Contactless card flaw could cost victims dear
Scammers could skim off thousands of pounds just by brushing past a victim carrying a contactless payment card
A flaw in the security provisions for contactless payment cards could allow thieves to steal large amounts of foreign currency just by touching a smartphone against a victim’s wallet, scientists have said.
The glitch could allow thieves to withdraw sums of up to 999,999.99 in foreign currency denominations, The Independent reports. If done in Euros this could come to more than £780,000.
Contactless payment cards are meant to have a spending cap of £20, but security experts from Newcastle University found that those limits are not imposed when payments are made in foreign currency.
Subscribe to The Week
Escape your echo chamber. Get the facts behind the news, plus analysis from multiple perspectives.
Sign up for The Week's Free Newsletters
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
From our morning news briefing to a weekly Good News Newsletter, get the best of The Week delivered directly to your inbox.
Researchers said that thieves could potentially exploit the flaw by rigging smartphones to act as card scanners, allowing them to steal huge sums of money from unwitting victims.
Lead researcher Martin Emms said: "With just a mobile phone we created a point-of-sale terminal that could read a card through a wallet. By pre-setting the amount you want to transfer, you can bump your mobile against someone’s pocket or swipe your phone over a wallet left on a table and approve a transaction. It took less than a second for the transaction to be approved."
After reviewing Newcastle University’s findings, Visa Europe responded that the study failed to take into account the "multiple safeguards throughout the Visa system", adding: "It would be very difficult to complete a fraudulent payment of this kind outside a laboratory environment."
The UK Cards Association trade body told the Daily Mail: "While this complex fraud may be theoretically feasible in a laboratory, it hasn’t been attempted in the real world and absolutely no money has ever been lost as a result. There are robust security checks in place at every single stage of a payment – by the retailer’s bank, the card scheme and the customer’s bank – which monitor, and stop, suspicious transactions. Consumers can be assured they are legally protected from any fraud losses and will never be out of pocket."
It added: "Contactless cards are extremely safe – borne out by the negligible fraud losses of less than 1p for every £100 spent over the first half of 2014."
Sign up for Today's Best Articles in your inbox
A free daily email with the biggest news stories of the day – and the best features from TheWeek.com
-
Ken Martin: the Minnesota politico turned DNC chair
In the Spotlight Martin, the head of the Minnesota Democratic–Farmer–Labor Party, was elected with over half the vote
By Justin Klawans, The Week US Published
-
Montenegro offers Adriatic adventures without the crowds
The Week Recommends There is room for everyone in this Balkan destination
By Catherine Garcia, The Week US Published
-
'Although deepfake porn is a global problem, South Korea has been hit particularly hard'
Instant Opinion Opinion, comment and editorials of the day
By Justin Klawans, The Week US Published
-
Who is the Hat Man? 'Shadow people' and sleep paralysis
In Depth 'Sleep demons' have plagued our dreams throughout the centuries, but the explanation could be medical
By The Week Staff Published
-
Why Assad fell so fast
The Explainer The newly liberated Syria is in an incredibly precarious position, but it's too soon to succumb to defeatist gloom
By The Week UK Published
-
Romania's election rerun
The Explainer Shock result of presidential election has been annulled following allegations of Russian interference
By Sorcha Bradley, The Week UK Published
-
Russia's shadow war in Europe
Talking Point Steering clear of open conflict, Moscow is slowly ratcheting up the pressure on Nato rivals to see what it can get away with.
By The Week UK Published
-
Cutting cables: the war being waged under the sea
In the Spotlight Two undersea cables were cut in the Baltic sea, sparking concern for the global network
By The Week UK Published
-
The nuclear threat: is Vladimir Putin bluffing?
Talking Point Kremlin's newest ballistic missile has some worried for Nato nations
By The Week UK Published
-
Russia vows retaliation for Ukrainian missile strikes
Speed Read Ukraine's forces have been using U.S.-supplied, long-range ATCMS missiles to hit Russia
By Arion McNicoll, The Week UK Published
-
Has the Taliban banned women from speaking?
Today's Big Question 'Rambling' message about 'bizarre' restriction joins series of recent decrees that amount to silencing of Afghanistan's women
By Harriet Marsden, The Week UK Published