Banks attempt to suppress maths student’s exposé of chip and pin
Source: vigilantcitizen.com
Richard Garner
The Independant
Cambridge computer scientists have become embroiled in angry exchanges with Britain’s banks and credit card lenders, accusing them of bullying and trying to “censor” a PhD student who was exposing flaws in chip-and-pin machines.
A leading Cambridge academic has now written to bankers’ representatives demanding that they stop pressing for the removal of a student’s doctorate work from the web.
Professor Ross Anderson, from Cambridge University’s Computer Laboratory, has previously researched glitches in chip-and-pin banking that allow withdrawals to be made from accounts without needing to know the holder’s PIN. As part of his thesis work, one of his students, Omar Choudary, exposed how easy it was to make such a withdrawal.
Then the UK Cards Association, a trade body representing leading banking organisations, approached the university asking it to remove the thesis from his website, which is accessible through a university site.
Melanie Johnson, who chairs UKCA, argued that the web publication “oversteps the boundaries of what constitutes reasonable disclosure” by giving too much detail on how the chip-and-pin system could be breached.
Professor Anderson said her request “showed a misconception of what universities are and how we work… You seem to think that we might censor a student’s thesis – which is lawful and already in the public domain – simply because a powerful interest group finds it inconvenient,” he said.
“Cambridge is the university of Erasmus, of Newton and of Darwin. Censoring writings that offend the powerful is offensive to our deepest values.”
He added: “I have authorised the thesis to be issued as a computer laboratory technical report. This will make it easier for people to find and to cite, and will ensure that its presence on our website is permanent.” He rejected her allegation that the student was encouraging fraud by giving details of a blueprint for a device which is alleged to exploit a loophole in the security of chip-and-pin technology.
In her letter, which was sent to the university’s head of communications, Ms Johnson also claimed that the police had expressed concern that the student was “allowed to falsify a transaction … without first warning the merchant”.
Professor Anderson said the transaction had been carried out with the consent of the card owner, adding: “At no time was there any intent to commit fraud; the [card owner's] account was debited in due course … and the merchant [from whom he had purchased goods] was paid.”
He added: “You complain that the work may undermine public confidence in the payments system. What will support confidence in the payments system is evidence that the banks are frank and honest in admitting weaknesses when they are exposed, and diligent in affecting the necessary remedies.
“Your letter shows that … your member banks do their lamentable best to deprecate the work of those outside their cosy club and indeed to censor it.”
Professor Anderson told The Independent: “Everyone in the university is behind us on this one. The thesis was on Omar Choudary’s website and there is no way we can allow this to be censored.”
He added that only Barclays had taken action to rectify the problem since the potential for abuse was exposed by researchers on a BBC Newsnight programme several months ago.
No one was available for comment at the UK Cards Association yesterday. The organisation allows membership to anyone responsible for at least 5 per cent of credit transactions.
Source: vigilantcitizen.com
Source:
Anyone can join.
Anyone can contribute.
Anyone can become informed about their world.
"United We Stand" Click Here To Create Your Personal Citizen Journalist Account Today, Be Sure To Invite Your Friends.
Please Help Support BeforeitsNews by trying our Natural Health Products below!
Order by Phone at 888-809-8385 or online at https://mitocopper.com M - F 9am to 5pm EST
Order by Phone at 866-388-7003 or online at https://www.herbanomic.com M - F 9am to 5pm EST
Order by Phone at 866-388-7003 or online at https://www.herbanomics.com M - F 9am to 5pm EST
Humic & Fulvic Trace Minerals Complex - Nature's most important supplement! Vivid Dreams again!
HNEX HydroNano EXtracellular Water - Improve immune system health and reduce inflammation.
Ultimate Clinical Potency Curcumin - Natural pain relief, reduce inflammation and so much more.
MitoCopper - Bioavailable Copper destroys pathogens and gives you more energy. (See Blood Video)
Oxy Powder - Natural Colon Cleanser! Cleans out toxic buildup with oxygen!
Nascent Iodine - Promotes detoxification, mental focus and thyroid health.
Smart Meter Cover - Reduces Smart Meter radiation by 96%! (See Video).
So the student determined that the government didn’t need a pin to steal all of our money? How is that news?
When at work at my employment I tell everyone who uses one, about the PayPass card,,,what os jokingly called a “PayPass” in North America and Canada how there is a real danger with the use of the card with “Paypass” technoligy.
My line goes something like this. “You know how this card can work against you if you lose it or give it to someone to use, to say, buy gas or anything with it?”
“No. Tell me what you mean”.
If you lose it say on the way to your car and someone picks it up and knows what it is they found, they can jump in their car and drive to a gas station where paypass tech…. is in operation and …tap the card on the reader and fill up their car,,, and they don’t even have to know what your secret PIN number is, because it never has to sak for it. You may have just had 60 dollars worth of gas charged to you account and…. just try to prove to Mastercharge or Visa that the purchas was not made but you..
They, the one with your PayPass card, woun’t be able to use it at a ATM or get money from a bank or buy something at a BIG BOX store because they will have to know the PIN number for the card.. you lost on the trip from the last time you used it to you car or home..
There is more, but I think you “Get my Meaning”
Protect you PIN and Your PayPass card.
Larry from Toronto.