• Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
  • Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!

Fraud attempt

Collapse
X
  •  
  • Filter
  • Time
  • Show
Clear All
new posts

    #81
    Originally posted by minestrone View Post
    Are you a tester?
    No. Do you know anything about using a credit card online or over the phone?

    Originally posted by minestrone View Post
    "computer says no"

    What the flip are you dribbling about man "Cardholder not present"?
    Try looking it up in Wikipedia, man.

    Or, if you can't manage that:

    A customer not present transaction, in the context of credit and debit cards, refers to a transaction conducted at a distance, for example over the telephone or internet. The customer's card number is keyed manually into the sales terminal, and no verification by signature or by PIN is possible.
    Computer says "yes" quite often - there is no way to verify the PIN, there is no way to verify the signature. The only verification is that the card is valid - which just means that the number and expiry dates are good.
    If you have to add a , it isn't funny. HTH. LOL.

    Comment


      #82
      Now, you are aware that the ID system holds your current address?

      Comment


        #83
        So you have stated a problem I have stated how the ID system deals with that.

        ...

        next?

        Comment


          #84
          Originally posted by minestrone View Post
          So you have stated a problem I have stated how the ID system deals with that.
          Ummm - no, actually, you haven't. You've said that the ID card would hold my address. How is that going to stop a fraudster using the card in a card holder not present transaction?

          If a fraudster is using a card over the phone - at what point are they going to be asked to enter their ID card so that the address can be checked?

          There is no answer - if the card holder is not present, then having a system which requires an additional card makes no difference, regardless of what information is held on the card.

          The card could have every possible detail about me, my lifestyle, my shopping, everything - but it is not going to stop fraud where the card holder does not have to physically present the card.
          If you have to add a , it isn't funny. HTH. LOL.

          Comment


            #85
            Originally posted by The Wikir Man View Post
            If a fraudster is using a card over the phone - at what point are they going to be asked to enter their ID card so that the address can be checked?
            The typical MO of the frauster is to change address, the ID card has to have your latest address.

            Comment


              #86
              Originally posted by minestrone View Post
              What will then?

              I will turn the question to you, I signed the OSA so I'm not going to go into details but a fraud squad detective would have to run time at 100 times slower just to read the cases now. 1000 times to even follow them up.

              The crime is completely unmanageable and it is a crime where there are thousands ans thousands of innocent victims. There is no way to stop it with current technology.

              So what is your answer? Just let it go on as you so clearly offer as the answer?
              You are missing the point. You have popped up here claiming the government ID cards scheme will prevent credit card fraud. I contend that not only will it not do that, it will divert scarce Police resources away from the real crimes and issues and into chasing up people like me who will do their best to obfuscate the system.

              There are many things banks and credit card companies could do if thy were serious about stopping it - Barclays were trialling a card with "rolling" number, so knowing the card number and expiry date won't help a thief - I don't know the outcome, but that's one example, there are others. The simple reason banks aren't more secure is that they don't want to spend the money - they'd rather refund the victims than address the issues.

              I have also already said that I support the beefing up of passport, birth certificate and driving licence application procedures.

              The government ID scheme offers me nothing but expense, inconveinence and an increased risk of data loss.

              As for the address question - how many million addresses will be in the database? Every one of us will be responsible for letting the civil servants know when we move. The only similar operations are the DVLA and HMRC, neither of which have covered themselves in glory with regard to speed or accuracy, and there are millions of vehicles on the roads not registered to anyone - there is a theoretical fine for not telling the DVLA when we move - but is anyone ever prosecuted? And yet, miraculously, all this data will be reliable and up to date under the new system? Not a hope.

              Comment


                #87
                Originally posted by minestrone View Post
                The typical MO of the frauster is to change address, the ID card has to have your latest address.
                Maybe I'm missing something in your argument.

                Fraudster uses my stolen / cloned / borrowed credit card (or just the details written down) in a CNP transaction. They aren't interested in stealing myID, just getting some money or goods to sell on. They order something over the phone or fax or internet, and the transaction goes through. (A few years back, I had someone charge a Canadian Pay TV subscription to my credit card, despite my not visiting Canada since 1986).

                I also have an ID card which has my address, fingerprints and DNA stored on it (I don't care what information is on there - so assume that the ID card holds all information about me from birth to the current time, excluding my current location).

                How does me having an ID card stop the fraudster?
                If you have to add a , it isn't funny. HTH. LOL.

                Comment


                  #88
                  Originally posted by Peoplesoft bloke View Post
                  I have also already said that I support the beefing up of passport, birth certificate and driving licence application procedures.

                  The government ID scheme offers me nothing but expense, inconveinence and an increased risk of data loss.
                  I have had a few beers now and I would like to discuss the points in the whole post you posted tomorrow on clientCo time

                  I have always proposed a fingerprint database linked in with the passport system, feck it's about 10 extra columns on an existing database and then we make passport numbers linked with hand prints compulsory to access basic government and banking services. Passports are not compulsory as such.

                  You claim to be a Peoplesoft bloke, that is not much more than what you ask of your users.

                  I have never claimed the ID system introduction as presented was a good idea, I do claim that an ID system is totally necessary.

                  Comment


                    #89
                    Originally posted by minestrone View Post
                    Why not?

                    I have been answering questions for the last 80 posts so it's my time to question.

                    Tell me the mechanisms fraudsters use and how they cannot be protected by ID cards?
                    OK I'll bite. They put devices inside the front of ATMs that read your card. i.e. not extras bolted on the ATM, that's old school, they remove part of the ATM, where they find a nice gap, and install their devices. They don't need much space, these things are small. These devices then video/audio and/or an overlay keypad for your key presses. They get their data back via a blue tooth connection, and get their power from a long life battery or by connecting up to the device to check no one has pulled the entry slot off the front of the ATM to install a cloning device FFS!

                    It is miniature, designed for purpose, seriously expensive kit, but like I say, these guys buy in bulk.

                    Not only can they clone swipe cards they can copy Chip n Pin too.

                    Really good money to be made, so it is very profitable for them.

                    Not much of an extension to do the same for finger print readers or iris scanners.

                    Remember these chummies are far better resourced than the bank security departments set against them, so anti fraud attempts are nothing but rather trivial passing annoyances: only providing a little passing amusement for chummy-techie doing the workaround, who generally has already considered it as a next step and has the solution waiting .

                    HTH
                    Insanity: repeating the same actions, but expecting different results.
                    threadeds website, and here's my blog.

                    Comment

                    Working...
                    X