Reply to post: Re: Speculation and Rumour

'Tesco Bank's major vulnerability is its ownership by Tesco,' claims ex-employee

m00head

Re: Speculation and Rumour

"Therefore it is something that Tesco has done that has introduced the problem."

* Tesco Bank ignored a warning about a security flaw from Visa a year ago regarding POS entry code 91 fraud (Contactless, using magnetic-stripe data rules). Europol repeated this warning in September.

* Tesco Bank allows contactless transactions in foreign currencies which do not have the £30 UK limit (other major banks do not allow contactless transactions in foreign currencies).

* Tesco Bank fraud prevention system did not detect a brute-force attack against debit card numbers, expiry dates, and dCVV (Dynamic Card Verification Value) of the contactless interface.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon