Electronic Pickpocketing: Fact or Fiction? A New Credit Card Scam

Posted: Mar 05, 2011 |Comments: 0 | Views: 139 |

There have been some alarming reports circulating recently about security problems with contactless, or Radio Frequency Identification (RFID), cards. These include credit, debit, or ATM cards, all of which can be enabled for contactless transactions by an embedded RFID chip. Encoded within the chip are confidential account details such as the account number and expiry date. To make a quick purchase the customer just holds the card up to a merchant's contactless reader at the point of sale; the account details are read and the transaction is recorded.

Early adopters of contactless technology include coffee shops, public transport providers and fast food stalls. A potential weakness of the contactless system is that enterprising fraudsters may be able to use their own, illegal RFID readers, to capture customer account details. The story seems to have originated from Memphis-based TV channel WREG, who ran an item called 'Electronic Pickpocketing' in December 2010.

The TV station commissioned an undercover reporter to patrol a shopping street with a card-reader, bought for less than $100, and test the device out (on willing volunteers, not on unknowing victims, I should point out!). The reporter was able to use the device to scan contactless cards remotely from people's wallets, pockets and bags, and display their account details on its screen. The story 'went viral' after being posted on WREG's website, reportedly attracting 1.2 million views in the first few days.

Information he was able to steal included the card issuer name, customer account number, card expiry date and customer name. All this data can be scanned in, stored, and then emailed to criminals anywhere in the world. Imagine a fraudster armed with this card reader, at a football match, for example. Thousands of people crammed together in a small space, all carrying contactless cards to pay for their mid-match snack at the hot dog stand. Rich pickings indeed for an enterprising criminal, all for the outlay of $100 and a couple of hours 'work'! It turns out that WREG's undercover reporter was none other than Walt Augustinowicz , founder of security firm Identity Stronghold,

According to him, it's not just your account details that are at risk from this type of theft, but also your passport, which, if it was issued in recent years, will also contain the new-style RFID chip and is vulnerable to being illicitly scanned in the same way. Hacking a passport yields personal details such as date of birth and a photograph, which can then be used to create fake ids.

Mr Augustinowicz' company is in the business of marketing protective devices designed to shield plastic cards and passports from illegal scanning. I'm informed that aluminium foil will have the same effect, though I have not tried this out myself yet. Sounds like a simple idea which could save a lot of problems; doesn't it? But do we really need a protective cardholder? What is the true extent of the risk for contactless customers? Once criminals have got hold of our account details, just how much damage can they do?

Before we all start to panic about this report, it is important to remember that there are safeguards built into contactless cards to prevent major losses to customers. Most importantly, they cannot be scanned by card readers for a PIN number or a CVV (3-digit security code). Some older contactless cards may hold a scannable customer name, but not the later editions. Either way, account number and expiry date, with or without a customer name, is insufficient data to create an illegal cloned card. For a Card Not Present (CNP), that is a telephone or internet purchase, a fraudster would also need to know the long number embossed on the card and the CVV. Contactless cards are designed to be read only when held close to a merchant's reader, and have a limited transmission range, meaning that any would-be scammer would have to get pretty darned close to you in order to be physically able to scan your card.

Contactless card providers are constantly striving to ensure their customers are safe from fraud, and the latest cards emit their data in an encrypted format. Another security feature intrinsic to contactless cards is that they are only intended for relatively low-value purchases, and typically have a transaction limit of $30 or less. So it is unlikely you will ever lose much to a scammer. In the meantime, it wouldn't hurt to invest in a bespoke card wallet, or at least wrap your card up in a bit of kitchen foil.

Questions and Answers

Ask
200 Characters left
Rate this Article
  • 1
  • 2
  • 3
  • 4
  • 5
  • 0 vote(s)
    Feedback
    Print
    Re-Publish
    Source:  http://www.articlesbase.com/business-articles/electronic-pickpocketing-fact-or-fiction-a-new-credit-card-scam-4354380.html

    Article Tags:

    credit card

    ,

    debit card

    ,

    contactless card

    ,

    rfid

    ,

    electronic pickpocketing

    ,

    fraud

    ,

    card fraud

    ,

    card security

    ,

    cvv

    ,

    cloned card

    In USA, one of the leading brands that offer diverse and high quality products promoting proper hygiene is Difresh USA. If you are looking for the best opportunity to grow and have the opportunity for a new business Difresh USA can help you for they are looking for Exclusive Local Distributors

    By: danieltorrisl Businessl May 31, 2012

    Getting clean and refresh doesn't sacrifice the place where you are for it should be a habit. Having a healthy body will allow you to do things right and good. And no matter where you are you should practice a healthy and proper hygiene even in little things you do.

    By: danieltorrisl Businessl May 31, 2012

    Maintaining a healthy and proper hygiene badly needs products that are truly effective and could truly answer our need for this. No matter where we are and at anytime we want to get clean we basically need these products right away and only Difresh USA can supply these in a very easy way

    By: danieltorrisl Businessl May 31, 2012

    The key reason why some firms thrive while some implode during an financial recession is still a puzzle to many people business-owning business owners. Some wrongly assume that all businesses should suffer via recessionary cycles. But the truth is that some companies are usually essentially recession-proof, and it is not necessarily because they are much larger, better known, or a lot more generously capitalized.

    By: danhoh75rel Businessl May 31, 2012

    Companies like Arch Coal (ACI) and Massey Energy (MEE) watched his or her stock climbed.

    By: pennystockegghead49l Businessl May 30, 2012
    Charlotte Mooney

    The credit card is a ubiquitous and indispensable part of our everyday lives. Most of us use credit and debit cards every day, not only in shops but over the phone and online. But where did it all start? A quick look back to a time when the credit card was just a piece of Science Fiction.

    By: Charlotte Mooneyl Finance> Creditl May 05, 2011
    Charlotte Mooney

    What is Identity Theft? Does it constitute a serious risk? Is it necessary to purchase insurance against it?

    By: Charlotte Mooneyl Finance> Insurancel May 05, 2011
    Charlotte Mooney

    Q.Why are credit card rates so high when the base rate is so low? A. Credit card companies are influenced by risk factors much more than by the base rate.

    By: Charlotte Mooneyl Finance> Creditl May 05, 2011
    Charlotte Mooney

    77 million users of the Sony PlayStation network have fallen victim to one of the largest cases of identity theft ever reported. The PSN network has been taken offline as Sony struggle to tighten their security procedures. Confidential data has been stolen, credit card accounts may have been compromised. No one knows who is responsible for the attack.

    By: Charlotte Mooneyl Computersl May 03, 2011
    Charlotte Mooney

    As part of its vision for the 'Big Society', the UK government is calling on its citizens to become more involved in social action, both by volunteering their time and skills, and by making more financial contributions to charity. One way to make charitable giving quicker and easier is to allow ATM users to make a contribution to a good cause each time they withdraw cash.

    By: Charlotte Mooneyl Businessl Mar 09, 2011

    Discuss this Article

    Author Box
    Articles Categories
    All Categories
    Quantcast