Skip to main content

Posts

Showing posts with the label contactless

The PIN is useless in Visa contactless transactions

Academics bypass PINs for Visa contactless payments By- Aarti Jatan Researchers: "In other words, the PIN is useless in Visa contactless transactions." A team of academics from Switzerland has discovered a security bug that can be abused to bypass PIN codes for Visa contactless payments. This means that if criminals are ever in possession of a stolen Visa contactless card, they can use it to pay for expensive products, above the contactless transaction limit, and without needing to enter the card's PIN code. The attack is extremely stealthy, academics said, and can be easily mistaken for a customer paying for products using a mobile/digital wallet installed on their smartphone. However, in reality, the attacker is actually paying with data received from a (stolen) Visa contactless card that is hidden on the attacker's body. HOW THE ATTACK WORKS According to the research team, a successful attack requires four components: (1+2) two Android smartphones, (3) a special An