Doing good by fighting fraud: Ethical anti-fraud systems for mobile payments

06/28/2021
by   Zainul Abi Din, et al.
0

App builders commonly use security challenges, a form of step-up authentication, to add security to their apps. However, the ethical implications of this type of architecture has not been studied previously. In this paper, we present a large-scale measurement study of running an existing anti-fraud security challenge, Boxer, in real apps running on mobile devices. We find that although Boxer does work well overall, it is unable to scan effectively on devices that run its machine learning models at less than one frame per second (FPS), blocking users who use inexpensive devices. With the insights from our study, we design Daredevil, anew anti-fraud system for scanning payment cards that work swell across the broad range of performance characteristics and hardware configurations found on modern mobile devices. Daredevil reduces the number of devices that run at less than one FPS by an order of magnitude compared to Boxer, providing a more equitable system for fighting fraud. In total, we collect data from 5,085,444 real devices spread across 496 real apps running production software and interacting with real users.

READ FULL TEXT

page 5

page 6

research
12/28/2019

Real World Longitudinal iOS App Usage Study at Scale

Given the importance of understanding the interaction between mobile dev...
research
12/10/2021

An Interface between Legacy and Modern Mobile Devices for Digital Identity

In developing regions a substantial number of users rely on legacy and u...
research
09/14/2023

Commercial Anti-Smishing Tools and Their Comparative Effectiveness Against Modern Threats

Smishing, also known as SMS phishing, is a type of fraudulent communicat...
research
02/18/2020

Mind Your Weight(s): A Large-scale Study on Insufficient Machine Learning Model Protection in Mobile Apps

On-device machine learning (ML) is quickly gaining popularity among mobi...
research
04/01/2016

AuDroid: Preventing Attacks on Audio Channels in Mobile Devices

Voice control is a popular way to operate mobile devices, enabling users...
research
08/25/2022

Snooping on Snoopers: Logging as a Security Response to Physical Attacks on Mobile Devices

When users leave their mobile devices unattended, or let others use them...
research
09/27/2021

Can You See Me Now? A Measurement Study of Zoom, Webex, and Meet

Since the outbreak of the COVID-19 pandemic, videoconferencing has becom...

Please sign up or login with your details

Forgot password? Click here to reset