Two-dimensional code payment hidden dangers, what are the two-dimensional code payment hidden? While QR code scanning technology facilitates public life, it also exposes some security risks. What are the risk points for the QR code payment commonly known as “sweeping�
Scanning the QR code looks convenient, but it can be a little negligent. In particular, the QR code may also become a channel for some people to illegally collect money. Zeng Teng is a college student in Jiangmen City, Guangdong Province. He used a mobile phone to scan the QR code on a shared bicycle in the dormitory downstairs. After scanning, the mobile phone automatically jumps to a payment page and asks to pay a deposit of 299 yuan.
“The other party is a payment account. At that time, I was a little anxious. I chose to confirm the payment without looking at it.†Zeng Teng said that he could not open the lock after paying, and the bicycle software did not show the deposit payment success. He only reacted, he may be cheated, and then carefully observe the QR code just scanned, and found that it is a sticker covering the QR code carried by the car itself.
"Two-dimensional code technology was originally an identification access technology, not specifically for e-commerce, so there is a lack of a mechanism to evaluate and identify QR code information to protect consumer security during the transaction process." Shanghai Jiaotong University Network Li Jianhua, dean of the School of Space Safety, said that it is difficult for consumers to correctly identify and verify the reliability of QR codes. Each QR code image looks ordinary, but it contains complex information, which is inconvenient for users to identify.
It is difficult to identify, making entry barriers low, easy to carry malicious codeIt seems to be a simple QR code, but the general public is difficult to identify. Why is there a security risk in the payment of QR code? What are the main points of risk?
The person in charge of the Payment and Settlement Department of the People's Bank of China said that the two-dimensional code payment process is divided into two stages: the generation and processing of payment instructions. The instruction processing stage is the same as the traditional bank card and ordinary Internet payment process. The risk points of QR code payment mainly focus on the two-dimensional code generation and recognition process in the instruction generation stage.
“Technical problems are an important reason for potential safety hazards.†Shen Wei, deputy director of the QR code security center of the Data Science Research Institute of Tsinghua University, said, “The QR code has a national standard. The QR code we use is an international standard. It is also the national standard of China. Although there are national standards in technology, there is no corresponding standard in the application of QR code. The open QR code is unsupervised, and the management of the QR code before payment is missing, and the supervision is lacking. The reason for this is the lack of technical means."
"Thinking about scanning code is convenient, I don't realize that the QR code itself may carry Trojan virus and fishing software." Mr. Wang, who lives in Wuhan, Hubei, once saw the advertisement of scanning the QR code to send wet wipes at the subway station. After that, automatically jump to a software download page and start downloading. That night, his mobile phone suddenly received a bank message, saying that he had a spending of nearly 4,000 yuan. Afterwards, it was found that the QR code scanned on the day had a malicious deduction virus.
Shen Wei said that the QR code is open, and the current entry of the QR code is low, so anyone can easily make it. If someone makes a malicious QR code, the user scans the code and accesses the fake link or fake website hidden behind the QR code, and can illegally defraud funds and steal identity information through the website. At present, the QR code market lacks security technology to control the scanning code of mobile phones. The QR code is in an unsupervised state at the application level, and there is no corresponding technical follow-up.
According to the relevant person in charge of the Payment and Settlement Department of the People's Bank of China, the main risk points for QR code payment include four aspects. One is the risk of visualizing the QR code. The criminals can easily steal funds from the mobile phone virus to steal or deceive the user's payment code, or post the forged merchant's receipt code to illegally obtain funds. Second, the risk of carrying malicious code. The QR code can be used not only for payment, but also for storing malicious program code, illegal links, etc., which is difficult to distinguish intuitively. The third is the risk of information interaction in one direction. Two-dimensional code payment can only achieve one-way verification by the initiator or the receiver. If the criminals hijack the communication network between the customer and the merchant, between the merchant and the background, intercept and maliciously modify the transaction information such as the order, it is easy to cause the user to lose money. . Fourth, the risk of scanning equipment is low. Two-dimensional code payment has low requirements for identification devices, and these devices generally have no security functions such as encryption and tampering, and are easily invaded by illegal elements.
It is a little difficult to protect rights, there are many links behind the payment, and the subject of responsibility is difficult to be clear.Recently, Chen An, the head of a private enterprise, leaked his payment institution's payment code under the confusion of the criminals. The other party instructed to send the number on the payment barcode. Chen An's payment account was immediately removed by 499 yuan. Chen An said that after looking for a customer service complaint, the payment institution only said the background review. If the other party's account is at risk, it will take the means of freezing the account. "But now months have passed, not only have the other account not been frozen, but the debts that have been defrauded have not come back."
"Two-dimensional code crime is concealed and contagious, but the electronic evidence is difficult to obtain, the relevant regulations are not perfect, and the rights of rights protection are high. It is difficult to clearly define the main body of production and distribution and the subject of responsibility, and increase the uncertainty of litigation. "Jing Shi Law Firm lawyer Zuo Shenggao believes.
A network security practitioner said that there have been many cases involving QR codes in recent years, including illegal access to citizen information, fraud, and theft. For the application of emerging technologies such as QR codes in many fields, relevant regulatory authorities have not yet issued more effective regulations and regulatory mechanisms.
Xiao Wei, a lawyer at Beijing Dacheng Law Firm, believes that when users encounter the security problem of QR code payment, they should first confirm which part of the payment has caused the problem and clarify the attribution of responsibility. Secondly, determine the person in charge or responsible agency of the corresponding vulnerability link. To file a complaint or report with the relevant party, the relevant party shall handle it specially; if it encounters an "illegal two-dimensional code" and no relevant party is responsible, it may report or sue to the relevant department, and decide how to deal with it according to the nature and extent of its behavior infringing its own rights and interests. . "The current rate of payment for QR code is high, but for ordinary users, it is really difficult to maintain their own rights," Xiao said.
Silicone Rubber Membrane Switches
Silicone Rubber Membrane Switches are a kind of keypad switch. It has a unique design and great performance. It has a high sensitivity, low power consumption, long life, and easy installation. It has good quality, and its price is very reasonable. The material used is silicon rubber, and it is environmentally friendly.
Silicone rubber keyboard is the most widely used switching technology. We offer reliability, long life and design flexibility. Electrically conductive rubber switches and keyboards were originally developed for the electronics industry to meet the growing demand for cheap split-second switches. Conductive rubber keyboards became popular because they looked and felt like traditional push-button switches, but without their inherent drawbacks.
We are manufacturer of Silicone Rubber Membrane Switches in China, if you want to buy Silicone Rubber Keyboard Membrane Switch, Silicone Rubber Keyboard Membrane Switch Button, Membrane Key Switch Cover please contact us.
Silicone Rubber Membrane Switches, Silicone Rubber Keyboard Membrane Switch, Silicone Rubber Keyboard Membrane Switch Button, Membrane Key Switch Cover
China Silicone Rubber Membrane Switches, Silicone Rubber Keyboard Membrane Switch
Silicone Rubber Membrane Switches,Silicone Rubber Keyboard Membrane Switch,Silicone Rubber Keyboard Membrane Switch Button,Membrane Key Switch Cover
KEDA MEMBRANE TECHNOLOGY CO., LTD , https://www.kedamembrane.com