Securing Your Payment Cards from NFC Attacks
- SEPTEMBER 16TH, 2024
- 1min read
Introduction
Near-Field Communication (NFC) is a technology that allows devices to communicate with each other when they’re in proximity. NFC typically works over the Near-Field Communication (NFC) protocol, a subset of radio frequency identification (RFID) technology. A quick tap-and-go process with the use of smartphones, smartwatches, and cards has greatly improved customer experience but is also accompanied by security concerns and risks.
Common NFC Security Attacks
- Eavesdropping: Malicious actors place a rogue NFC reader near a legitimate device to capture sensitive information without the user’s knowledge.
- Skimming: Attackers use NFC-enabled terminals to capture data from NFC devices, enabling card cloning or unauthorised transactions.
- Relay Attacks: Data from an NFC transaction is intercepted and relayed to another device for malicious use.
- Data Corruption: Attackers intercept, alter, or damage NFC-transmitted data, leading to unauthorised access, system malfunctions, or financial losses.
- Denial of Service (DoS): Overwhelm NFC devices with excessive data/requests to disrupt legitimate access and cause financial loss.
Best Practices Against NFC Attacks
- Trusted Devices and Sources: Initiate NFC connections only with trusted devices/apps from reputable developers.
- NFC/RFID-blocking Sleeves or Wallets: Prevent unauthorised scanning of cards/devices.
- Notification and Monitoring: Enable real-time transaction alerts; review device logs and report suspicious activity.
- Card Proximity: Keep cards out of sight (avoid back pockets/purses) to reduce skimming risks.
- Set Spending Limits: Restrict maximum transaction amounts for added protection.
Explore more CIL Advisories
Phishing Emails
IntroductionPhishing attacks are becoming increasingly sophisticated, with malicious actors exploiting current events like the Paris 2024 Olympics Games to run…
DECEMBER 16TH, 2024
Read More
Preventing Deep Fake Scams
IntroductionMalicious actors always find creative ways to defraud unsuspecting individuals; deep fake scams are one of the latest ways with…
DECEMBER 9TH, 2024
Read More
Trouble Looms: Ransomware Attacks on the Rise
IntroductionRansomware is a type of malware which prevents you from accessing your device and the data stored on it, usually…
DECEMBER 2ND, 2024
Read MoreNever miss a CIL Security Advisory
Stay informed with the latest security updates and insights from CIL.