Live data from Hacker News

I Dialed a Wrong Number and Stumbled into International Phone Fraud

theatlantic.com

81–90 of 113 posts

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#81
post #41

Interesting to note that Phreaking is still very much alive and kicking. Most of the hackers I know gave up on Phreaking once hacking became popular in their circles. To me, there will always be something more fascinating about the telephone infrastructure.

Does it count as phreaking if you own the infrastructure?

Does it count as hacking if you own the network? I think it still does, the outcome is different but the methods are similar.

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#83
post #33

Earlier quoted context omitted.

I'm surprised this surprises anyone. This is common in brick and mortar stores as well. If you're processing credit cards online, you should be using some sort of fraud detection, like Maxminds MinFraud or something like it.

Then what the heck are we paying visa for?

Not fraud detection, I can assure you. Not even YC darling Stripe will help you much: https://www.google.com/amp/s/www.buzzfeed.com/amphtml/joseph...

Tl;dr you are on your own!

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#84
post #3

Long ago I did some contract coding for a company that processed donations via credit card. To my amazement, we had to watch out for people trying to donate small amounts to the Red Cross. Why? Because people with a list of possibly-valid credit card numbers would use small donations to brand-name charities as a way of validating credit cards. It made me long for some sort of professional association that kept track…

Should that have really been your concern? If every company that processes cards has to be fraud detecting experts, then they CC system is totally broken.

It does seem to be broken and yes, if you run an online store it seems we have to be somewhat informed about CC fraud.

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#86

Earlier quoted context omitted.

>Some of these services cannot be dialed via some VOIP providers (like Google Talk) for that reason. I always knew this was the case, but I was never really bothered by it. Both the law (see intercarrier compensation[1]) and the subsequent ban make sense. However I've recently run it to a rash of people who I can't call because my carrier and Google Voice block their numbers. Each of them has a Puerto Rican area code…

> Puerto Rico is a part of the United States PR is an unincorporated territory i.e. not part of the United States. https://en.wikipedia.org/wiki/Unincorporated_territories_of_...

Puerto Rico is not a state of the United States.

Puerto Rico is territory of and subject to the jurisdiction of the United States.

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#87
post #24

Earlier quoted context omitted.

Should that have really been your concern? If every company that processes cards has to be fraud detecting experts, then they CC system is totally broken.

As Harry Tuttle said, "We're all in it together." https://www.youtube.com/watch?v=xlCPkmb6cuY Which is why it pisses me off when a company deploys insecure software or hardware, claiming that network security is the customer's responsibility. So my home network should be reasonably secure, so that it doesn't become part of a bot net. Which means that I have to, or should, become at least knowledgeable enough to know…

This is why I get angry at people who say things like "mind your own business" or "that's not your job." It is, and it is. Anyone who doesn't like that can take their own advice.

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#88
post #65

Earlier quoted context omitted.

Have you heard of the "It's Lenny" bot? https://www.reddit.com/r/itslenny/ It's meant to keep telemarketers on the phone and waste their time, but it sounds like someone was using something similar for international phone fraud.

Goldmine. I just listened to a call where Lenny put the telemarketer on hold for a 2nd time to quiet his ducks. It's amazing how getting telemarketers to repeat themselves for the fifth time to a bumbling old man really takes the optimism out of their voice.

> Lenny put the telemarketer on hold for a 2nd time to quiet his ducks

That's all of them (if the marketer stays on long enough).

Re: I Dialed a Wrong Number and Stumbled into International Phone Fraud

#89
post #29

Earlier quoted context omitted.

Should that have really been your concern? If every company that processes cards has to be fraud detecting experts, then they CC system is totally broken.

>If every company that processes cards has to be fraud detecting experts, then they CC system is totally broken. That is 100% the case, at least in the US, for card-not-present (online, phone, etc) transactions. The credit card companies have zero liability for fraud in those cases...the liability is 100% on the merchant seller. In fact, the CC companies collect a non-trivial chargeback fee, so they arguably profit f…

It sounds like you've stumbled upon the next great way for credit card networks to make money! Charge for fraud detection, and if a customer doesn't want fraud detection, then do the chargebacks. I'm kind of surprised they don't do this already (or maybe they do?).

It's win-win either way for the credit card network.

Post reply on HN