Security Analysis of Near-Field Communication (NFC) Payments

04/24/2019
by   Dennis Giese, et al.
0

Near-Field Communication (NFC) is a modern technology for short range communication with a variety of applications ranging from physical access control to contactless payments. These applications are often heralded as being more secure, as they require close physical proximity and do not involve Wi-Fi or mobile networks. However, these systems are still vulnerable to security attacks at the time of transaction, as they require little to no additional authentication from the user's end. In this paper, we propose a method to attack mobile-based NFC payment methods and make payments at locations far away from where the attack occurs. We evaluate our methods on our personal Apple and Google Pay accounts and demonstrate two successful attacks on these NFC payment systems.

READ FULL TEXT

page 2

page 5

page 8

research
07/17/2022

Mobile Security for the modern CEO: Attacks, Mitigations, and Future Trends

Todays world is digital, global, and interconnected and mobile devices a...
research
11/19/2022

Investigating the Security of EV Charging Mobile Applications As an Attack Surface

The adoption rate of EVs has witnessed a significant increase in recent ...
research
02/14/2022

Analog Physical-Layer Relay Attacks with Application to Bluetooth and Phase-Based Ranging

Today, we use smartphones as multi-purpose devices that communicate with...
research
06/27/2020

Software Enabled Security Architecture for Counteracting Attacks in Control Systems

Increasingly Industrial Control Systems (ICS) systems are being connecte...
research
01/21/2020

You foot the bill! Attacking NFC with passive relays

Imagine when you line up in a store, the person in front of you can make...
research
11/09/2021

Ghost Peak: Practical Distance Reduction Attacks Against HRP UWB Ranging

We present the first over-the-air attack on IEEE 802.15.4z High-Rate Pul...
research
03/05/2019

Profitable Double-Spending Attacks

Our aim in this paper is to investigate the profitability of double-spen...

Please sign up or login with your details

Forgot password? Click here to reset