Go homepage(回首页)
Upload pictures (上传图片)
Write articles (发文字帖)

The author:(作者)
published in(发表于) 2016/5/2 8:21:56
China UnionPay:, IC chip card rub shoulders to read, but harder to steal,

English

中文

China UnionPay: IC chip card rub shoulders can read, but robbed a bank card, chip card, China UnionPay-IT information

Recently, magnetic stripe cards can be easily copied the message frightened many cardholders, many cardholders are determined to replace your chip card. But then again, recently held a second session of network and information security Expo is outgoing, just close to the card reader or mobile phones, IC chip card information can be read, include card number, recent transactions, even identity information. Really is it? Reporters for verification.

In this regard, China UnionPay told reporters yesterday, the chip card can be read at close range, but read the limited information cannot be used to trade copies or counterfeit card and cardholder security will not be affected.

Media coverage:

Stealing bank cards without contact information

Reported a few days ago, in the second session of the network and information security Expo, simulate hacker attacks "gate" as highlights.

It was reported that participants put a wallet phone security box, empty-handed through the "gate" of its chip card name, identity card number, credit card number, the card validity period, consumption time, consumption of the last 10 times, draw record, transfer records and other information revealed. It is understood that this "gate" in simulated real-life hackers fraudulent bank card attack.

Reports that explain, in fact, hold the security basket keeps a mobile wallet with NFC (near field communication) enabled wireless reader, alongside a matching receiver and computer equipment, as long as the card close to the card reader, card information can be displayed. "Through this device can not contact the bank card enrolled all of bank card information, means that in the front of the system, all the information is transparent. With similar equipment, passed to you on the subway, bus, will be able to read your message, and does not require any contact with you, can read at distances up to about 15 cm. ”

Reporter verification:

Mobile phone also can close the read card information

In fact, do not require high-end readers, as long as one support of NFC enabled mobile phones (such as Samsung, HTC, millet and other parts of mobile phones are supported), and will be able to read the chip card information. Yesterday, reporters held a Samsung phone and open Alipay and bank card in the back of the phone, will be able to read the card issuers, banks, after several balances, as well as the last 10 transactions, electronic wallet. It is understood that the bank card number, a different bank card can read the information varies, some bank cards is unreadable, some bank cards only shows two digits at the end of the beginning, and card balances are unreadable.

Reporters also found that bank card in the back of the phone can be read in a particular area, and card and mobile phone, the farther away from the data read more difficult, reporters found that between if there are obstacles, the difficulty of reading will increase; and both are 4 cm apart, the card information cannot be read. If the bank card into the wallet in the Pocket, and have the phone attached to the subjects on the Pocket, transform a variety of positions and angles when testing, the final result is read failed. Bank cards directly into his pockets, transformed after a few angles, cell phones can read out information.

It is understood that the bank card that can be read by NFC mobile phone information of IC chip bank cards, traditional magnetic stripe card can't be read.

Union response: read the limited information cannot be fraudulent or copy

Yesterday, the reporter interviewed the China Union pay. China UnionPay said that chip cards can be read.

UnionPay technical experts Dr Xu Jingwen said: "chip cards are currently the most secure bank card, global chip card has not occurred so far are copied result in fraud cases. Even if part of the card information is read, just read the limited information impossible to copy a chip card, security can be an effective safeguard cardholder funds. ”

While mobile phone banking card information can be read, but not foreign transfers. Read the information displayed can "open fast pay", but, due to open payment only support real-name account with bank cards belonging to the same person, so users don't have to worry about bank cards being account bound.

Online card payment, Dr Xu Jingwen said that apart from the chip card related information, also requires the cardholder to provide payment password, the back of the card, message authentication codes, such as multiple of three yards after information alone is impossible to read the information online, security risk does not increase, and information is less likely to be used maliciously.

Dr Xu Jingwen said that from a security perspective, chip cards are recommended for cardholders. Magnetic stripe card limit in technology, card information is copied, just the password will be able to complete the transaction, funds at risk of fraudulent card. Contrast, full range of chip card security system can effectively prevent such risks.

Tips: foil card sets can shield information is read

Even if it does not affect the financial security, however, there are people still worry that the banking card, you can feel free to read the questions, after all, the information belongs to the individual's privacy.

Xu Jingwen said chip card information be read by reader expressly comply with the international chip card EMV Specification, designed to achieve non-fast payouts. Not only in China, global banking card information can be read.

Experts advise that if you don't feel like information is read, the chip card sets put a foil card sets, regardless of the reader how close, can't read the card information. This card online you can buy.


中国银联: IC芯片卡虽擦肩可读,但资金难盗 - 银行卡,芯片卡,中国银联 - IT资讯

近期,磁条卡能被轻松复制的消息吓坏了不少持卡人,很多持卡人都下定决心要去更换芯片卡。但是问题又来了,日前举行的第二届网络与信息安全博览会上却传出,只要接近读卡器或者手机,IC芯片卡的信息就会被读取,包括卡号、最近交易内容,甚至身份证信息等。真的是这样吗?记者就此进行了求证。

对此,中国银联昨日向记者表示,芯片卡可被近距离读取,但是读取的有限信息不能用于交易或复制伪卡,持卡人资金安全不会受到影响。

媒体报道:

不需接触便可盗取银行卡信息

有报道称,日前,在第二届网络与信息安全博览会上,模拟黑客攻击的“安检门”成为亮点。

据报道,参与者将钱包手机放到安检框里,空手通过“安检门”,其芯片银行卡的姓名、身份证号、银行卡号、卡片有效期、最近10次的消费时间、消费地点、取现记录、转账记录等信息就暴露无遗。据了解,这个“安检门”模拟的是现实生活中黑客盗刷银行卡的攻击。

报道称,相关人士解释,实际上,存放手机钱包的安检筐里存有一张具有NFC(近距离通信)功能的无线读卡器,旁边还有配套的信号接收器和电脑等设备,只要银行卡靠近读卡器,卡片的信息就能显示出来。“通过这套设备可以不接触银行卡就读出银行卡的所有信息,意味着在这个系统面前,所有信息是透明的。用类似的设备,在地铁、公交车上跟你擦身而过,就能把你的信息读走,不需要跟你做任何接触,在大约15厘米以内的距离就可以读走。”

记者求证:

手机也能近距离读取卡信息

实际上,不需要高端的读卡器,只要一部支持NFC功能的手机(如三星、HTC、小米等部分手机均已支持),就能读取芯片银行卡信息。昨日,记者拿着一部三星手机并打开支付宝,然后将银行卡放在手机背面,就能读取发卡行、银行卡号后几位、电子钱包余额以及最近10笔交易记录。据了解,至于银行卡号,不同的银行卡可以读取的信息不尽相同,有的银行卡是不可读取的,有的银行卡只显示开头末尾两位数字,而卡内余额都不可读取。

记者还发现,银行卡要放在手机背面某特定区域中才能被读取,而且卡片与手机离得越远,资料读取难度越大,记者实验发现,两者中间如果有阻碍物,读取的难度就会加大;而两者相隔4厘米以上,卡片信息几乎无法被读取。如果将银行卡塞入钱包放进裤兜里,然后将手机贴到被测试者的裤兜上,测试时变换多种位置和角度,最后的结果均是读取失败。而将银行卡直接放入裤兜,在变换了几个角度之后,手机是可以读取出信息。

据了解,可被NFC手机读取信息的银行卡均为IC芯片银行卡,传统的磁条卡无法读取。

银联回应:读取信息有限无法盗刷或复制

昨日,记者采访了中国银联。中国银联表示,芯片卡确实可被读取。

银联技术专家徐静雯博士表示:“芯片卡是目前安全性最高的银行卡,迄今全球还未发生过芯片银行卡被复制导致欺诈的案例。即使部分卡片信息被读取,仅凭读取到的有限信息不可能复制出芯片卡,持卡人资金安全能得到有效保障。”

虽然手机可以读取银行卡信息,但是不能对外转账。读取信息后会显示可以“开通快捷支付”,但因开通快捷支付只支持实名账号与银行卡归属同一个人,因而用户无须担心银行卡被别人的账号绑定。

至于网上无卡支付,徐静雯博士指出,除芯片卡相关信息外,还要求持卡人提供支付密码、卡背面后三码、短信验证码等多重信息,仅凭读取的信息不可能完成网上交易,安全隐患并未增加,信息被恶意使用的可能性低。

徐静雯博士表示,从安全角度,推荐持卡人使用芯片卡。磁条卡受技术限制,卡片信息易被复制,只需密码就能完成交易,卡内资金存在被盗刷风险。相较之下,芯片卡的全方位安全技术体系能有效防范这类风险。

专家支招:锡纸卡套可屏蔽信息被读取

即便不影响资金安全,不过,有市民仍担心银行卡可被随意读取的问题,毕竟这些信息属于个人隐私。

徐静雯表示,芯片卡信息被读卡器明文读取符合EMV国际芯片卡通用规范,目的是实现非接快速支付。不止在中国,全球银行卡都可进行信息读取。

有专家提醒,如果实在不想信息被读取,可给芯片银行卡套上装上一个锡纸卡套,这样不论读卡器距离多近,都读不出卡里的信息。这种卡套上网就可以买到。






If you have any requirements, please contact webmaster。(如果有什么要求,请联系站长)





QQ:154298438
QQ:417480759