Skip to main content

Visa says magstripe credit cards are at risk of data theft if used at gas pumps

If you use an old magnetic stripe (magstripe) credit card, you may want to avoid doing so the next time you’re at a gas pump.

A recent report from Visa suggests that magstripe credit cards may be especially vulnerable to data theft by hackers when used at gas station pumps. The report, published in December 2019, asserts that a form of malware known as a “RAM scraper” had been “injected into the POS [point of sale] environment and was used to harvest payment card data.”

According to Visa, even though the gas station accepted both chip and magnetic stripe cards, it was clear that the RAM scraper only targeted the payment data that came from those who paid at the pump with a magnetic stripe card. (In this case, the gas station accepted chip-style transactions within the gas station’s store, and accepted magnetic stripe transactions at the pump.)

Visa concluded its report with a few recommendations for fuel merchants on how they could increase the security of their transactions, especially emphasizing the use of point-of-sale devices that support chip card transactions, since using such devices is expected to “significantly lower the likelihood of these attacks.” Visa also suggested the use of other secure (EMV technology) payment methods such as “contactless, mobile, and QR code.”

There are also a few things that customers can do to safeguard their cards’ payment data when using their credit cards. As Fast Company notes, it may be best to avoid swiping your credit cards altogether and instead opt to use your card’s chip (if it has one) to pay for your goods and services. This means that if a gas pump doesn’t have a chip reader, you may have to just pay within the gas station’s store or pay cash.

And even when you’re not at the gas pump, you can still use other payment methods besides the chip or swiping a magstripe card. If you’d rather pay with your mobile device, we have guides to help you get started with some of the most popular digital wallets, including Apple Pay, Google Pay, and Samsung Pay.

Editors' Recommendations

Anita George
Anita has been a technology reporter since 2013 and currently writes for the Computing section at Digital Trends. She began…
Hackers are pretending to be cybersecurity firm to lock your entire PC
A hacker typing on an Apple MacBook laptop while holding a phone. Both devices show code on their screens.

As hackers come up with new ways to attack, not even trustworthy names can be taken at face value. This time, a ransom-as-a-service (RaaS) attack is being used to impersonate a cybersecurity vendor called Sophos.

The RaaS, referred to as SophosEncrypt, can take hold of your files -- or even your whole PC -- and requires payment to have them decrypted.

Read more
‘World’s largest sundial’ to double as green energy provider
Houston's Arco del Tiempo (Arch of Time).

Houston’s next piece of public art is being described as "the world's largest sundial" and will also produce solar power for the local community.

The striking Arco del Tiempo (Arch of Time) is the creation of Berlin-based artist and architect Riccardo Mariano and will be installed in the Texan city’s East End district in 2024.

Read more
Nvidia’s peace offering isn’t working
Two MSI RTX 4060 Ti 16GB GPUs over a black background.

Nvidia's RTX 4060 Ti 16GB is here, but you wouldn't know it if you didn't follow GPU news closely. It seems that the GPU might just be so far behind some of the best graphics cards that Nvidia isn't advertising it too much. As a result, early benchmarks are scarce.

MSI has released some benchmarks of its own, comparing the 8GB and the 16GB versions of the RTX 4060 Ti. It turns out that the new GPU might actually be slower. Is this why Nvidia didn't even make its own version of this card?

Read more