Skip to main content

Change ATM PIN immediately

Recently, many customers have got mails and messages from their banks to change the ATM PIN of their debit cards. We now know the reason, with reports suggesting 3.2 million accounts in five leading banks -State Bank of India, Axis Bank, ICICI Bank, HDFC Bank and YES Bank -- are compromised.
Bankers and cyber experts advise that ideally an ATM PIN should be changed every three to six months. Are they being overly cautious? Perhaps not. Several banks have already asked their customers to change their card security details and to stick to own ATM networks.
According to Reshmi Khurana, country head-operations for Kroll Advisory Solutions, there are reports of customers reporting transactions on their debit cards in China, which is how banks came to know of the breach of data security. A certain foreign payment services company, whose system is believed to have been compromised, is going for a forensic audit. “While it is not confirmed, the breach of data seems to be on account of a malware inserted in a white-label ATM network, which is why banks are cautioning their customers to stick to their own bank’s ATM network,’’ she says.
An ATM breach means the PIN numbers of not only that bank’s customers but all those who use that bank’s ATM network could be compromised.
For most customers, using the card at an ATM would seem a safe transaction, being monitored by the bank. However, not always so. About 70 per cent of ATMs in India are running on outdated Operating Systems (OS), making it easier for fraudsters to exploit.
“Microsoft withdrew all support to Windows XP about two years before. But, there are still many ATMs running on Windows XP OS, which makes them vulnerable to malware and fraud,’’ points out Harshil Doshi, consultant at Forcepoint, a data privacy and security company.
Most banks also use ATM machines of different vendors, due to which standardisation of networks and technology is not possible. This also opens the system to possible fraud, Doshi adds. Fraudsters have developed devices to infect all types of ATMs. “Once the malware is detected, the bank or payment services company will fix it but the problem is to identify the malware. While such incidents are common overseas, they are increasingly happening in India, too, as banks adopt more technology and transactions become digital. There is a need to be more pro-active and put the proper checks in place,’’ Khurana adds.
Operating expenses on digital security have to go up manifold, says Piyush Singh, Director at Accenture India. “While we have leapfrogged in digital technology, we still lag in digital security. Both banks and customers need to actively protect themselves. Going ahead, customers may ask a bank about its digital security and protection before opening an account and not only about services and rates. For banks, it is a question of their reputation,’’ he says.
With debit cards of 5 banks compromised, time to be very cautious while transacting. If possible, avoid non-bank ATMs WHAT CAN YOU DO?
Look at your debit card transactions for any discrepancies, such as smallticket transactions made at odd hours or from another place
Sign up for SMS alerts for all ATM transactions, to know any fraudulent transaction immediately
Change your PIN once in three months or at least once a year
Use different PIN numbers for different ATM cards, so that if one gets compromised, the others are safe
Never disclose your PIN number to anyone. Phishing calls might offer to renew your reward points, etc
Don’t disclose your PIN number to the shop attendant while swiping your card, even if it is a store you visit regularly
Don’t disclose your mobile number or e-mail ID to anyone. People do this to get updates about deals/discounts on services and products
Dont ever accept or click unknown websites or links that look suspicious. Also, educate children on this
Business Standard New Delhi,21th October 2016

Comments

Popular posts from this blog

Govt’s gamble on GST cuts: What do the bond and currency markets signal?

  It’s not just humans who suffer from cognitive biases; markets do too. Interestingly, different financial markets exhibit distinct biases, each interpreting events through its own prism of prejudice. Take the recent announcements on GST reforms: equity markets have chosen to view them through the lens of growth, while bond and currency markets are focusing on potential macroeconomic risks—fiscal pressures and current account challenges. So, which lens captures the true pulse?Equity markets may be right in expecting GST reforms to revive consumption, which has remained lacklustre for a while. But the key question remains—will this revival come at the cost of broader macro stability?It is well known that consumption stocks have rallied since the GST rationalisation announcement. But what about bond markets? What signals are they sending since this rejig was announced from the ramparts of the Red Fort?The signs aren't encouraging. Bond prices have slumped and yields have surged sinc...

Luxury carmakers urge clarity on GST rates to boost festive season sales

  A clear picture regarding new GST rates at the earliest will help the overall auto industry, including the luxury car segment, to regain momentum in the ongoing quarter, which generally sees enhanced sales on account of the festive season.The high-powered GST Council, chaired by Finance Minister Nirmala Sitharaman, will meet on September 3-4 to discuss moving to a two-slab taxation.In an interaction with PTI, BMW Group India President and CEO Hardeep Singh Brar said the recent speculation about the change in GST rates has caused uncertainty in the minds of consumers.Consumer interest and demand is strong, but they (prospective buyers) have adopted a wait-and-watch approach, and this delayed decision-making is impacting new vehicle sales at a certain level, he noted."Expediting clarity on GST rates is essential to get back to speed and ensure the auto sector's contribution to economic growth during this quarter is robust," Brar stated.He also hoped that the sustainable p...

Sebi proposes tighter norms for green bond third-party reviewers

  Sebi on Friday said it has proposed to tighten the norms to appoint independent third-party reviewers or certifiers for green debt securities to align them with requirements for other ESG-linked bonds.In a draft circular, Sebi said that the current norms for green bonds, introduced in February 2023, lack detailed requirements around reviewer independence, conflict of interest mitigation, and disclosure standards that are now in place for other ESG-linked securities under a June 2025 circular.The regulator's latest proposal seeks public comments on a revised framework that would bring parity by incorporating comprehensive criteria for third-party certifiers of green bonds on non-convertible securities.Under the proposed norms, issuers of green debt securities will need to appoint reviewers who are independent of their management, directors, and key managerial personnel. These reviewers will be remunerated in a way that prevents any conflicts of interest and possess relevant expert...