Feeds

Recyled credit card numbers pose fraud risk

Here's one I social engineered earlier

  • alert
  • submit to reddit

Secure remote control for conventional and virtual desktops

The use of recycled credit card numbers by UK banks could create loopholes for fraud.

Clydesdale Bank customer Stuart Robertson recently discovered that a MasterCard from the bank he cancelled a few years ago was still "live". The number has been reissued to another Clydesdale customer.

Robertson found that all he needed to access the rebadged account through Clydesdale's Web site was the revised expiry date for the card (no name, address etc. were required). Robertson was able to guess this expiry date after 23 attempts and succeeded in transferring a small amount from the account (to prove the breach), The Guardian reports.

Clydesdale Bank has promised to stop using recycled credit card numbers. It said it would stop using an unnamed outsourcing company that was reusing numbers. This company is used by "a number of high street banks", the bank told the paper.

It is unclear how widespread the practice of recycling CC numbers is. No-one from Clydesdale Bank's public relations department was available for comment this morning.

Glasgow-based Clydesdale Bank has 274 branches in the UK. It has promised to investigate the problem. Clydesdale is a subsidiary, along with Yorkshire Bank and Northern Bank, of the National Australia Bank (NAB) group. ®

Secure remote control for conventional and virtual desktops

More from The Register

next story
You really need to do some tech support for Aunty Agnes
Free anti-virus software, expires, stops updating and p0wns the world
Regin: The super-spyware the security industry has been silent about
NSA fingered as likely source of complex malware family
You stupid BRICK! PCs running Avast AV can't handle Windows fixes
Fix issued, fingers pointed, forums in flames
Privacy bods offer GOV SPY VICTIMS a FREE SPYWARE SNIFFER
Looks for gov malware that evades most antivirus
Patch NOW! Microsoft slings emergency bug fix at Windows admins
Vulnerability promotes lusers to domain overlords ... oops
HACKERS can DELETE SURVEILLANCE DVRS remotely – report
Hikvision devices wide open to hacking, claim securobods
prev story

Whitepapers

Why cloud backup?
Combining the latest advancements in disk-based backup with secure, integrated, cloud technologies offer organizations fast and assured recovery of their critical enterprise data.
Getting started with customer-focused identity management
Learn why identity is a fundamental requirement to digital growth, and how without it there is no way to identify and engage customers in a meaningful way.
Driving business with continuous operational intelligence
Introducing an innovative approach offered by ExtraHop for producing continuous operational intelligence.
5 critical considerations for enterprise cloud backup
Key considerations when evaluating cloud backup solutions to ensure adequate protection security and availability of enterprise data.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?