TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Japan's 7-Eleven payment app gives easy access to scammers

56 pointsby subsubsubalmost 6 years ago

7 comments

sdrothrockalmost 6 years ago
One of the scarier things about this is that 7-Eleven isn&#x27;t a convenience store here -- it&#x27;s a retail chain owned by 7&amp;i Holdings and closely associated with Seven Bank.<p>They also provide various things like health, car, and automobile insurance.<p>So you&#x27;d really expect a conglomerate of this size to have financial things down.
评论 #20361664 未加载
评论 #20361505 未加载
评论 #20362252 未加载
评论 #20361481 未加载
lifthrasiiralmost 6 years ago
According to Katsunori Shigeta [1], 7-Eleven belatedly removed the target email address... using CSS (`display:none`). The summoned official had also said that one has no knowledge about the multi-factor authentication [2].<p>[1] <a href="https:&#x2F;&#x2F;twitter.com&#x2F;shigezo&#x2F;status&#x2F;1146700322460463104" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;shigezo&#x2F;status&#x2F;1146700322460463104</a><p>[2] <a href="https:&#x2F;&#x2F;twitter.com&#x2F;shigezo&#x2F;status&#x2F;1146944325684621312" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;shigezo&#x2F;status&#x2F;1146944325684621312</a> (the initial tweet had an error on this)
ga-vualmost 6 years ago
The BBC references a ZDNet story, but never links to it. Here it is: <a href="https:&#x2F;&#x2F;www.zdnet.com&#x2F;article&#x2F;7-eleven-japanese-customers-lose-500000-due-to-mobile-app-flaw&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.zdnet.com&#x2F;article&#x2F;7-eleven-japanese-customers-lo...</a><p>There&#x27;s also been two arrests made, per ZDNet. Source: <a href="https:&#x2F;&#x2F;www.sankei.com&#x2F;affairs&#x2F;news&#x2F;190704&#x2F;afr1907040036-n1.html" rel="nofollow">https:&#x2F;&#x2F;www.sankei.com&#x2F;affairs&#x2F;news&#x2F;190704&#x2F;afr1907040036-n1....</a>
a012almost 6 years ago
Well, this thing happens frequently when every _websites_ want to throw their &quot;apps&quot; to the customers. But their actual &quot;apps&quot; are out-sourced by cheap MSP somewhere. That explains the lack of security effort.
gruezalmost 6 years ago
&gt;The 7pay mobile app was designed to show a barcode on the phone&#x27;s screen when customers reach the 7-Eleven cashier counters. The cashier scans the barcode, and the bought goods are charged to the user&#x27;s 7pay app and the customer&#x27;s credit or debit cards that have been saved in the account.<p>Why is this app even needed? Is EMV contactless not a thing in Japan? Did 7&#x2F;11 want to join the mobile pay bandwagon?
评论 #20362035 未加载
评论 #20362907 未加载
darkteflonalmost 6 years ago
Writing software is easy.
_pmf_almost 6 years ago
Japan has an effective justice system and police force.