{"id":1200,"date":"2009-03-22T00:31:59","date_gmt":"2009-03-21T22:31:59","guid":{"rendered":"http:\/\/vaxxi.net\/log\/?p=1200"},"modified":"2009-03-22T13:40:32","modified_gmt":"2009-03-22T11:40:32","slug":"cum-se-fura-de-pe-carduri","status":"publish","type":"post","link":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/","title":{"rendered":"cum se fur\u0103 de pe carduri"},"content":{"rendered":"<figure id=\"attachment_1202\" aria-describedby=\"caption-attachment-1202\" style=\"width: 300px\" class=\"wp-caption alignright\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1202\" title=\"Wireless POS \" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series-300x300.jpg\" alt=\"POS wireless\" width=\"300\" height=\"300\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series-300x300.jpg 300w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series-150x150.jpg 150w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series.jpg 500w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><figcaption id=\"caption-attachment-1202\" class=\"wp-caption-text\">Aparat POS (Point Of Sale)<\/figcaption><\/figure>\n<p>Eh, valabil titlu, nu? din p\u0103cate, nu am spus &#8220;cum s\u0103 furi&#8221;, ci &#8220;cum se fur\u0103&#8221;. E o diferen\u0163\u0103.<\/p>\n<p>Cardul bancar (fie el de debit sau de credit) este din ce \u00een ce mai utilizat \u00een ziua de azi. Fiind portofelul electronic al majorit\u0103\u0163ii, tenta\u0163ia e mare: fraudele cu carduri bancare s-au \u00eenmul\u0163it ca num\u0103r \u015fi ca valoare, iar pericolul p\u00e2nde\u015fte la fiecare col\u0163, tovar\u0103\u015fi. Fraudarea unui card bancar se poate face \u00een 2 feluri mari \u015fi late: achizi\u0163ionarea de bunuri sau servicii cu un card bancar clonat, sau extragerea direct\u0103 de fonduri. Trebuie notat c\u0103 (din p\u0103cate) la noi predomin\u0103 cardurile de debit (chiar \u015fi cardurile de debit cu overdraft sunt tot carduri de debit, \u00een esen\u0163\u0103), care nu beneficiaz\u0103 de at\u00e2tea m\u0103suri de protec\u0163ie precum cardurile de credit. \u00cen USA, de exemplu, o \u00een\u015fel\u0103torie la plata cu credit card-ul (de exemplu ai pl\u0103tit online produsul X, \u015fi nu-l prime\u015fti, sau prime\u015fti altceva) poate fi reclamat\u0103 la banca emitent\u0103 a cardului, \u015fi clientul \u00ee\u015fi prime\u015fte banii \u00eenapoi &#8211; este treaba b\u0103ncii s\u0103 se descurce cu furnizorul (procesul se nume\u015fte <em>chargeback<\/em>). Eh, chestia asta nu exist\u0103 la cardurile de debit; pe de alt\u0103 parte, la cardurile de credit se pl\u0103te\u015fte dob\u00e2nd\u0103, la cele de debit nu. Un card de debit \u00ee\u0163i permite s\u0103 cheltui doar bani pe care \u00eei ai, un card de credit \u00ee\u0163i permite s\u0103 cheltui bani pe care nu-i ai.<\/p>\n<p><!--more--><\/p>\n<p>Mai departe. Cardul bancar este o am\u0103r\u00e2t\u0103 bucat\u0103 de plastic, ce con\u0163ine c\u00e2teva elemente foarte importante: numele de\u0163in\u0103torului, num\u0103rul de card, data expir\u0103rii \u015fi codul de verificare (denumit \u015fi CVV). Primele 3 se reg\u0103sesc pe fa\u0163a cardului, CVV-ul const\u0103 \u00een ultimele 3 cifre inscrip\u0163ionate pe spatele cardului. Toate aceste date (cu excep\u0163ia CVV-ului) sunt vizibile \u00een clar, \u015fi stocate criptat pe banda magnetic\u0103 a cardului pentru a putea fi citite de POS-uri (Point Of Sale). Motivul existen\u0163ei CVV-ului este un nivel suplimentar \u00een siguran\u0163a tranzac\u0163iei: teoretic, neav\u00e2nd CVV-ul, tranzac\u0163ia nu poate fi completat\u0103; CVV-ul este un fel de dovad\u0103 a existen\u0163ei \u015fi prezen\u0163ei cardului la desf\u0103\u015furarea tranzac\u0163iei.<\/p>\n<p>Cele 2 mari companii emi\u0163\u0103toare de carduri bancare sunt, dup\u0103 cum \u015fti\u0163i probabil, Visa \u015fi Mastercard. Toate cardurile Mastercard sunt carduri embosate (au informa\u0163iile de pe fa\u0163\u0103 scrise \u00een relief), pe c\u00e2nd Visa ofer\u0103 \u015fi Visa Electron (un fel de Visa limitat, dac\u0103 vre\u0163i). Motivul pentru care literele sunt scrise \u00een relief st\u0103 \u00een istorie, pe c\u00e2nd POS-urile electronice nu existau, \u015fi informa\u0163ia de pe card era preluat\u0103 mecanic prin plasarea cardului \u00eentr-un dispozitiv care presa literele pe o h\u00e2rtie tip indigo (cam ca atunci c\u00e2nd freca\u0163i cu creionul o coal\u0103 de h\u00e2rtie plasat\u0103 peste o moned\u0103). \u00cen prezent, majoritatea POS-urilor sunt electronice: cardul este introdus \u00een dispozitiv, \u015fi acesta comunic\u0103 (de obicei prin intermediul unei linii telefonice) cu &#8220;centrala&#8221; pentru a transmite datele citite de pe card. Eh, \u015fi o s\u0103 \u00eentreba\u0163i de codul PIN. Codul PIN este aplicat doar cardurilor de debit, ca principal\u0103 m\u0103sur\u0103 de protec\u0163ie (\u0163ine\u0163i minte c\u0103 un card de debit nu te protejeaz\u0103 \u00een cazul tranzac\u0163iilor dubioase, a\u015fa cum o face un card de credit). Eh, de-aici vine \u015fi problema.<\/p>\n<p>S\u0103 lu\u0103m un card de debit obi\u015fnuit, emis de Visa. Mergem la magazin, cump\u0103r\u0103m ceva \u015fi pl\u0103tim. Cardul este trecut prin POS, se introduce suma de plat\u0103, \u015fi &#8230; depinde.<\/p>\n<figure id=\"attachment_1206\" aria-describedby=\"caption-attachment-1206\" style=\"width: 113px\" class=\"wp-caption alignleft\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1206\" title=\"PIN pad\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/1686-188x300.jpg\" alt=\"PIN pad\" width=\"113\" height=\"180\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/1686-188x300.jpg 188w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/1686.jpg 302w\" sizes=\"auto, (max-width: 113px) 100vw, 113px\" \/><figcaption id=\"caption-attachment-1206\" class=\"wp-caption-text\">PIN Pad (dispozitiv pentru introducerea PIN-ului)<\/figcaption><\/figure>\n<p><strong>Cazul 1: tranzac\u0163ie online, cu PIN<\/strong>. Tranzac\u0163ia este autentificat\u0103 pe baz\u0103 de PIN. Dup\u0103 introducerea sumei ce trebuie pl\u0103tit\u0103, ni se cere codul PIN, pe care \u00eel tast\u0103m pe o mic\u0103 tastatur\u0103 numeric\u0103 numit\u0103 <em>PIN pad<\/em>. Codul tastat este criptat cu un algoritm oarecare, \u015fi e comparat cu valoarea criptat\u0103 stocat\u0103 pe banda magnetic\u0103. Dac\u0103 se potrivesc, succes: este deschis\u0103 o conexiune cu centrala b\u0103ncii, sunt comunicate informa\u0163iile despre pl\u0103titor, suma ce trebuie debitat\u0103 din contul persoanei, \u015fi se a\u015fteapt\u0103 r\u0103spunsul de la centrala b\u0103ncii (poate nu avem destui bani \u00een cont? atunci, erorare). Dac\u0103 avem bani \u00een cont, atunci totul e \u00een regul\u0103 \u015fi se tip\u0103resc cele 2 chitan\u0163e. O chitan\u0163\u0103 e semnat\u0103 de posesorul cardului \u015fi r\u0103m\u00e2ne la magazin, semn\u0103tura fiind acceptul de plat\u0103. S\u0103 numim acest tip de tranzac\u0163ie a fi &#8220;o tranzac\u0163ie online&#8221;.<\/p>\n<p><strong>Cazul 2: tranzac\u0163ie offline, f\u0103r\u0103 PIN.<\/strong> Eh, \u0103sta e cazul mai delicat; c\u00e2nd o tranzac\u0163ie nu necesit\u0103 cod PIN, se nume\u015fte a fi &#8220;o tranzac\u0163ie offline&#8221;. \u00cen esen\u0163\u0103, cardul de debit este procesat ca un card de credit: sunt memorate informa\u0163iile de pe card \u015fi suma de plat\u0103, acestea urm\u00e2nd a fi transmise ulterior la banc\u0103 pentru procesare. Acesta este \u015fi motivul pentru care tranzac\u0163iile desf\u0103\u015furate f\u0103r\u0103 PIN apar \u00een extrasul de cont abia dup\u0103 2-3 zile de la efectuarea tranzac\u0163iei. Procesul se desf\u0103\u015foar\u0103 exact ca prelucrarea unei tranzac\u0163ii cu un card de credit, doar c\u0103 banii implica\u0163i \u00een tranzac\u0163ie exist\u0103 \u00een contul bancar (nu sunt bani &#8220;\u00eemprumuta\u0163i&#8221; de banc\u0103, precum \u00een cazul unui card de credit real). \u00cen cazul inexisten\u0163ei unui POS electronic, aici intr\u0103 \u00een ac\u0163iune literele embosate de pe card \u015fi informa\u0163iile sunt transferate mecanic pe h\u00e2rtie (ca un cec, s\u0103 zicem); la noi, 99.9999% din POS-uri sunt electronice, deci nu ne intereseaz\u0103 asta. Cardul nostru de debit emis \u00een Rom\u00e2nia se va comporta ca un card <strong>de credit<\/strong> atunci c\u00e2nd suntem \u00een afara \u0163\u0103rii, din motive tehnice (imposibilitatea de a comunica \u00een timp real cu banca din \u0163ara emitent\u0103 este unul din aceste motive).<\/p>\n<figure id=\"attachment_1209\" aria-describedby=\"caption-attachment-1209\" style=\"width: 240px\" class=\"wp-caption alignleft\"><strong><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1209\" title=\"MSR 210\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/msr210-300x257.jpg\" alt=\"Aparat de inscrip\u0163ionare a cardurilor clonate\" width=\"240\" height=\"206\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/msr210-300x257.jpg 300w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/msr210.jpg 331w\" sizes=\"auto, (max-width: 240px) 100vw, 240px\" \/><\/strong><figcaption id=\"caption-attachment-1209\" class=\"wp-caption-text\">Aparat de inscrip\u0163ionare a cardurilor clonate<\/figcaption><\/figure>\n<p>Bun, \u015fi \u00een cazul \u0103sta, cum se poate fura de pe carduri p\u00e2n\u0103 la urm\u0103? \u00cen 2 moduri, care corespund celor 2 cazuri de mai sus.<\/p>\n<p><strong>Cazul 1: card clonat \u015fi PIN<\/strong> Ho\u0163ul are PIN-ul, \u015fi poate extrage direct bani de la ATM cu un card clonat (varianta preferat\u0103, deoarece este eliminat\u0103 interac\u0163iunea cu magazinul \u015fi necesitatea v\u00e2nz\u0103rii bunurilor achizi\u0163ionate).<br \/>\n<strong>Cazul 2: card clonat utilizat ca un card de credit<\/strong> Ho\u0163ul are informa\u0163iile de pe card, \u015fi nu are nevoie de PIN, put\u00e2nd pl\u0103ti cu cardul clonat la magazin, urm\u00e2nd a vinde produsele cump\u0103rate pentru bani lichizi.<\/p>\n<p>S\u0103 trat\u0103m cele 2 cazuri pe r\u00e2nd.<\/p>\n<p><strong>Cazul 1:<\/strong> ho\u0163ul cloneaz\u0103 cardul \u015fi are PIN-ul. O pereche &#8220;card clonat + PIN&#8221; este foarte valoroas\u0103, deoarece se pot ob\u0163ine direct banii de la ATM, \u015fi nu exist\u0103 facilitatea de &#8220;chargeback&#8221; \u00een cazul tranzac\u0163iilor efectuate cu un card de credit. Practic, un card clonat \u015fi PIN-ul s\u0103u ar putea foarte bine s\u0103 fie privite exact ca un portofel plin cu bani: c\u00e2nd este furat, banii s-au cam dus.<\/p>\n<p>Clonarea cardului este relativ facil\u0103: procedeul se cheam\u0103 <a href=\"http:\/\/www.scamwatch.gov.au\/content\/index.phtml\/tag\/CardSkimming\">skimming<\/a>. Cardul care se dore\u015fte a fi clonat este trecut printr-un dispozitiv (numit &#8220;pisicu\u0163\u0103&#8221; la noi) care cite\u015fte datele de pe banda magnetic\u0103 \u015fi le memoreaz\u0103. Cu datele copiate de pe banda magnetic\u0103 a cardului \u015fi un inscriptor de carduri &#8220;blank&#8221; se poate ob\u0163ine o copie perfect\u0103 a cardului clonat (din punct de vedere al datelor stocate). De obicei, datele sunt copiate chiar prin intermediul angaja\u0163ilor de la magazine: d\u0103m cardul pentru plat\u0103, \u015fi \u00eentr-un moment de neaten\u0163ie cardul este trecut repede prin dispozitivul de copiere, opera\u0163iunea dur\u00e2nd nici 2 secunde. Varianta 2: montarea pe fanta bancomatelor a dispozitivului de copiere (acesta e motivul pentru care au ap\u0103rut &#8220;gulerele&#8221; alea verzi din plastic transparent de ceva vreme, la bancomate). \u015ei bum, avem cardul clonat.<\/p>\n<p>Iat\u0103 cum arat\u0103 o pisicu\u0163\u0103 de bancomat (mai multe poze se g\u0103sesc la surs\u0103, <a href=\"http:\/\/web.inter.nl.net\/users\/p.c.wiegmans\/skimapparaat\/index.html\">aici<\/a>):<\/p>\n<figure id=\"attachment_1203\" aria-describedby=\"caption-attachment-1203\" style=\"width: 200px\" class=\"wp-caption alignleft\"><a href=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein15.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1203\" title=\"skimapparaat-klein15\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein15-200x300.jpg\" alt=\"skimapparaat-klein15\" width=\"200\" height=\"300\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein15-200x300.jpg 200w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein15-685x1024.jpg 685w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein15.jpg 803w\" sizes=\"auto, (max-width: 200px) 100vw, 200px\" \/><\/a><figcaption id=\"caption-attachment-1203\" class=\"wp-caption-text\">Aparat de clonat carduri pentru instalare \u00een ATM - exterior<\/figcaption><\/figure>\n<figure id=\"attachment_1204\" aria-describedby=\"caption-attachment-1204\" style=\"width: 200px\" class=\"wp-caption alignleft\"><a href=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein22.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1204\" title=\"skimapparaat-klein22\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein22-200x300.jpg\" alt=\"skimapparaat-klein22\" width=\"200\" height=\"300\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein22-200x300.jpg 200w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein22-685x1024.jpg 685w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimapparaat-klein22.jpg 803w\" sizes=\"auto, (max-width: 200px) 100vw, 200px\" \/><\/a><figcaption id=\"caption-attachment-1204\" class=\"wp-caption-text\">Aparat de clonat carduri pentru instalare \u00een ATM - interior<\/figcaption><\/figure>\n<p>Dar cum ob\u0163in PIN-ul? P\u0103i, se zice c\u0103 (aproape la fel de de) u\u015for. Varianta 1, pentru dispozitivele de clonare instalate pe bancomate: se monteaz\u0103 o camer\u0103 mic\u0103 de luat vederi \u00een col\u0163ul de sus al bancomatului, \u00eendreptat\u0103 fix spre tastatura pe care introduce\u0163i PIN-ul. Varianta 2, pentru cele instalate \u00een magazine: se ob\u0163ine acces la calculatorul din magazin pe care e instalat software-ul care proceseaz\u0103 pl\u0103\u0163ile, \u015fi se intercepteaz\u0103 PIN-ul \u00een momentul \u00een care-l tasta\u0163i pe PIN pad. Teoretic, comerciantul nu are voie s\u0103 p\u0103streze PIN-ul tastat nici m\u0103car \u00een form\u0103 criptat\u0103; practic, odat\u0103 ce se ob\u0163ine acces fizic la calculatorul sau \u00een re\u0163eaua unde lucreaz\u0103 software-ul de procesare (\u015fi implicit acces la cheile de criptare), e prea t\u00e2rziu. Varianta 3, cea mai rar \u00eent\u00e2lnit\u0103 (dar \u015fi cea mai distructiv\u0103): ob\u0163inerea accesului la baza de date a b\u0103ncii (de obicei prin intermediul unui angajat corupt), \u015fi copierea perechilor de date + PIN direct din sistemul b\u0103ncii. Se b\u0103nuie\u015fte c\u0103 <a href=\"http:\/\/www.evz.ro\/articole\/detalii-articol\/802653\/300000-de-euro-frauda-la-Bancpost\/\">fraudarea cardurilor Millenium de la Bancpost din mai 2008 <\/a>a fost efectuat\u0103 astfel.<\/p>\n<p><figure id=\"attachment_1212\" aria-describedby=\"caption-attachment-1212\" style=\"width: 180px\" class=\"wp-caption alignleft\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1212\" title=\"skimmer\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimmer-300x288.jpg\" alt=\"Skimmer portabil\" width=\"180\" height=\"173\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimmer-300x288.jpg 300w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/skimmer.jpg 406w\" sizes=\"auto, (max-width: 180px) 100vw, 180px\" \/><figcaption id=\"caption-attachment-1212\" class=\"wp-caption-text\">Skimmer portabil<\/figcaption><\/figure><strong>Cazul 2:<\/strong> este \u015fi mai simplu, dup\u0103 ce a\u0163i citit cazul 1, deoarece nu mai implic\u0103 PIN-ul. C\u00e2nd sunt \u00een afara \u0163\u0103rii cu cardul meu de debit, acesta se comport\u0103 ca un card de credit. Tranzac\u0163ia nu mai implic\u0103 PIN, ci doar citirea datelor mele de pe card \u015fi transmiterea lor \u00eempreun\u0103 cu suma de plat\u0103 c\u0103tre banca din \u0163ara emitent\u0103 a cardului (similar cu facturarea apelurilor roaming, dar \u0103sta e alt subiect). Dac\u0103 \u00een momentul \u00een care eu \u00eemi cump\u0103r pantofi din mall, cardul meu este copiat, totul s-a terminat. Datele copiate de pe card sunt transmise la vreo zece mii de kilometri distan\u0163\u0103 \u00eentr-o \u0163ar\u0103 cu legisla\u0163ie \u015fi autorit\u0103\u0163i mai relaxate (s\u0103 zicem Bulgaria, Ucraina, \u015famd), \u015fi este creat un card clonat cu datele cardului meu. Ho\u0163ul se duce la magazin \u015fi cump\u0103r\u0103 cu acest card 10 parfumuri de 100 EUR, iar tranzac\u0163ia apare \u00een extrasul meu de cont abia la 2-3 zile, mult dup\u0103 ce parfumurile au fost v\u00e2ndute &#8220;\u00een pia\u0163\u0103&#8221; pentru bani buni. \u00c4\u201asta e momentul de \u015foc, momentul \u00een care suni la banc\u0103, momentul \u00een care cardul bancar este blocat.<\/p>\n<p>Ca exemplu de p\u0103\u0163anie: cardul bancar adev\u0103rat era \u00een Dubai, tranzac\u0163iile dubioase au ap\u0103rut \u00een Moscova \u015fi USA (mi\u015fto Internetul \u0103sta, nu?) S-a sunat la banca rom\u00e2neasc\u0103 pentru a reclama frauda. Banca rom\u00e2neasc\u0103 a cerut o fotografie a cardului bancar cu un col\u0163 t\u0103iat, \u00eempreun\u0103 cu un ziar recent (pentru a verifica faptul c\u0103 posesorul cardului este cu adev\u0103rat acolo unde spune c\u0103 este \u015fi a verifica data reclama\u0163iei, presupun). Cardul a fost blocat, \u015fi urmeaz\u0103 ca banca s\u0103 investigheze problema pentru a returna banii posesorului p\u0103gubit. Ah, \u015fi pentru c\u0103 este o banc\u0103 rom\u00e2neasc\u0103 pe care eu o &#8220;simpatizez&#8221; mult de tot, afla\u0163i c\u0103 se preia un COMISION DE RECUPERARE de 10 EUR &#8211; culmea nesim\u0163irii, nu? culmea nesim\u0163irii pentru c\u0103 nu e normal, \u015fi pentru c\u0103 acel card tocmai fusese schimbat \u00een urma altei fraude similare, \u015fi nu fusese folosit DELOC p\u00e2n\u0103 \u00een momentul apari\u0163iei tranzac\u0163iilor frauduloase, ceea ce m\u0103 duce cu g\u00e2ndul la faptul c\u0103 informa\u0163iile de pe card au plecat din interiorul b\u0103ncii. Da, de voi vorbesc, b\u0103i BRD!<\/p>\n<figure id=\"attachment_1208\" aria-describedby=\"caption-attachment-1208\" style=\"width: 300px\" class=\"wp-caption alignleft\"><a href=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/atm-skim2.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1208\" title=\"atm-skim2\" src=\"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/atm-skim2-300x225.jpg\" alt=\"Alt tip de pisicu\u0163\u0103, instalat\u0103 pe fanta bancomatului\" width=\"300\" height=\"225\" srcset=\"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/atm-skim2-300x225.jpg 300w, https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/atm-skim2.jpg 640w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><figcaption id=\"caption-attachment-1208\" class=\"wp-caption-text\">Alt tip de pisicu\u0163\u0103, instalat\u0103 pe fanta bancomatului<\/figcaption><\/figure>\n<p>Bun, \u015fi ce putem face pentru a ne proteja \u00een cazul \u0103sta? P\u0103i:<\/p>\n<ul>\n<li> ave\u0163i grij\u0103 de card \u015fi de PIN. Nu scrie\u0163i PIN-ul pe h\u00e2rtie, sau direct pe card!<\/li>\n<li> la bancomat, evita\u0163i bancomatele suspecte \u015fi inspecta\u0163i vizual fanta de introducere a cardului. Dac\u0103 arat\u0103 dubios, prezint\u0103 urme de for\u0163are sau demontare &#8230; c\u0103uta\u0163i alt bancomat. Eventual unul situat \u00eentr-o incint\u0103 \u00eenchis\u0103, cu acces restric\u0163ionat (gen Office-urile de la ING).<\/li>\n<li> c\u00e2nd tasta\u0163i PIN-ul la bancomat, acoperi\u0163i m\u00e2na cu care tasta\u0163i cu cealalt\u0103 m\u00e2n\u0103. Valabil \u015fi la plata cu cardul la POS.<\/li>\n<li> c\u00e2nd pl\u0103ti\u0163i la POS \u015fi vi se spune c\u0103 tranzac\u0163ia a fost refuzat\u0103, cere\u0163i chitan\u0163a tip\u0103rit\u0103 de POS cu motivul refuzului (conexiune imposibil\u0103, insuficiente fonduri, etc). Nu accepta\u0163i trecerea cardului prin POS f\u0103r\u0103 a primi o chitan\u0163\u0103 pentru fiecare trecere, indiferent de rezultatul opera\u0163iunii!<\/li>\n<li> nu pierde\u0163i cardul din vedere c\u00e2nd pl\u0103ti\u0163i la POS. Nu permite\u0163i v\u00e2nz\u0103torului s\u0103 plece cu cardul \u00een alt\u0103 camer\u0103, s\u0103-l treac\u0103 pe sub tejghea, sau alte manevre similare.<\/li>\n<li> nu introduce\u0163i PIN-ul \u00een nici o pagin\u0103 de web (vezi recentele cazuri de phishing care \u0163intesc Raiffeisen Bank); tranzac\u0163iile web folosesc cel mult CVV-ul, \u00een nici un caz PIN-ul cardului.<\/li>\n<li> folosi\u0163i serviciul de online banking, \u015fi verifica\u0163i periodic extrasul de cont, urm\u0103rind apari\u0163ia tranzac\u0163iilor suspecte. Dac\u0103 observa\u0163i ceva dubios, suna\u0163i la banc\u0103 imediat.<\/li>\n<\/ul>\n<p>Bibliografie:<\/p>\n<p>1. <a href=\"http:\/\/www.evz.ro\/articole\/detalii-articol\/802653\/300000-de-euro-frauda-la-Bancpost\/\">300.000 de euro fraud\u0103 la Bancpost<\/a>, EVZ.ro<br \/>\n2. <a href=\"http:\/\/www.msnbc.msn.com\/id\/11731365\/print\/1\/displaymode\/1098\/\">Did PIN thieves grab hacking&#8217;s Holy Grail?<\/a>, MSNBC.com<br \/>\n3. <a href=\"http:\/\/www.paymenow.com\/html\/debit_transactions.html\">Debit Transactions<\/a>, PayMeNow.com<br \/>\n4. <a href=\"http:\/\/en.wikipedia.org\/wiki\/Debit_cards\">Debit cards<\/a>, <a href=\"http:\/\/en.wikipedia.org\/wiki\/Credit_card\">Credit cards<\/a>, <a href=\"http:\/\/en.wikipedia.org\/wiki\/Credit_card_hijacking\">Credit card hijacking<\/a>, Wikipedia.org<br \/>\n5. <a href=\"http:\/\/www.scamwatch.gov.au\/content\/index.phtml\/tag\/CardSkimming\">Card skimming<\/a>, scamwatch.gov.au<br \/>\n6. <a href=\"http:\/\/web.inter.nl.net\/users\/p.c.wiegmans\/skimapparaat\/index.html\">Skimapparaat<\/a>, Paul Wiegmans<br \/>\n7. <a href=\"http:\/\/www.telegraph.co.uk\/news\/uknews\/1581820\/Card-skimming-gang-targets-train-stations.html\">Card-skimming gang targets train stations<\/a>, Telegraph.co.uk<br \/>\n8. <a href=\"http:\/\/news.bbc.co.uk\/2\/hi\/programmes\/moneybox\/6116682.stm\">Your Say: Cash machine fraud<\/a>, BBC<br \/>\n9. <a href=\"http:\/\/teapoci.blogspot.com\/2008\/03\/how-thief-duplicates-your-credit-or.html\">How thief duplicates your credit or debit card<\/a>,  Tea Poci<br \/>\n10. <a href=\"http:\/\/www.insideidtheft.info\/credit-card-skimmer-pictures.aspx\">ATM, Debit Card and Credit Card Skimmer images<\/a>, www.insideIDtheft.info<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Eh, valabil titlu, nu? din p\u0103cate, nu am spus &#8220;cum s\u0103 furi&#8221;, ci &#8220;cum se fur\u0103&#8221;. E o diferen\u0163\u0103. Cardul bancar (fie el de debit sau de credit) este din ce \u00een ce mai utilizat \u00een ziua de azi. Fiind portofelul electronic al majorit\u0103\u0163ii, tenta\u0163ia e mare: fraudele cu carduri bancare s-au \u00eenmul\u0163it ca num\u0103r<a class=\"continue-link\" href=\"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/\">&#8230;(Continue Reading)<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10,7],"tags":[21,37,183,181],"class_list":["post-1200","post","type-post","status-publish","format-standard","hentry","category-din-lume","category-gadgets","tag-banci","tag-carduri","tag-din-lume","tag-gadgets"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>cum se fur\u0103 de pe carduri<\/title>\n<meta name=\"description\" content=\"Eh, valabil titlu, nu? din p\u0103cate, nu am spus &quot;cum s\u0103 furi&quot;, ci &quot;cum se fur\u0103&quot;. E o diferen\u0163\u0103. Cardul bancar (fie el de debit sau de credit) este din ce \u00een\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"VAXXi\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"12 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/\"},\"author\":{\"name\":\"VAXXi\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/#\\\/schema\\\/person\\\/94a50a82939211f624b6bf7579d2f752\"},\"headline\":\"cum se fur\u0103 de pe carduri\",\"datePublished\":\"2009-03-21T22:31:59+00:00\",\"dateModified\":\"2009-03-22T11:40:32+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/\"},\"wordCount\":2333,\"commentCount\":29,\"image\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#primaryimage\"},\"thumbnailUrl\":\"http:\\\/\\\/vaxxi.net\\\/log\\\/wp-content\\\/uploads\\\/2009\\\/03\\\/wireless-mobile-pos-s520-series-300x300.jpg\",\"keywords\":[\"banci\",\"carduri\",\"din lume\",\"gadgets\"],\"articleSection\":[\"din lume\",\"gadgets\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/\",\"url\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/\",\"name\":\"cum se fur\u0103 de pe carduri\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#primaryimage\"},\"thumbnailUrl\":\"http:\\\/\\\/vaxxi.net\\\/log\\\/wp-content\\\/uploads\\\/2009\\\/03\\\/wireless-mobile-pos-s520-series-300x300.jpg\",\"datePublished\":\"2009-03-21T22:31:59+00:00\",\"dateModified\":\"2009-03-22T11:40:32+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/#\\\/schema\\\/person\\\/94a50a82939211f624b6bf7579d2f752\"},\"description\":\"Eh, valabil titlu, nu? din p\u0103cate, nu am spus \\\"cum s\u0103 furi\\\", ci \\\"cum se fur\u0103\\\". E o diferen\u0163\u0103. Cardul bancar (fie el de debit sau de credit) este din ce \u00een\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#primaryimage\",\"url\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/wp-content\\\/uploads\\\/2009\\\/03\\\/wireless-mobile-pos-s520-series.jpg\",\"contentUrl\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/wp-content\\\/uploads\\\/2009\\\/03\\\/wireless-mobile-pos-s520-series.jpg\",\"width\":\"500\",\"height\":\"500\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/cum-se-fura-de-pe-carduri\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"VAXXiNET\",\"item\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"cum se fur\u0103 de pe carduri\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/#website\",\"url\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/\",\"name\":\"\",\"description\":\"There must be some way out of here\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/vaxxi.net\\\/log\\\/#\\\/schema\\\/person\\\/94a50a82939211f624b6bf7579d2f752\",\"name\":\"VAXXi\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x\",\"caption\":\"VAXXi\"},\"sameAs\":[\"http:\\\/\\\/vaxxi.net\\\/log\\\/\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"cum se fur\u0103 de pe carduri","description":"Eh, valabil titlu, nu? din p\u0103cate, nu am spus \"cum s\u0103 furi\", ci \"cum se fur\u0103\". E o diferen\u0163\u0103. Cardul bancar (fie el de debit sau de credit) este din ce \u00een","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/","twitter_misc":{"Written by":"VAXXi","Est. reading time":"12 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#article","isPartOf":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/"},"author":{"name":"VAXXi","@id":"https:\/\/vaxxi.net\/log\/#\/schema\/person\/94a50a82939211f624b6bf7579d2f752"},"headline":"cum se fur\u0103 de pe carduri","datePublished":"2009-03-21T22:31:59+00:00","dateModified":"2009-03-22T11:40:32+00:00","mainEntityOfPage":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/"},"wordCount":2333,"commentCount":29,"image":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#primaryimage"},"thumbnailUrl":"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series-300x300.jpg","keywords":["banci","carduri","din lume","gadgets"],"articleSection":["din lume","gadgets"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/","url":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/","name":"cum se fur\u0103 de pe carduri","isPartOf":{"@id":"https:\/\/vaxxi.net\/log\/#website"},"primaryImageOfPage":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#primaryimage"},"image":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#primaryimage"},"thumbnailUrl":"http:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series-300x300.jpg","datePublished":"2009-03-21T22:31:59+00:00","dateModified":"2009-03-22T11:40:32+00:00","author":{"@id":"https:\/\/vaxxi.net\/log\/#\/schema\/person\/94a50a82939211f624b6bf7579d2f752"},"description":"Eh, valabil titlu, nu? din p\u0103cate, nu am spus \"cum s\u0103 furi\", ci \"cum se fur\u0103\". E o diferen\u0163\u0103. Cardul bancar (fie el de debit sau de credit) este din ce \u00een","breadcrumb":{"@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#primaryimage","url":"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series.jpg","contentUrl":"https:\/\/vaxxi.net\/log\/wp-content\/uploads\/2009\/03\/wireless-mobile-pos-s520-series.jpg","width":"500","height":"500"},{"@type":"BreadcrumbList","@id":"https:\/\/vaxxi.net\/log\/cum-se-fura-de-pe-carduri\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"VAXXiNET","item":"https:\/\/vaxxi.net\/log\/"},{"@type":"ListItem","position":2,"name":"cum se fur\u0103 de pe carduri"}]},{"@type":"WebSite","@id":"https:\/\/vaxxi.net\/log\/#website","url":"https:\/\/vaxxi.net\/log\/","name":"","description":"There must be some way out of here","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/vaxxi.net\/log\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/vaxxi.net\/log\/#\/schema\/person\/94a50a82939211f624b6bf7579d2f752","name":"VAXXi","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x","url":"https:\/\/secure.gravatar.com\/avatar\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/133cb32f29e4500787dc50b17f325e4d69b66c0126b8fedd4c15a8e850f06b21?s=96&d=mm&r=x","caption":"VAXXi"},"sameAs":["http:\/\/vaxxi.net\/log\/"]}]}},"_links":{"self":[{"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/posts\/1200","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/comments?post=1200"}],"version-history":[{"count":10,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/posts\/1200\/revisions"}],"predecessor-version":[{"id":1218,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/posts\/1200\/revisions\/1218"}],"wp:attachment":[{"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/media?parent=1200"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/categories?post=1200"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/vaxxi.net\/log\/wp-json\/wp\/v2\/tags?post=1200"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}