February 7, 2017 By Mark Samuels 2 min read

Chip-and-PIN cards were introduced in the U.S. in October 2015. In response to increased security in retail stores, cybercriminals have moved online and e-commerce fraud has risen accordingly, according to Computerworld.

The latest “Global Fraud Attack Index” from PYMNTS revealed that U.S. e-commerce fraud has risen 42 percent since the fourth quarter of 2015. Retailers must be alert to this increase and focus on helping consumers stay safe online.

Building Evidence

According to the study, the total number of dollars at risk from online retail fraud rose 55 percent from the second quarter of 2015 to the second quarter of 2016. This represents an increase from $4.90 to $7.60 per $100 of online sales. The risk figure was as high $12.20 for the sale of luxury goods.

The study also found that the rate of attacks featuring botnets increased 47 percent between the third quarter of 2015 and the second quarter of 2016. For luxury goods, that figure was up by 87 percent.

The Computerworld article also cited recently released figures from Javelin Strategy & Research, which revealed that U.S. identity fraud hit a record high in 2016, with 15.4 million victims and a year-over-year rise of 16 percent. Digitally connected consumers are at higher risk of identity fraud, the report said.

Explaining the Increased Online Threat

Mike Lynch, chief strategy officer at security firm InAuth, told Computerworld that his firm had expected e-commerce fraud to rise following the introduction of chip-and-PIN cards. He said other countries noted similar jumps in online fraud following this adoption.

The Javelin study also found that the increased use of chip cards and terminals was a catalyst for driving fraudsters online and toward new forms of e-commerce fraud. Al Pascual, research director in fraud and security for Javelin, said in a company statement that attackers always adapt and find new approaches.

“The rise of information available via data breaches is particularly troublesome for the industry and a boon for fraudsters,” said Pascual. “To successfully fight fraudsters, the industry needs to close security gaps and continue to improve and consumers must be proactive too.”

Keeping Customers Safe From E-Commerce Fraud

Strong partnerships between consumers and financial institutions can help to lessen the impact of fraud. Javelin suggested seven safety tips to help protect customers:

  1. Be smart on social media. Review your settings to ensure your profile is only open to verified connections, and do not accept friend requests from strangers.
  2. Protect online shopping accounts. Enabling two-factor authentication on e-commerce sites makes it more difficult for fraudsters to take over your accounts.
  3. Exercise good password habits. Strong, unique, regularly updated passwords help reduce the risk of fraud — and the value of stolen account details.
  4. Place a security freeze. A freeze on your credit report, which can be lifted on request, prevents anyone else from opening an account in your name.
  5. Sign up for account alerts. These alerts can often be received through email or text message, making some notifications immediate.
  6. Be alert for online transactions. E-commerce fraud gives cybercriminals a platform to make many transactions quickly, so early detection can help reduce losses.
  7. Seek help as soon as fraud is detected. Early notification can limit a victim’s liability and provide law enforcement teams with more time to catch fraudsters.

More from

How cyber criminals are compromising AI software supply chains

3 min read - With the adoption of artificial intelligence (AI) soaring across industries and use cases, preventing AI-driven software supply chain attacks has never been more important.Recent research by SentinelOne exposed a new ransomware actor, dubbed NullBulge, which targets software supply chains by weaponizing code in open-source repositories like Hugging Face and GitHub. The group, claiming to be a hacktivist organization motivated by an anti-AI cause, specifically targets these resources to poison data sets used in AI model training.No matter whether you use…

New report shows ongoing gender pay gap in cybersecurity

3 min read - The gender gap in cybersecurity isn’t a new issue. The lack of women in cybersecurity and IT has been making headlines for years — even decades. While progress has been made, there is still significant work to do, especially regarding salary.The recent  ISC2 Cybersecurity Workforce Study highlighted numerous cybersecurity issues regarding women in the field. In fact, only 17% of the 14,865 respondents to the survey were women.Pay gap between men and womenOne of the most concerning disparities revealed by…

Getting “in tune” with an enterprise: Detecting Intune lateral movement

13 min read - Organizations continue to implement cloud-based services, a shift that has led to the wider adoption of hybrid identity environments that connect on-premises Active Directory with Microsoft Entra ID (formerly Azure AD). To manage devices in these hybrid identity environments, Microsoft Intune (Intune) has emerged as one of the most popular device management solutions. Since this trusted enterprise platform can easily be integrated with on-premises Active Directory devices and services, it is a prime target for attackers to abuse for conducting…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today