NFC/RFID Sleeves - PART 2: Real World Data and Product Testing
Technically U28 Maalis

NFC/RFID Sleeves - PART 2: Real World Data and Product Testing

Key Takeaways:

RFID skimming accounts for less 0.01% of credit card fraud

UK reported zero confirmed cases (2023-2024)

Criminals use easier, more profitable methods (data breaches, phishing, buying stolen data)

Passports have built-in RFID shielding when closed

Car key fobs ARE vulnerable to relay attacks (legitimate concern)

RFID-blocking products work but quality varies

Aluminum foil works but is impractical.

Contactless payment more secure than traditional cards in many ways

Fraud Statistics (Ranked by Frequency):

Data breaches (40-50% of fraud by dollar amount)

Card-not-present/online fraud (30-40%)

Physical card theft (10-15%)

ATM/gas pump skimmers (5-10%)

Phishing/social engineering (significant but hard to quantify)

RFID skimming (less than 0.01% - essentially nonexistent)

Real Threats vs. Marketing:

Marketing: "Digital pickpockets stealing card data remotely"

Reality: Zero confirmed cases in UK, no US law enforcement warnings

Why criminals don't do this: Too difficult, too risky, too limited reward

What criminals actually do:

Buy stolen data for $5-50 online

RFID Applications Assessed:

Credit cards: Built-in security sufficient, blocking unnecessary

Passports: Built-in shielding when closed, covers optional for peace of mind

Access badges: Low risk, cloning no better than tailgating

Transit cards: Low risk, balance info not useful to criminals

Car key fobs: HIGH RISK, Faraday bags recommended

Product Testing:

Simple test: Try to tap through wallet/sleeve at terminal

Works = not blocking, doesn't work = blocking effective

Quality varies widely among products

No US certification standards

Aluminum foil effective but impractical

Contactless Security Advantages:

Tokenization (not real card number)

Dynamic cryptograms (one-time codes)

Transaction limitsMerchant never gets full card number or CVV

More secure than handing card to waiter

Coming in Part 3:Practical recommendations by scenario

When RFID blocking makes sense (rare cases)

What security measures actually matter

Psychology of security theater

Industry response and future outlook

Clear yes/no guidance for consumers

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(265)

The Confidence Gap: Why Executives Think AI Agents Are Secure (And Why They're Wrong)

The Confidence Gap: Why Executives Think AI Agents Are Secure (And Why They're Wrong)

The Confidence Gap: AI Agents and the Security Crisis Nobody Is Talking AboutEighty-two percent of executives feel confident that their existing AI agent policies are enough to keep their organization...

8 Elo 18min

Seeing Is No Longer Believing: How Deepfake Fraud Targets Businesses and Families

Seeing Is No Longer Believing: How Deepfake Fraud Targets Businesses and Families

What if the voice on the phone sounds exactly like your boss, your bank, or someone in your family — but it isn’t them?In this episode of Technically U, we break down Deepfake Fraud and why it has bec...

31 Heinä 23min

The AI Criminal Playbook: How Cybercrime Changed Forever in 2026

The AI Criminal Playbook: How Cybercrime Changed Forever in 2026

The next generation of cybercrime may not come from a hacker typing code in a dark room.It may come from someone using AI to generate phishing emails, clone voices, create fake identities, manipulate ...

24 Heinä 16min

RiskRecon Explained: The Cybersecurity Credit Score Companies Use to Judge You

RiskRecon Explained: The Cybersecurity Credit Score Companies Use to Judge You

What if a company you've never heard of is already influencing whether customers do business with you?In this episode of Technically U, we break down RiskRecon, the cybersecurity risk-rating platform ...

19 Heinä 9min

Vulnerability Management Explained: Find, Prioritize & Patch Before Hackers Strike

Vulnerability Management Explained: Find, Prioritize & Patch Before Hackers Strike

Right now, there may be vulnerabilities sitting inside your organization’s systems — and attackers may already be looking for them.In this episode of Technically U, we break down Vulnerability Managem...

12 Heinä 19min

HSTS: The Invisible Security Header Protecting Billions

HSTS: The Invisible Security Header Protecting Billions

Every time you visit your bank, check your email, log into a shopping site, or open a secure web app, there’s an invisible browser protection working behind the scenes: HSTS — HTTP Strict Transport Se...

3 Heinä 10min

The DNS Encryption War: Why Privacy Tools and Security Teams Are Fighting Over DoH

The DNS Encryption War: Why Privacy Tools and Security Teams Are Fighting Over DoH

DNS over HTTPS (DoH) encrypts the internet's phonebook—and it's breaking traditional network security. Here's what IT professionals need to know about DoH in 2026, why enterprises are concerned, and h...

20 Kesä 28min

Container Security Explained: Kubernetes, Docker & Cloud Native Threats

Container Security Explained: Kubernetes, Docker & Cloud Native Threats

🔐 Are your containers actually secure… or just assumed to be?In this episode of Technically U, we take a deep, structured dive into Container Security, breaking down how modern environments built on ...

14 Kesä 9min