On the security and privacy of Interac e-Transfers

10/03/2019
by   Fabian Willems, et al.
0

Nowadays, the Interac e-Transfer is one of the most important remote payment methods for Canadian consumers. To the best of our knowledge, this paper is the very first to examine the privacy and security of Interac e-Transfers. Experimental results show that the notifications sent to customers via email and SMS contain sensitive private information that can potentially be observed by third parties. Anyone with illegitimate intent can use this information to carry out attacks, including the fraudulent redirection of Standard e-Transfers. A recent news article supports this finding. Improvements to overcome these interconnected privacy and security problems are proposed and discussed.

READ FULL TEXT

page 8

page 18

page 19

page 20

page 21

page 22

page 27

page 28

research
08/25/2018

Formal Analysis of an E-Health Protocol

Given the sensitive nature of health data, security and privacy in e-hea...
research
08/28/2022

DP-PSI: Private and Secure Set Intersection

One way to classify private set intersection (PSI) for secure 2-party co...
research
03/11/2022

No free lunch theorem for security and utility in federated learning

In a federated learning scenario where multiple parties jointly learn a ...
research
07/10/2020

Privacy vs National Security

There are growing concerns and anxiety about privacy among the general p...
research
10/08/2019

New Problems and Solutions in IoT Security and Privacy

In a previous article for S P magazine, we made a case for the new int...
research
09/14/2021

What's in Your Wallet? Privacy and Security Issues in Web 3.0

Much of the recent excitement around decentralized finance (DeFi) comes ...
research
08/11/2020

Security Versus Privacy

Linear queries can be submitted to a server containing private data. The...

Please sign up or login with your details

Forgot password? Click here to reset