Newsletter:

Skip Navigation LinksHome > News > Security > Scammers use charity donations to test card numbers

Scammers use charity donations to test card numbers

17 July 2007 02:00PM
Tags: scammers | charity | donations | test | card | numbers

Watch out for small unauthorised transactions.

Researchers at Symantec have warned that fraudsters are checking the validity of stolen credit card details by making small donations via charitable websites. 

The security company said that debit and credit card account holders should be on the lookout for unauthorised donations on their statements, as they could be a pre-cursor to far more serious fraud on the account.

Calum Macleod, European director at data vaulting specialist Cyber-Ark, said that this is especially worrying for business debit and credit card account holders, as they tend to have less control over card use than their personal counterparts.

"It is always difficult to vet business card activity, so I would urge all company card account holders to be on the look-out for all small transactions, especially innocuous looking donations, and check with the cardholder as to their validity," he said.

"The problem with these small but unauthorised transactions is that they almost always lead to larger unauthorised transactions coming through and these can be a major headache to resolve."

Macleod added that companies need to be extra careful when it comes to storing and transmitting card details.

"Companies should use a secure and encrypted system for storing details on the company IT systems, and always use encryption on the rare occasions when it becomes necessary to transmit the card details to a third party," he said.

"The Payment Card Industry DSS guidelines should be applied diligently by any organisation that accepts payment cards, regardless of whether or not they are obliged to do so.

"These scammers are not targeting charities out of the goodness of their hearts, but because these transactions are less likely to be picked up by banks' fraud detection systems as they are not regular transactions."

Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch



Product Reviews

Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Star Rating
On the surface, RoboForm Enterprise starts out looking like a single sign-on product, but that is just on the...
Star Rating
The Symark PowerBroker is a policy-driven, privileged access control application.
Star Rating
The Symark PowerKeeper is a hardened appliance. It comes with a sealed operating system that provides a...
iTnews 2009 Job Survey

TopTopics
(71641) -  top
(3771) -  microsoft
(3247) -  acma
(2725) -  company
(2508) -  telstra
(2254) -  data
(2189) -  terria
(2073) -  content
(1970) -  broadband
(1891) -  isp
(1859) -  internode
(1546) -  centre
(1509) -  linux
(1490) -  filtering
(1459) -  voip