Credit-Land.com offers best credit card applications online!
News about Credit Cards
Credit Cards News
Credit Card Applications > Credit Card News > Google Wallet Makes Certain User Information An Easy Target For Hackers

Google Wallet Makes Certain User Information An Easy Target For Hackers

By Lauren Palmer, December 17, 2011
Google Wallet Makes Certain User Information An Easy Target For Hackers

Experts at forensic security company viaForensics made a startling discovery about Google Wallet recently. The revolutionary mobile app that allows users to store credit card information and make payment transactions simply by tapping their mobile phone at the point of sale stores a vast amount of the cardholder`s personal information in an unsecure format. With the exception of the actual credit card number and the CVV number - the 3 or 4 digit number found on the front or back of a card that proves to merchants during CNP sales that the buyer actually has the card in his or her possession - all other data stored is unencrypted. The "other data" in question includes names, addresses, credit card limits, transaction times, PIN numbers, etc. This makes an alarming amount of information available for hackers to help themselves to with relative ease. 

The chief investigative officer at viaForensics responsible for the discovery is Andrew Hoog. He performed two very basic tests on Google wallet using a rooted Sprint Nexus S mobile device to try out its security and the app failed on both counts.

Firstly, the app caches data directly on the user`s phone. If the user were to lose the phone or have it stolen, whoever were to retrieve it would be able to access the data. Secondly, the majority of the data that is stored is not encrypted. While Google Wallet keeps credit card account numbers along with the corresponding CVV codes on an encrypted portion of the NFC chip, the rest of the information is left unencrypted. Some of the information is even recoverable upon deletion of the transaction, such as the last four digits of the account number, the card`s expiration date and the name imprinted upon the card.

Fixes suggested by Hoog are to either encrypt all the data or else not to cache data on the mobile device. Upon his alarming security discoveries he spent a week with Google discussing his concerns regarding Google Wallet`s vulnerabilities.

"While it`s nearly impossible to provide 100 percent secure systems, it`s pretty attainable to developed reasonably secure systems," said Hoog, according to PCMag.

Lauren Palmer

Lauren Palmer is a freelance writer who is a regular contributor to a variety of online and print publications. Although she has much to say about many subjects, she specializes in topics pertaining to personal finance. She holds a bachelor’s degree from NYU in journalism.

Leave a Reply

TOP BEST CREDIT CARDS
Discover® Card
Credit
History
Excellent / Good
0% intro APR on purchases and balance transfers for 15 months, then the variable standard purchase APR of 10.99% - 20.99%.±
5% Cashback Bonus® in categories that change like gas, restaurants, department stores and more. Limitations apply.±
Capital One®
Credit
History
Average / Limited
$0 intro annual fee for the first year; $19 after that.
Image Card - personalize your card with an image of your choice.
(866) 554-0808
Credit One® Bank
Credit
History
Fair Credit
Get Pre-Qualified in less than a minute.
Includes online access to your monthly Credit Score.
See all popular credit cards
± Click apply to view rates, fees, rewards, limitations and other important information.
Help Us Improve!

We rely on the feedback from our customers like you in order to improve our site.

Free Services Credit Cards Help Center Tell a friend about Credit Cards Credit Cards News Credit Cards eZine Credit Education

Special Credit Card Offer

Capital One® See If You´re Pre-Qualified

Credit Card Applications All content. Copyright © 1999-2012.
Credit-Land.com, Inc.
All rights reserved.