PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

Square Security Weaknesses Redux

By Mercator Advisory Group
August 8, 2011
in Analysts Coverage
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
EMV chip card

Smartphone with finance and market icons and symbols concept

As if we didn’t know this already, the good folks at the Black Hat Conference in Las Vegas last week demonstrated another way to fool Square software into taking a payment. It’s a technical hack, one that basically allows a bad actor to create a sound file of a magstripe (it is audio tape after all) and play that sound file into a Square-enabled smartphone’s audio input jack. The Square software interprets it as a swipe from a Square reader.

This new weaknesses is neither really new or much of a threat. As we’ve known for months, it’s so much easier using Square as a card skimmer. There’s plenty of software out there to capture what the Square reader reads: the magstripe payment data. Making a counterfeit card is just one step away.

At February’s Visa Security Summit, Square announced that it will be shipping a reader with an encrypting head this summer. We’re halfway through summer with no word on its availability. It’s hard to imagine that Square can afford to offer a free encrypting reader. That step requires more sophisticated hardware. Charging for the reader is an “out of model” experience for Square. From a strictly security point of view, the company should replace all of its current readers and reject unencrypted transactions thereafter. While it’s arguable that that is necessary from a risk and business perspective, the company should get those encrypting readers fielded ASAP.

Click here to read the story.

0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: Mobile Payments

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    open banking

    Open Banking Has Begun to Intrude on Banks’ Customer Relationships

    December 5, 2025
    conversational payments

    Conversational Payments: The Next Big Shift in Financial Services  

    December 4, 2025
    embedded finance

    Inside the Embedded Finance Shift Transforming SMB Software

    December 3, 2025
    metal cards

    Metal Card Magnitude: How a Premium Touch Can Enthrall High-Value Customers

    December 2, 2025
    digital gift cards

    How Nonprofits Can Leverage Digital Gift Cards to Help Those in Need

    December 1, 2025
    stored-value prepaid

    How Stored-Value Accounts Are the Next Iteration of Prepaid Payments

    November 26, 2025
    google crypto wallet, crypto regulation

    Crypto Heads Into 2026 Awaiting Its ‘Rocketship Point’

    November 25, 2025
    Merchants Real-Time Payments, swipe fees, BNPL

    The 3 Key Trends That Will Shape Merchant Payments in 2026

    November 24, 2025

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2024 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result