Security News
Identity fraud affects around one in 15 people in the US and has never been higher in the UK. The fraudsters have built their own subculture as new tools and channels lower the bar for entry. While it seems surprising, there is a way to turn identity fraud into a positive customer experience.
A federal court has ruled that violating a website's terms of service is not "Hacking" under the Computer Fraud and Abuse Act. Leading job sites have terms of service prohibiting users from supplying fake information, and the researchers worried that their research could expose them to criminal liability under the CFAA, which makes it a crime to "Access a computer without authorization or exceed authorized access."
Last week we wrote about a WhatsApp hoax that was spreading widely, warning people to look out for a cybersecurity catastrophe that simply wasn't going to happen. The City of London Police in turn link you to UK National Fraud and Cyber Crime Reporting Centre's ActionFraud website, where you will see that the "City of London Police hasn't issued any alerts about fake messages from Danske Bank.".
Just as law-abiding people have been discussing COVID-19, so too have criminals on the dark web. In a report published last week, Sixgill discussed the specific topics that the coronavirus has been generating on the dark web.
Federal investigators in Russia have charged at least 25 people accused of operating a sprawling international credit card theft ring. In a statement released this week, the Russian Federal Security Service said 25 individuals were charged with circulating illegal means of payment in connection with some 90 websites that sold stolen credit card data.
The survey reported a 347% increase in account takeover and 391% rise in shipping fraud attempts globally against its online retail customers from 2018 to 2019. "With so many reported data breaches, it's not just about if your account will be hijacked, it's about when," said Melissa Gaddis, senior director of customer success for TransUnion Fraud & Identity Solutions.
More than 50 Android apps on the Google Play Store-most of which were designed for kids and had racked up almost 1 million downloads between them-have been caught using a new trick to secretly click on ads without the knowledge of smartphone users. While the offending apps have been removed from Google Play, the find by Check Point Research is the latest in an avalanche of ad fraud schemes that have plagued the app storefront in recent years, with malware posing as optimizer and utility apps to perform phony clicks on ads.
Social distancing has affected consumer shopping patterns, and a TransUnion survey found that 22% of Americans said they've been targeted by digital fraud related to COVID-19. Consumers are greatly reliant on online retailers during the coronavirus pandemic, and businesses must be armed to combat fraud, while making sure the company's web and mobile platforms are bug-free.
San Francisco, Calif-based Arkose Labs has raised $22 million in a Series B funding round led by the Microsoft venture fund, M12. Existing investors PayPal and USVP participated, bringing the total raised so far to $36.5 million. Arkose Labs provides a fraud detection and prevention platform.
The situation is more complex than simply devoting a larger share of the budget and focus to fraud prevention and security: as companies find new ways to engage with their customers through new features and touchpoints, criminals find new vulnerabilities to exploit. Research and experience have showed that fraud mitigation and cutting-edge security strategies can go hand-in-hand with - and even drive - innovation, customer engagement and a great user experience.