Showing posts with label Credit Card Hacking. Show all posts
Showing posts with label Credit Card Hacking. Show all posts

Thursday, 26 November 2015

Hacker Creates Tool That Disables Chip & Pin



The well-known hacker Samy Kamkar has a new tool developed by which he can disable the Chip & Pin feature on credit cards and it is possible to emulate credit cards and magnetic stripes. In this way, all credit cards and magnetic stripes of someone on one device can be stored.



It can also MagSpoof like Kamkar calls his creation, predicting credit card numbers and expiration dates of American Express. For this there is need a full credit card number, but it does not matter if this number ever reported missing in the past or has been reported stolen. MagSpoof is able to generate a strong electromagnetic field which emulates a traditional magnetic stripe card. Kamkar remarks that MagSpoof does not make it possible to use credit cards of others. Moreover, opportunities for American Express numbers to predict and Chip & PIN disable not in the present version has made ​​available to the hacker.

The device is therefore intended primarily for conducting research into magnetic stripes, micro controllers and electromagnetism. During the development of MagSpoof Kamkar discovered that he also Chip & Pin feature of the card can be disabling. If users with a debit card with Chip & PIN using their magstripe the payment will say that the user must map "dipping" for added security.

The information on the card Chip & Pin features is stored in the magnetic strip. Kamkar discovered that he can adjust this. As a result, it is possible to not be required for dipping to a card with Chip & Pin, while the transaction is carried out simply. In this way, the security measure may be bypassed. To help researchers away Kamkar the blueprint MagSpoof published as well as the software and required components. According to the hacker's machine is easy via an Arduino and other general parts to put together.

Sunday, 1 November 2015

Third Suspect Arrested For Assault On TalkTalk


The British police for the third time this week arrested a suspect for the attack on the British ISP TalkTalk, with data from less than 1.2 million customers were stolen. That the Metropolitan Police today announced.

The third suspect was arrested yesterday afternoon. It is a 20-year-old man. Earlier this week, two boys were 15 and 16 arrested. The provider has since announced that there is indeed in the attack data is captured, but less than was initially assumed. It is less than 1.2 million e-mail addresses, names and phone numbers of customers. In addition, tens of thousands of birth dates, account numbers and partly made ​​unrecognizable credit and debit card data captured. How the attackers managed to pull the trigger is still unknown.

Tuesday, 27 October 2015

15-Year-Old Boy Arrested For Assault On TalkTalk


British police arrested a 15-year-old from Northern Ireland for the attack on the British ISP TalkTalk, reports the Metropolitan Police. It is still unclear whether the attack there customer data is captured.The provider sets in a statement that the investigation is still ongoing.

"But unfortunately there is a chance that some of the following information may be accessed," said TalkTalk. This relates to names, addresses, birth dates, email addresses, phone numbers, TalkTalk account details and credit and debit card information and / or bank details. The possible stolen card information, however, would not be able to be used for financial transactions. The provider is also pleased with the swift action of the police.

Friday, 2 October 2015

Date 15 Million Customers T-Mobile USA Stolen From Experian


Attackers have managed to break in Experian at data processor and credit bureau and got the data of 15 million customers of the US branch of T-Mobile stolen. Experian will check for T-Mobile or its customers or creditworthy. At burglary name, address, date of birth and encrypted social security numbers and ID numbers, such as driver's license or passport, stolen.

Research from Experian shows that the encryption may be compromised. The stolen data comes from customers who between September 1, 2013 and September 16, 2015 an application for credit is made, as T-Mobile CEO John Legere an open letter to let you know. Experian states that on September 15, discovered the break-in on a company server. Doing so would have no payment information or other banking information stolen.

According to the data processor, the attackers had limited time access to the data, but how long is not said. It is also not clear how the attackers were able to gain access to the server. Affected customers can due to the incident two years at no cost to monitor their credit. In the open letter to customers said Legere to be very angry with Experian and will evaluate the cooperation with the company.