Automated stock trading poses fraud risk

An emphasis on speed and a lack of security makes automated trading in financial markets ripe for exploitation and fraud, a security researcher has warned.

Most stock trades in the US and many around the world in general are now made by data-crunching computers that buy and sell stocks in microseconds — something that used to take human traders minutes to do. With these algorithm-based, high-frequency trades, a fraction of a second can be worth millions of dollars for an investor.

In the push for greater speed and thus higher profits, security is sacrificed, James Arlen, principal at Push the Stack Consulting, told ZDNet Australia's sister site CNET in a preview of a presentation he will give at the Black Hat security conference in Las Vegas next week titled "Security When Nano Seconds Count".

Basically, traders are using automation to speed the analysis of information on stocks and do more trades faster.

"In this race toward faster we've gone from human time scale, trading decisions in hours or minutes to milliseconds, or thousands of a second ... Now we're talking about microseconds, a millionth of a second, and nanoseconds, one-thousandth of a microsecond," he said. "We're compressing the markets, pulling them closer together, and putting in custom hardware that does things like skip the operating system. The application making the decisions is actually building an Ethernet frame in its own memory and then pushing that frame down into the wire side of the networking card."

The implementations are built for speed and not for security, which slows down functions, according to Arlen. Traders are choosing the stripped down and fast sports car over the sedan with air bags and other security measures, he added. "We've left security behind. These implementations have no security at all," he said.

The potential for problems isn't purely theoretical — automated trading was found to have contributed to a market crash in the US in May 2010 in which the Dow Jones dropped 600 points, the second-largest point swing in one day.

What if someone were able to create an unfair market advantage by introducing some latency in a competitor's system? "Are you ever really going to notice?" Arlen wondered. "This can be a very nefarious, very small game."

The complexity of the trades, often based on multiple consecutive transactions and leveraging the price differences on different markets with simultaneous trades, amplifies the potential for problems and makes oversight more difficult, he added.

"It's highly likely or statistically likely that someone is abusing a market somewhere in the world. Will they be caught at any time in the short term? Probably not," he said. "That level of complexity makes it really hard to point a finger. This is going to be hard to find in the real world."

Arlen said he doesn't have a solution. He just wants to get the industry talking about the problem so something can be done to prevent problems. His timing couldn't be better.

The so-called "Flash Crash" of May 2010 has spurred the US Securities and Exchange Commission to action. It has voted unanimously to adopt a rule requiring large traders like banks and hedge funds to identify themselves and to maintain transactions records.

"6 May dramatically demonstrated the need to enhance the SEC's ability to quickly and accurately analyse market events. The large trader reporting rule will significantly bolster our ability to oversee the US securities markets in a time when trades can be transacted in milliseconds or faster," said SEC chairman Mary L. Schapiro in a statement. "This new rule will enable us to promptly and efficiently identify significant market participants and collect data on their trading activity so that we can reconstruct market events, conduct investigations and bring enforcement actions as appropriate."

Via CNET

Talkback

Automated trading has the potential to create rapid changes in market prices based on the theoretical impact of market factors. Unless carefully controlled, and probably speed limited, you can avoid flash crashes. Greed being what it is there will obviously be the temptation to take risks for massive gains. Hence, I think automated trading is foolish.

The real problem with 'the markets' ais that investing is no longer about fostering success in specific businesses, but maximising personal profit at the fastest possible rate. Who you invest with is all about making money, not the investment in the entity itself.

Scott WScott W July 29th, 2011
Report offensive content Reply (0) (0)

Remember the markets nose-diving in the 80s and interest rates climbing like crazy? Thanks automated trading!

TreknologyTreknology February 7th, 2012
Report offensive content Reply (0) (0)
Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment

Terms of Service - As a ZDNet registrant, and by using this service, you indicate that you agree to our Terms and Conditions and have read and understand our Privacy Policy.

Tech Blueprint

ZDNet Australia Live

RT @pepperminttech: CASE STUDY: using #msdyncrm to cope with growing number of client comms http://t.co/TECEVm6H #personalinjury #legaluk...

RT @zackwhittaker: ZDNet: EMC hones focus on hybrid cloud, big data http://t.co/uOb50mgR

US, Australia team up on cybersecurity: http://t.co/OCFR5khp

Security services provider Earthwave reports 700% rise in DDoS on clients in Q1. http://t.co/LOBC8NOo

Dynamics CRM saves email-drowned utility http://t.co/S5rvxbcU

RT @MSDynamicsCRM: Great article on ZDNet - Microsoft #Dynamics #CRM saves email-drowned Australian Power and Gas http://t.co/LKjZzQcR #msdyncrm #crm2011 ^pb

Tech News: Mac OS users on security: No worries - The Mac users that ZDNet Asia spoke to regarding Flashback and oth... http://t.co/fhw6gJ0T

RT @msdynamicscrm: Great article on ZDNet - Microsoft #Dynamics #CRM saves email-drowned Australian Power and Gas http://t.co/B5logcak...

First off, Bitcoin is not a virus. Second off, the only way to generate Bitcoins, is by using a Bitcoin miner. More information on this h...

1 hour ago by rizowski on ABC's Bitcoin miner tackled in minutes

Vic councils tender for VMware partner - ZDNet Australia: Vic councils tender for VMware partnerZDNet Australia#... http://t.co/V9rukN7Q

Cybercrime golden age over in two years?
http://t.co/qdeIhHXP #techwd #Tech_ar #reversing

US, Australia team up on #cybersecurity http://t.co/AKDgHpmB

Microsoft's So.cl network launched amid Facebook press http://t.co/MkUizROL

Students create "v'ideo parties" with MSFT new social service http://t.co/uH9ffvLa

RT @zdnetaustralia: Melbourne City Council pulls parking fine cameras. Turns out Melbournites park too close together: http://t.co/pqbJbeJy

Vic councils tender for VMware partner - ZDNet Australia http://t.co/eTTZFXVG #australia #technews

@Microsoft So.cl combines search and social media, designed to aid students networking and sharing information ZDNet http://t.co/zQW8Zecr

Google's Chrome vs. Microsoft's IE: How's that halo effect? http://t.co/xz2YGQMU

When an operating system is sold it should not launch until an approved security service is purchased online with a list of approved supp...

2 hours ago by Kevin Cobley on National Botnet Network coming: Earthwave

Windows Phone: Photography the key to its success? http://t.co/14swIy1J

National Botnet Network coming: Earthwave http://t.co/BsCUwtGW via @zdnetaustralia

Windows Phone: Photography the key to its success? http://t.co/CBVdS9f7

RT @MicrosoftNZCRM: Great article on ZDNet - Microsoft #Dynamics #CRM saves email-drowned Australian Power and Gas http://t.co/51PgGxkW #msdyncrm #crm2011 ^pb

RT @MicrosoftNZCRM: Great article on ZDNet - Microsoft #Dynamics #CRM saves email-drowned Australian Power and Gas http://t.co/51PgGxkW #msdyncrm #crm2011 ^pb

Windows Phone: Photography the key to its success?: I tend to do a bit of digital photography when I go on trips... http://t.co/lAYofzgi

CASE STUDY: using #msdyncrm to cope with growing number of client comms http://t.co/qA1SxZLO #personalinjury #legaluk #solicitors #lawyers

Windows Phone: Photography the key to its success? - ZDNet (blog): ZDNet (blog)Windows Phone: Photography the ke... http://t.co/HPArdCe0

One of Windows Server 2012's secret weapons: Hyper-V Replica http://t.co/F8nJ7xK6

“@ZDNet: One of Windows Server 2012's secret weapons: Hyper-V Replica http://t.co/oAE1ifmp”....a DR solution, that is for the little guys.

TechnologyOne keeps profits growing: http://t.co/A7J5uDlT

“@btviewpoint: #Cybercrime golden age over in two years? - #Security - #News - http://t.co/ZEmny2dI

“@ZDNet: Can Windows 8 tablet be priced low enough to compete with iPad, Kindle Fire? http://t.co/b7n4Wb7C” .....unlikely, and disappointing

#Cybercrime golden age over in two years? - #Security - #News - http://t.co/Mvc37WAr

RT @MicrosoftNZCRM: Great article on ZDNet - Microsoft #Dynamics #CRM saves email-drowned Australian Power and Gas http://t.co/51PgGxkW #msdyncrm #crm2011 ^pb

United States, Australia team up on cybersecurity http://t.co/41IYTcDx

$50m to Medicare locals for eHealth http://t.co/VM5ts5lf

RT @adrianbritton: Goodbye Friending #Facebook: We only part to meet again http://t.co/gXZEKtEE #socialmedia

We Are Specialty Supply Miu Miu Handbags, Miu Miu Pocketbook, Miu Miu Sunglasses And So On. Miu Miu Car-boot sale Online Strapping Reduct...

5 hours ago by ExedegamEmodo on Reservoir blogs: Fan fakes Tarantino diary

6 hours ago by forporoExpoxy on Reservoir blogs: Fan fakes Tarantino diary

Goods Shopping Location Diminish Of Japan's Largest Overseas Train Brands. Coach Outlet Recover 89% Off.We Entertain Stuffed Items Such A...

6 hours ago by MentIdott on Reservoir blogs: Fan fakes Tarantino diary

Our Stow away Tender Exercise Bags Of The Cheapest Quotation, 50-75% OFF. Secured Shipping To Japan. Detailed Inferior Instructor Handbag...

6 hours ago by Hieffiftsoinc on Reservoir blogs: Fan fakes Tarantino diary

1963年ナイキの創業者フィル・ナイトが訪日、オニツカ(現アシックス)の経営陣を訪問。 最新の機...

6 hours ago by Scafthapthinc on Reservoir blogs: Fan fakes Tarantino diary

6 hours ago by antaftilk on Reservoir blogs: Fan fakes Tarantino diary

Our Aggregate Wholesale Trainer Bags Of The Cheapest Consequence, 50-75% OFF. Self-indulgent Shipping To Japan. Exquisite Worthless Drill...

6 hours ago by meltygypent on Reservoir blogs: Fan fakes Tarantino diary

Celine belongings,Celine case,purse Celine,CELINE Celine is synonymous with je sais quoi and faultlessness prevalent since founding in 19...

6 hours ago by dendyBymNTedo on Reservoir blogs: Fan fakes Tarantino diary

7 hours ago by Fedaupdat on Reservoir blogs: Fan fakes Tarantino diary

Admits? Don't fall for their marketing. Vista was beautiful. Microsoft has a history of trashing their older OSes.

7 hours ago by anonymuos on Microsoft admits Vista was 'cheesy'

Gotta agree. For our Burnie, Tas. internet, we have a 1.5MB download speed adls connection through exetel using testra copper line. ADS...

8 hours ago by brozza on Broadband Speedtest

Well the message certainly is clear. Never do anything because something might happen. Seriously it seems to me "Earthwave" just want to...

10 hours ago by Hubert Cumberdale on National Botnet Network coming: Earthwave

you really think it's going to be such a grim future? looking at South Korea, Japan, even Czech Republic - I haven't seen either emit mo...

11 hours ago by romant on National Botnet Network coming: Earthwave

No... they'll just blame the NBN for that too ;-)

12 hours ago by Beta on National Botnet Network coming: Earthwave

It seems that some of the people who set up ACCAN (not staff members) took the view that it would somehow be against their view of 'consu...

13 hours ago by socrates on ACCAN gets govt tick amid industry criticism

Don't laugh, Mr Turnbull is dumb enough to try and use this against the NBN. I'm sure the noallitions magical FTTN will be impervious to ...

13 hours ago by Jingles on National Botnet Network coming: Earthwave

OMG, the sky will fall if we get NBN - it must be cancelled immediately! Sorry; was just channelling Malcolm Turnbull there for a moment...

13 hours ago by socrates on National Botnet Network coming: Earthwave

Thats just stupid.. what else is the NBN going to get blamed for? People die crossing the road, are you going to ban cars or police it b...

13 hours ago by fibretech on National Botnet Network coming: Earthwave

Facebook Activity

Keep up with ZDNet Australia

ZDNet Events Calendar

ZDNet Events Calendar