said.

Advertisement
Advertisement

The EU last year finalized legislation on the transfer of funds via digital assets alongside its landmark Markets in Crypto Assets (MiCA) regulatory package. The EBA has since published guidelines on risk-based supervision of CASPs and is consulting on the proposed guidelines to prevent the abuse of crypto transfers that align with recommendations from the global watchdog, the Financial Action Task Force (FATF). It's also consulting on further guidance relating to internal policies and controls CASPs should have.

"Given the interdependence of the financial sector, the new Guidelines also include guidance addressed to other credit and financial institutions that have CASPs as their customers or which are exposed to crypto assets," the EBA said.

Competent authorities have to report whether they comply with the new guidelines within two months of publishing the guidelines translated into the official EU languages. The guidelines will apply from Dec.30, around the time when MiCA takes full effect.




你可能也喜歡

从兜售数据库到出售活跃会话访问权限:俄罗斯黑市如何变迁

俄罗斯暗网市场发生显著转变:犯罪分子的重点从出售大规模企业数据库,转向贩卖对用户账户的短期实时访问权限。这类通过恶意软件直接从受感染设备窃取的实时信息,其价值在过去一年上涨近13%。如今黑市上热销的不再是过时的数据档案(售价仅10-15美元),而是包含活跃会话令牌、有效密码、VPN及云存储凭证、企业网络管理权限等能实现即时入侵的工具包。订阅提供每日新鲜数据流的私密频道,每月费用高达250-300美元,市场为时效性而非数据量付费。 官方统计显示,自2024年以来,大规模数据泄露事件数量因严厉制裁而减少,监管机构也对造成泄露的企业处以罚款。然而,这种监管模式对新威胁模型失效。恶意软件是在数据离开企业防护边界、到达个人设备后才实施窃取,企业数据库形式上未受损,从而规避了监管机制。 这种在终端设备上截取数据的方式可绕过多因素认证等企业多层防护。2026年上半年,约60%的Web攻击旨在获取入侵企业内部系统的密钥。一个受感染的员工设备就足以使受保护网络门户大开。 当前趋势与国际网络犯罪演变路径一致,类似Genesis Market的模式此前已被取缔。但这并未消除感染源,只是转移了销赃渠道。这种模式还催生结构性风险:对“新鲜”数据的持续需求,激励僵尸网络运营商长期维持受感染设备的活跃状态,将其变为持续收入来源。 核心矛盾在于,攻击发生在企业防护边界与个人设备之间的监管空白地带。随着远程操作普及,能同时访问多个服务的短期令牌价值将持续攀升,而现有保护法规对此领域尚难有效覆盖。

cryptonews.ru4 小時前

从兜售数据库到出售活跃会话访问权限:俄罗斯黑市如何变迁

cryptonews.ru4 小時前

交易

現貨
活动图片