this post was submitted on 03 Dec 2024
289 points (97.7% liked)
Comic Strips
12961 readers
1147 users here now
Comic Strips is a community for those who love comic stories.
The rules are simple:
- The post can be a single image, an image gallery, or a link to a specific comic hosted on another site (the author's website, for instance).
- The comic must be a complete story.
- If it is an external link, it must be to a specific story, not to the root of the site.
- You may post comics from others or your own.
- If you are posting a comic of your own, a maximum of one per week is allowed (I know, your comics are great, but this rule helps avoid spam).
- The comic can be in any language, but if it's not in English, OP must include an English translation in the post's 'body' field (note: you don't need to select a specific language when posting a comic).
- Politeness.
- Adult content is not allowed. This community aims to be fun for people of all ages.
Web of links
- [email protected]: "I use Arch btw"
- [email protected]: memes (you don't say!)
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
What shitty system even allows this to happen? It's not like the microchip in credit cards that allows for secure transactions is particularly expensive.
Small addendum because I looked it up:
Apparently checks aren't the only ancient aspect of the US banking system. Chip cards have apparently only come around in the past few years, prior they used the insecure magnetic strip cards that can literally just be copied.
Also, the chips aren't that much better than the stripe. It's harder to clone the chip and much harder to do en masse, but far from impossible. On top of that, the measure that is supposed to prevent cloning from being viable is almost never actually required, that being the PIN.
It's called "Chip and PIN" for a reason. It's a 2FA system where one of the factors just isn't required and the other can be readily compromised. It's baffling how we have a functioning system for digital payments when seemingly no one is willing to properly implement and then use a secure standard.
I travelled to the US from Canada recently and was super confused when I didn't need to enter my PIN. Was also really confused about giving away my credit card to bartenders
At least credit cards are... on credit. You can usually just stop a transaction if someone makes unauthorised use of your credit card. If this also happens with debit cards, your in more trouble. Than the money is just gone.
Fortunately in the US debit does generally require the PIN and always has even before chips.
Tap to pay is much safer though.
Not if you're using your card. The card can still be cloned with a few seconds of physical access. Also, with a card, there's no PIN verification with tap to pay and no signature requirements. Because of that most countries have transaction size limits for tap to pay. Usually in the $50-$100 USD range. The US, notably has no such limits. So, if someone steals your card they can use it up to your balance/credit limit, or up to the transaction limit your bank sets, typically about $10,000 USD.
Tap to pay using a phone, apple watch, or similar device is more secure because they have actual 2FA and generate unique payment information for each transaction on top of the already existing encryption of the transaction data. Additionally, cloning the underlying payment info would require being able to access the secure enclave on the phone.
On some revolut (finance app, popular in ireland) cards the magenetic strip is disabled by default.
Mastercard started removing the magnetic strip from new cards this year in some European countries, and want to completely remove it worldwide by 2029.
In the US, I've actually got one card that doesn't have a magnetic strip: a debit card for Target stores (gives 5% discount for every purchase which is why I have it).