Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.

View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 
207 posts

Master Geek


  Reply # 644745 22-Jun-2012 13:44

Effectively those constitutes similar risks: (temporarily) loosing control of card data (doing so online is an entirely different discussion). I consider the biggest risks to be those factors that I don't know about - if I can see it, hold it, control it, etc, then I can do something about it; that's what bugs me about radio.

The difference is that, when handing a card over to a clerk, you usually get to see the individual & keep an eye on your card (most of the time), and nowadays we're offered the device itself that we can swipe/slot the card in & PIN/sign, so actually handing a card over is becoming less of an issue.

I've done a real-world test with my own NFC-enabled mobile & this card, simulating the card in my wallet in my right jean pocket & someone (wife/brother/dog/whatever) sitting next in a seat to me with the mobile in their left - you can get real close in situations like a rush-hour bus, crammed office elevator, cinema, busy pub or event queue.






FLOSS'er

2491 posts

Uber Geek
+1 received by user: 240

Trusted
Subscriber

  Reply # 644988 23-Jun-2012 00:18 Send private message

You actually go to shops that allow you to swipe the card yourself? Personally I find places that allow customer swipe/card insertion to be in the minority. Almost every place I go it's all "doesn't work in there I have to swipe it here". It's ludicrous. And I indicated as much in the handy survey that I got sent by Colmar Brunton about payment experience. How timely.

But in terms of the NFC and what not... my understanding is that the card draws power from the NFC field, so you'd have to be either close enough for a low power device to pick it up (relatively unlikely) or they have to have a device broadcasting with a lot of power (even less likely). And even if they can pick it up, it's not like the card just broadcasts it's number and PIN details - they'd basically have to pretend to be a payment terminal and process a transaction, but even then that still isn't enough since the communications would only be valid for that one fake transaction - you couldn't do a replay attack since the encrypted data would be useless.

I think perhaps you're being way too paranoid about a situation that ultimately is very, VERY unlikely.

gzt

4464 posts

Uber Geek
+1 received by user: 221

Subscriber

  Reply # 645001 23-Jun-2012 05:58 Send private message

Slightly off topic for a second but - do debit cards have the same fraud protection as credit cards?

19539 posts

Uber Geek
+1 received by user: 1363

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 645005 23-Jun-2012 07:54 Send private message

Kyanar: You actually go to shops that allow you to swipe the card yourself? Personally I find places that allow customer swipe/card insertion to be in the minority. Almost every place I go it's all "doesn't work in there I have to swipe it here". It's ludicrous. And I indicated as much in the handy survey that I got sent by Colmar Brunton about payment experience. How timely.



The requirement for all terminals to have pinpads that support customers swiping/inserting their own cards was originally going to occur in the June 2011 cutoff, but it seems that this was never implimented because there would have been issues with all in one terminals that would have required an exception.

With EMV6 this is mandatory (with the exception of all in one terminals) so we'll see that occur in June 2014 when every EMV5.x terminal is cut off the network, and it's expected that every terminal will also have to ny NFC capable for this deadline also.


19539 posts

Uber Geek
+1 received by user: 1363

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 645006 23-Jun-2012 07:56 Send private message

gzt: Slightly off topic for a second but - do debit cards have the same fraud protection as credit cards?


Typically, but unlike a credit card the downside is you've already had the money taken from your bank account so the bank has to reverse it.

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 
View this topic in a long page with up to 500 replies per page Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:




News »

Trending now »
Hot discussions in our forums right now:

Moment of Truth?
Created by BarTender, last reply by gzt on 22-Sep-2014 15:42 (411 replies)
Pages... 26 27 28


Festival of Democracy
Created by gzt, last reply by MikeAqua on 23-Sep-2014 14:06 (131 replies)
Pages... 7 8 9


GCSB Surveillance Vans?
Created by snowball, last reply by Dratsab on 23-Sep-2014 13:48 (51 replies)
Pages... 2 3 4


Geekzone giveaway: ADATA SSD SP610 256GB and ADATA PV110 Power Bank
Created by freitasm, last reply by hairy1 on 23-Sep-2014 10:44 (44 replies)
Pages... 2 3


Predict E(l)ection 2014 & win
Created by nakedmolerat, last reply by Technofreak on 23-Sep-2014 09:38 (84 replies)
Pages... 4 5 6


TV for under $1000?
Created by TeaLeaf, last reply by richms on 22-Sep-2014 20:46 (16 replies)
Pages... 2


How do we get more people out to vote?
Created by nate, last reply by Dratsab on 23-Sep-2014 13:50 (30 replies)
Pages... 2


IOS8 - Network Load
Created by FireEngine, last reply by raytaylor on 20-Sep-2014 16:55 (45 replies)
Pages... 2 3



Geekzone Live »
Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.