32 points

I mean, this is “malware” in the obvious sense.

But it’s not compromising anything Android is doing. (Though it’s worth noting that things like this are why Apple restricts NFC).

It’s just phishing at the end of the day. Something you should make users aware of, but not a security flaw of the device.

permalink
report
reply
9 points

So they need to keep the victim’s card next to one phone, and then they can use another internet connected phone elsewhere to make a purchase. Doesn’t sound that scary to me. If they already have my card then does it matter how far away they can make a purchase?

permalink
report
reply
5 points

This could be bad in the sense that anyone working a drive through could spend a day doing it.

permalink
report
parent
reply
3 points

How? You don’t actually give the card to the employees, do you?

permalink
report
parent
reply
7 points

You don’t actually give the card to the employees, do you?

Typically when I go through a drive thru, I hand my card to someone who then leans back inside to swipe/tap/whatever it, then they hand it back. So yes, commonly I do give my card to an employee for at least a few seconds.

During 2020-2022 more of them were in the habit of placing the PIN pad at the window so it could be reached by customers from their cars, but it wasn’t designed to be used that way and I’m sure it caused other issues.

permalink
report
parent
reply
1 point

In the US at least it’s still fairly common for the card to be taken by the employee of the Drive-Thru/Restaurant to be run through their POS.

permalink
report
parent
reply

Technology

!technology@lemmy.world

Create post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


Community stats

  • 18K

    Monthly active users

  • 11K

    Posts

  • 505K

    Comments