Pay-at-the-Pump Skimming Using Bluetooth

Robert Siciliano Identity Theft Expert

Skimming data off of debit and credit cards has been happening at ATMs, gas pumps and electronic funds transfer point of sale terminals for quite some time.
When criminals plant skimming devices, they have to physically attach a skimming device that fits over the face of the ATM’s card slot. Then [...]



 Hacking Humans Naiveté

Robert Siciliano Identity Theft Expert
Naiveté: A lack of sophistication or worldliness. That sums up a lot of people I know. “There’s a sucker born every minute” is a phrase often credited to P.T. Barnum (1810 – 1891), an American showman. It is generally taken to mean that there are (and always will be) a lot [...]



 Biometrics: To Be or Not to Be?

New Hampshire, USA. “Live Free or Die,” baby. The official state motto emblazoned on every NH license plate has always intrigued. The thought of someone from NH might bring to mind revolutionaries or America militia sympathizers. New Hampshire has come a long way since its motto was created in 1945 and is not much different [...]



 The $6.75 Million Dollar Laptop

Robert Siciliano Identity Theft Expert
Dan Yost Chief Technology Officer of MyLaptopGPS brought attention to the Ponemon Institute, with sponsorship from PGP, has released their “Fifth Annual U.S. Cost of Data Breach Study.” As usual, the report is a treasure trove of great data (just like most people’s laptops are).
The average cost per breached data record [...]



 Is Chip and PIN the Future?

Robert Siciliano Identity Theft Expert
Chip and PIN is the name of a government-backed initiative in the United Kingdom to implement the EMV standard for secure payments.
There have been rumblings from Europe over the past year about American based credit cards that solely rely on the magnetic strip not being accepted in the future due [...]



 The State of Information Security Sucks

Robert Siciliano Identity Theft Expert
The sheer volume of potential targets coupled with the vast amounts of money to be made has captured the attention of the global criminal hacking community.
Enterprise networks are becoming hardened and they are still vulnerable. Some are being penetrated directly while others are accessed through 3rd parities such as their clients [...]



 Fostering Awareness & Improving Security Education

Robert Siciliano Identity Theft Expert
Financial institutions have the most to lose and the most to gain by improving security education of their clients and employees.
A while back I appeared on a local TV show talking about phishing. Amazingly, still, not everyone knows what phishing is. A good friend saw the show and was shocked [...]



 Diploma Mills Facilitate Identity Theft

Robert Siciliano Identity Theft Expert
Diploma mills were born along with elearning institutions who are actually legitimate and accredited bodies. Degrees and diplomas issued by diploma mills are frequently used for fraudulent purposes, such as obtaining employment, promotions, raises, or bonuses on false pretenses. They can also be used as a form of fake ID when [...]



 mCrimes Morph Into mBotnets

Robert Siciliano Identity Theft Expert
Botnets are robot networks of computers connected to the Internet that sit in our homes and offices. A botnet is generally banks of multiple PC’s from the 10’s to 10,000’s to millions. There are no hard numbers on botnets but last figure I saw was somewhere between 3-5 million. Another stat [...]



 EFT Point of Sales Hackers Net $50 Million

Robert Siciliano Identity Theft Expert
Readers of these posts are familiar with ATM skimming. ATM skimming is a billion dollar problem and growing. A relatively new scam over the past few years is electronic funds transfers at the point of sale (EFTPOS ) skimming. People commonly swipe both credit and debit cards through the in-store machines [...]