SMS Phishing and ROSCAs

Slides:



Advertisements
Similar presentations
CEFPI is a Registered Provider with The American Institute of Architects Continuing Education Systems (AIA/CES). Credit(s) earned on completion of this.
Advertisements

What is Bad ? Spam, Phishing, Scam, Hoax and Malware distributed via
MKisan portal.
A tour of new discovery introducing XpertCapture Your ultimate data capturing solution.
Lessons Learned Data and Asset Security FOCUS Spring 2006 Chuck Banner UVA-Wise.
Our Eyes are on the watch for you! One Stop Shop Payment Automation: Innovative and Smart platform that: Increase Sales and Merchant Retentions Creates.
Expense Management & Reimbursement Financial Unit Liaison Meeting D ECEMBER 17, 2008.
Increasing Online Survey Response Rates April 7, 2015 Institute for Faculty Development.
Electronic Payment Systems University of Palestine University of Palestine Eng. Wisam Zaqoot Eng. Wisam Zaqoot March 2010 March 2010 ITSS 4201 Internet.
Cyber Crimes.
Scanner Run Jared Wilkin Chris Good. A Children’s Game.
Thanks for being a Hero Customer!
1 CENS is comprised mostly of Computer Science and Electrical Engineering faculty and graduate students, collaboratively developing: Technologies (hardware.
These materials are prepared only for the students enrolled in the course Distributed Software Development (DSD) at the Department of Computer.
QSITE DigiTech Challenge Designing planning a digital solution.
Do you know who you’re dealing with? Social Engineering: Minimise the risk of becoming a victim.
On-Line BankCard Center Presentation Cardholder Role During the Presentation click the mouse on this button to move back a slide During the Presentation.
 77.4% of the perpetrators are male.  50% live in one of the following states: California, New York, Florida, Texas, and Washington.  55.4% complainants.
To understand how to recognise and avoid potential fraudulent situations To appreciate that being a victim of fraud may affect me emotionally as well.
Thanks for being a Hero Customer! TEACHER TRAINING.
ClinCard System: Medical University of South Carolina
Digital Payments STEP BY STEP INSTRUCTIONS FOR VARIOUS MODES OF PAYMENT: Cards, USSD, AEPS, UPI, Wallets.
Digital Payments STEP BY STEP INSTRUCTIONS FOR VARIOUS MODES OF PAYMENT: Cards, USSD, AEPS, UPI, Wallets.
Intro to Kinian technology
Facebook privacy policy
BSA Online Application System Nationwide Rollout
Mobile trends in the gaming industry
All Student Group Meeting
Done by… Hanoof Al-Khaldi Information Assurance
FOR THE NEXT INDIA By: Joby Joseph Thoomkuzhy M.com . MBA
ESøknad - A web-based system for the electronic submission of research funding applications A short presentation of the system intended for principal investigators/researchers.
Mazen Alkoa’ & Ahmad Nabulsi Submitted to Dr. Sufyan Samara
Health is everything Connected. Connected. And Healthy.
SMS MARKETING.
EMV® 3-D Secure - High Level Overview
Using Mobile Technology to support MOHS in Sierra Leone.
Members: Iwan Sofean Ahmad Syazwan Shamilawanie Nur Anisah
Training/Awareness on Cashless Transactions
Getting started with Poll Everywhere Back to University 2017 Edition.
Home Automation System
How to Protect your Identity Online PIYUSH HARSH
Fee and TRANSACTION LIMIT SCHEDULE FOR THE MONEY NETWORK® SERVICE
SMS Integration With OPAC: “Text it to me.”
Use of Biometric Technology in Payments to avoid Frauds
DMMZ Tech Limited “We assist in the transformation of organizations to be more profitable and efficient through Innovation” Celebrating 35 years in technology.
SY DE 542 User Testing March 7, 2005 R. Chow
Electronic Manifesting (e-Manifest)
Fee and TRANSACTION LIMIT SCHEDULE FOR THE MONEY NETWORK® SERVICE
BCG Account Management
ESøknad - A web-based system for the electronic submission of research funding applications A short presentation of the system intended for principal investigators/researchers.
Software Engineering System Modeling Chapter 5 (Part 1) Dr.Doaa Sami
Keeping Students on Track Using Technological Retention Tools
 We will be starting at 1:30 
Problem Sometimes, people see an image, a pattern, or a style that they really like. Currently, there is no easy way for people to find items with a specific.
Cash for construction materials
Mobile Phone Technology
NUMERO YONO QUIZ – 2019: ABOUT THE QUIZ
University of Washington, Autumn 2018
University of Washington, Autumn 2018
Club Secretary-Treasurer-Designate
Customer Lifecycle Management.
University of Washington, Autumn 2018
Local and global opportunities in B2B2C Payments
Cabrillo College’s Ellucian Portal Project
Getting started with Poll Everywhere Higher Education
Citi Commercial Cards – Fraud Early Warning
NCUCA Fraud and Risk Education April 17, 2019
Allanblackia Seed Oil Novella Partnership Meeting
Founded in 2002, Credit Abuse Resistance Education (CARE) educates high school and college students on the responsible use of credit and other fundamentals.
Presentation transcript:

SMS Phishing and ROSCAs Lecture 16: CSE 490c 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 Announcements New Homework Available Paper on Low Literate user interfaces Lecture Schedule 10/31/2018 University of Washington, Autumn 2018

Trip Report, Information Technology University, Pakistan Meetings with Faculty Lubna Razaq, Umar Saif, Maryam Mustafa, Agha Ali Raza, Faisal Kamiran Round table discussions FinTech and MFI Community health Multiple talks Digital Financial Services class 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 SMS Phishing Fraudulent SMS are observed around the world Waseela-e-haq program ki taraf se apkay Rs.25200 rupay aya hain.apka ye number03314311169BISP mein register tha.ap is number per 03017073199 call karein 10/31/2018 University of Washington, Autumn 2018

Research Question: What is the prevalence of SMS Fraud in Pakistan? Perception of a very high rate of SMS fraud in Pakistan What is the actual prevalence? What are the range of fraud types? How do the frauds take place? Can we develop a recognizer for fraudulent messages? Are people susceptible to fraud? What are the mitigation steps? 10/31/2018 University of Washington, Autumn 2018

Methodology App based collection Create an Android App to allow users to submit SMS messages Engineering the App turned out to be challenging Successful collection from college students Decided against funding incentives for message submission 10/31/2018 University of Washington, Autumn 2018

Methodology Visits to field Interview people and have them install App on phones Low density of Android phones Suspicion about installing App or forwarding SMS 10/31/2018 University of Washington, Autumn 2018

Methodology Send us your spam 10/31/2018 University of Washington, Autumn 2018

Distribution of Fraud Messages Surprisingly few fraud messages were found Maybe this is not bad news! Vast majority of fraud messages were the lottery scam Jeeto Game Show (75 %) BISP (20 %) Mastercard Lottery Request for a small amount of money from a women’s name Did not encounter PIN fraud Did not encounter direct mobile money fraud Some disagreement on what a fraud SMS is 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 Field Interviews Method for Lottery Scam – call phone number and discover that a certain fee is needed to process winnings Approximately USD 50, on USD 500 winnings Sent using mobile top ups. Text the numbers from the scratch cards Middle class recognized these were fraud messages and were just annoyed Lower income people fell for these frauds Multiple people reported thinking they were real or knowing people defrauded Setting where these messages were rare People in authority (mobile shop owners or people at the mosque) would sometimes identify these 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 Fighting Fraud SMS Fraud messages appear to go to random numbers Spam messages thought to go to harvested numbers Call back and source numbers on Fraud messages rarely repeated Phone numbers are a scarce commodity in Pakistan Limit of five sims per national ID Anti-fraud recommendation Establish monitoring of Fraud messages Rapidly disable numbers through CTA 10/31/2018 University of Washington, Autumn 2018

eMail Fraud How does SMS Compare ? 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 ROSCA Committees, Tandas, Chama, Ekub, Cundinas, Pandeiros, Juntas, Tontine Regular Payments into a shared Pot Very common in Pakistan at all income levels 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 Digital ROSCA Develop digital support for ROSCA Multiple different ways this could be done Web-based implementation to allow remote participation Direct implementation inside a mobile money product App based system to support ROSCA organizer Interesting problem in digitizing traditional finance 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 Formative Work ROSCAs very common in Pakistan across different income groups Most common in Pakistan are “non-interest” ROSCAs Islamic prohibition of interest Some interest bearing ROSCAs are available ROSCAs are initiated by an organizer Most interactions are organizer-member Little interaction between members Multiple concerns on integration with mobile money Transaction costs Official tracking Biggest needs around managing ROSCA for organizer Many variations and details on Turn Distribution 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 ROSCA App 10/31/2018 University of Washington, Autumn 2018

University of Washington, Autumn 2018 ROSCA Payments App designed to support both CASH and Mobile Money API Integration with UW-Pesa In principle, this could be adapted to other mobile money systems 10/31/2018 University of Washington, Autumn 2018

Current work: Evaluation Basic questions Does it work? Is it usable What is the feedback from users Deeper question Does the app provide sufficient value to the ROSCA provider to be useful 10/31/2018 University of Washington, Autumn 2018