Live data from Hacker News

A simple solution to credit card fraud, and why you won't see it any time soon

blog.rongarret.info

31–40 of 130 posts

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#31
There's a simpler explanation to why merchants don't charge extra for credit card purchases: The cost of accepting cash is not zero.

The logistics of drop safes and daily deposits plus losses due to counterfeiting, robberies and pilfering can cost a similar amount to the 3-4% credit card fees.

That's why merchants aren't grumbling too much.

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#32
post #22

I've thought about this "problem" and decided there's no problem. You're solving a non-problem if you try to solve credit card fraud. The reason we don't deal with credit card fraud is that there are no consequences for being a victim, for any definition of victim. If the victims had consequences, then there would be demand for action. But there is none. Further, because there are no consequences, the cost to solve c…

You are being downvoted because it is generally understood that there are indeed rather serious consequences for victims of credit card fraud[1].

If you have a viewpoint that is polar opposite to how everybody else understands something, maybe it's your obligation to explain it better. And saying that you're in some form of authority to speak about the subject isn't an explanation.

[1] http://en.wikipedia.org/wiki/Credit_card_fraud

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#33
post #25

Some banks will let you generate single-use credit card numbers (e.g., Chase). So you have one CC # for the power company, a different one for Netflix, and so forth. Then if e.g., Netflix gets hacked you can just cancel that one card number. You can also generate cards with hard spending limits, cards that only work for a specific merchant, etc. And of course you can delete them anytime. Its a pretty good system. Tha…

Isn't it pretty easy to envision a system that puts the control directly with the user? The reseller requests an amount due, you punch that in into your credit card device, following it up with a pin code and you can now verify that payment..

But I don't think anyone wants to give customers this wallet-like capability..

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#34
In a rational world where declaring that government should be responsible for the foundational services that enable civil society the universal payment transaction service would be operated by the government as a public utility.

In this hypothetical rational world, you would go to the government office when you needed to open a new payment account to make or receive payments. You would show proof of identity, and receive a duly signed certificate bound to a a hardware token of a standard type that you could then use to make transactions both on and offline. Since everybody would use the same systems there would be no questions about if someone could pay you.

But in this world, government securing the currency is regarded as an outmoded and dangerous idea, unless it's a bailout...

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#35

It's easy to envision a future without this inherent problem -- it's PayPal, it's Dwolla, or any other service where payments are pushed instead of pulled. If you pay someone with PayPal, online or off, you don't leave them with anything they (or the hacker that steals the store's DB) can use to charge you again in the future. For recurring payments, in the background all you're giving out are tokens you can revoke a…

The interesting case will be POS situations where a customer wishes to use PayPal but they don't have a smartphone. In which case they will need access to a machine to send the payment. In that case they need access to a browser to interact with the PayPal site. In this scenario the customer's data (their username/password for PayPal) is being exposed.

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#36
post #32
post #22

I've thought about this "problem" and decided there's no problem. You're solving a non-problem if you try to solve credit card fraud. The reason we don't deal with credit card fraud is that there are no consequences for being a victim, for any definition of victim. If the victims had consequences, then there would be demand for action. But there is none. Further, because there are no consequences, the cost to solve c…

You are being downvoted because it is generally understood that there are indeed rather serious consequences for victims of credit card fraud[1]. If you have a viewpoint that is polar opposite to how everybody else understands something, maybe it's your obligation to explain it better. And saying that you're in some form of authority to speak about the subject isn't an explanation. [1] http://en.wikipedia.org/wiki/Cr…

Updated: Apologies, I see now that the original comment specifically states there are no victims, period... even merchant victims.

Incorrect. There are no serious consequences for the victims of credit card fraud (unless you consider the victims to be the merchants).

When fraud takes place, the credit card company removes the bill from your statement. Then they take the money back that they sent to the merchant. The merchant is left holding the bag. Whatever they sold is now gone, and they have no money to cover the cost of that good. The merchants bear the entire risk of credit card fraud.

This is why it makes no sense that credit card companies even threaten to charge merchants higher rates if they have more fraud. Merchants with high chargebacks get beaten down in multiple ways. First there's a chargeback fee. Then they raise your processing rates. AND you still lose out on your goods that were stolen.

(Technically I suppose if the fraud is big enough, the merchant could be insolvent in which case the credit card companies bear the burden, but this is certainly an exception).

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#37
post #22

I've thought about this "problem" and decided there's no problem. You're solving a non-problem if you try to solve credit card fraud. The reason we don't deal with credit card fraud is that there are no consequences for being a victim, for any definition of victim. If the victims had consequences, then there would be demand for action. But there is none. Further, because there are no consequences, the cost to solve c…

The merchants are the victims, and the consequences include lost payments, lost merchandise, chargeback fees, lost cashflow when the merchant account provider starts requiring a risk reserve, and lost cashflow when their account gets terminated for exceeding the acceptable chargeback ratio. It can even lead to loss of the entire business. How is that not a consequence of credit card fraud?

This is true, although I think most people generally assume the "victim" in the case of credit card fraud is the individual whose card number is stolen.

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#38

There is no solution for credit card fraud because the credit card companies do not pay the bulk of the fraud that happens. I have been the subject of fraud both as a merchant and as a consumer and in both cases i was the one that paid.

Can you elaborate on how you had to pay in the case when you were a consumer and suffered fraud? As a consumer and merchant, I've only ever had to pay when I'm a merchant.

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#39
post #22

I've thought about this "problem" and decided there's no problem. You're solving a non-problem if you try to solve credit card fraud. The reason we don't deal with credit card fraud is that there are no consequences for being a victim, for any definition of victim. If the victims had consequences, then there would be demand for action. But there is none. Further, because there are no consequences, the cost to solve c…

I've had my card fraudulently used and I've also been on the merchant side of fraudulent transactions.

On the consumer side, I had to waste time ringing the bank, going through the chargeback process, getting a new card, not be able to use the card for a little while, etc.

On the merchant side, you waste time fighting the chargeback, and then if the chargeback goes through, you lose both the money and the goods.

So when you say there are no consequences for victims, it doesn't make sense to me... Could you elaborate?

Re: A simple solution to credit card fraud, and why you won't see it any time soon

#40
post #14

To expand upon the author's idea, the problem is not just that credit card data is reusable, but that possession of credit card data amounts to permission to charge any arbitrary amount to it . Not legal permission, mind you, but permission in the sense that the infrastructure lets you do it, and you have to sort out the consequences through social/legal channels after the fact. Not only should future payment systems…

Dwolla's entire network is based on pushing the transaction rather than pulling. You can send request, but ultimately the money doesn't move until send it with your pin.
Post reply on HN