Уровень 0 · материалов: 3
В кластер входят документы, описывающие системные недостатки протоколов проверки платежей (таких как 3DS), и не входят документы о вредоносном ПО, RFID-скимминге или физическом взломе терминалов.
Общие признаки: отсутствие протокола 3D Secure, фрод с банковскими картами, бреши в безопасности платежных платформ, кардинг
Группа выше: Безопасность платёжных данных
Смысл: The main idea is that a lack of consistent security protocols (specifically 3D Secure) in the Yandex.Direct mobile app creates a dangerous loophole that allows fraudsters to easily spend stolen credit card funds on advertising.
Yandex.Direct's mobile app allows credit card payments without 3D Secure verification, enabling fraudsters to easily use stolen cards to fund scam advertisements.
Смысл: The main idea is that high-growth digital platforms often sacrifice rigorous security (like 3DS) for the sake of user conversion, creating systemic loopholes that criminals use for carding and money laundering through circular transactions.
Cybercriminals exploit the lack of strict payment verification on major booking and food delivery platforms to launder money using stolen credit cards.
Смысл: The main idea is that the Mir payment system's lack of support for 3DS in recurring payments makes merchants vulnerable to fraud, as customers can easily reverse charges without consequence, effectively creating a 'way not to pay' for services.
The Mir payment system's recurring payment rules allow users to easily reclaim funds by claiming fraud, leaving merchants unprotected due to the lack of 3DS authentication for repeat charges.