Slashdot Mirror


Torn-up Credit Card Apps Not So Safe

Maximum Prophet writes "This dude tears up a credit card application, tapes it back together, sends it in with his cell phone number and father's address, and voila, gets a credit card. Who would have thought security at a credit card company was so lax? The company recommends that consumers "tear up" financial solicitations before throwing them away, "so thieves can't use them to assume your identity.", but according to them, "Applications that arrive in damaged form are customarily transferred to an electronic format, he said -- often by machine. So it's possible a human being never handled the taped-up application and never had the chance to spot the obvious sign of trouble." In this era where we worry so much about identity theft, this sort of thing really makes you wonder what the point really is.

17 of 470 comments (clear)

  1. shred shred shred by Luyseyal · · Score: 3, Informative

    I always shred this kind of thing.
    -l

    --
    Help cure AIDS, cancer, and more. Donate your unused computer time to worldcommunitygrid.org. Join Team Slashdot!
    1. Re:shred shred shred by TimeTrav · · Score: 3, Informative

      That may be, but theres nothing stopping a would-be identity thief from raiding your mailbox in the morning before you can get to it. I really loathe these pre-approved credit card ads that come with large bright "0% for six months!!!" print on the outer envelope.

      The reason these are considered "safe" is that most all credit card applications require a social security number. So, that means the identity thief has to steal a piece of mail from your health insurance company, which is a pretty reliable way of obtaining a social security number, since most insurance companies use it as a unique subscriber identifier. Theres no way to win.

      --
      [sig]you really dont want the answers, trust me[/sig]
    2. Re:shred shred shred by Skater · · Score: 4, Informative

      In the US, you can now use a phone number (it's something like 1-888-3OptOut) to opt out of the prescreened credit card offers. I did so several weeks back and the offers have slowed to a trickle.

      I do kind of miss shredding the fake AmEx cards that came with their offers, though.

    3. Re:shred shred shred by sacherjj · · Score: 3, Informative

      Yep, cross cut shread everything that I throw away that even might have encriminating data. If you are more paranoid, you can keep a burn bag of the shreaded stuff.

    4. Re:shred shred shred by johnkoer · · Score: 4, Informative

      The FTC has an alert that gives you a few options, including the phone # to call for opting out.

    5. Re:shred shred shred by cr0sh · · Score: 3, Informative
      The reason these are considered "safe" is that most all credit card applications require a social security number. So, that means the identity thief has to steal a piece of mail from your health insurance company, which is a pretty reliable way of obtaining a social security number, since most insurance companies use it as a unique subscriber identifier. Theres no way to win.

      Actually, if you sign up for insurance, for most applications you can write the words "please assign" in the space for the SSN, and the company will assign a number for your policy. I should note that some brokers will get smart with you, and try to "guilt you" into providing your real social "in the event you are incapacitated" and "so your loved ones can help". Don't let them guilt you (if I am incapacitated or dead - I don't care anymore, now do I?). Also, don't put in a "fake SSN", as these get caught fairly easily (and you'll get a phone call or letter) - or if they aren't, then it might be YOU who are guilty of "identity theft", if it is found out it matches someone else's real number in the system...

      --
      Reason is the Path to God - Anon
  2. The basis: Where Credit Comes From by dada21 · · Score: 5, Informative

    Why do banks accept any application, even ones with errors?

    Banks want you to have credit -- of course they'll accept any application as long as the name and social security number match their lookups, and your FICO score is reasonably high (although banks are now lowering standards to give out even more credit).

    When a bank offers credit, it does so based on money it has (of course). Yet it is very important for the average person to understand where this "money" comes from -- especially digital money such as you'd have when you have an available credit line.

    All banks that are part of the central banking system (the Federal Reserve) are required by the Federal Reserve to stick something called a money multiplier. I believe the current money multiplier is 12% or so, but it varies. This basically means that a bank must keep a reserve of that amount versus the actual money is sends out. If a bank loans out $1000, it has to keep $120 in the bank. Even if it loans out the $880 ($120 in reserves) the bank can stil say it has $1000 in demand deposits available -- even though it doesn't.

    The collusion comes into place when the first bank is given $1000 by the Federal Reserve. The Federal Reserve is allowed to print new money out of thin air by creating loans against government property and future government income. This initial $1000 is placed in Bank A as available cash. Bank A holds $120 but loans the remaining $880 to Bank B which is also part of the Federal Reserve banking system. Bank A still holds a demand deposit value of $1000 which is available to be withdrawn! Bank B also has $880, but has to reserve 12% of it ($105). It then loans the rest ($775) to Bank C, but still lists $880 as its available balance of demand deposits. Bank C reserves its 12% ($93) and loans the rest ($682) to Bank D, while still listing the original $775) as its available balance. This collusion continues to go around until there is no more reserve balance available. In the end, the original $1000 the Federal Reserve created is held as a base reserve for the $9000 or so "new money" that is created.

    Banks need people to accept this money in loans or in credit -- this is the way the bank actually makes money. Eventually all the loans are hopefully paid back into the system, so the bank makes a nice interest rate. On the new $1000 created, each bank wants to loan out as much as possible -- and these loans are used to buy goods, which recycles money back into the banks which can be kept as reserves to create even more money! If the bank takes $1000 and loans out $880 but receives $400 of that bank in, it can now loan out a portion of that $400 that it has in reserves.

    In the long run, the system wants debt out there because it is created out of fake inter-bank loans anyway. Most of you don't even see your physical money because it doesn't exist -- there are about $600 billion dollars in circulation worldwide, but there are over $10.2 trillion dollars on the books!

    And people have faith in the system.

  3. Make the banks liable... by John+Whitley · · Score: 5, Informative
    Once again, I like Bruce Schneier's proposed solution:
    The bank must be made responsible, regardless of what the user does.
    That quote is from Mitigating identity theft, which provides a refreshing perspective on the problems collectively labelled as identity theft. Bruce points out that many of the "solutions" to identity theft focus on authentication, which misses a critical part of the equation: the fradulent transaction itself. By providing a strong financial incentive to banks to mitigate fraud, the only party which has a real chance to do anything about the problem will fix it and fast.
  4. Pre-approved applications by Beryllium+Sphere(tm) · · Score: 5, Informative

    >I really loathe these pre-approved credit card ads that come with large bright "0% for six months!!!" print on the outer envelope.

    Amen. The reason I opted out of receiving those was exactly the one you mentioned, that they're a security problem.

    The number to stop them at least used to be 888-5OPTOUT.

  5. Stop them at the source by klossner · · Score: 5, Informative

    Better than a shredder, ask the banks to stop sending you the applications in the first place: http://www.optoutprescreen.com/. I used to receive several per month, now I get two per year.

    1. Re:Stop them at the source by Anonymous Coward · · Score: 5, Informative

      For those concerned about the site (https://www.optoutprescreen.com/ the FTC links right to them: http://www.ftc.gov/bcp/conline/pubs/credit/prescre en.htm

  6. Re:Possible? Yeah, but highly improbable by paeanblack · · Score: 5, Informative

    If humans aren't involved in the letter opening process, it's time to have some real fun...see how well their machines handle foreign substances

    1) Save the return envelope.
    2) Fold up a blank piece of paper with a nice wad of chewing gum/peanut butter/diaper contents/etc
    3) Mail your "application"
    4) ???
    5) Profit

  7. Re:Possible? Yeah, but highly improbable by thparker · · Score: 5, Informative
    What, a machine opened the letter, recognized it was an application (and not, say, other junkmail that got stuffed into the nearest bulk reply envelope), fed it into a scanner, then trashed the hard copy? At no point in the process does a human see it? Sounds like bullshit.

    I'd guess yes, at no point in the process does a human see it.

    Here's one vendor -- OPEX. This one does opening and extraction but isn't particularly fast at 17,000/hr. They have a scanning solution as well -- significantly slower but the mail goes straight from envelope to scan.

    This is just what I've found in a quick search because I knew something like it existed; I'm not that familiar with the high-speed mail processing industry. I'd imagine that the technology would surprise most people.

  8. Re:Possible? Yeah, but highly improbable by HogGeek · · Score: 4, Informative

    Working in the mailing industry, I'll call your bullshit, and raise you a scanner.

    Not only is it possible, but probable. While I would expect a lot of errors, or "bad" data from the scan, I promise you it was scanned...

  9. Re:whose fault by Skim123 · · Score: 3, Informative

    Can MCI provide you with a copy of a document you signed regarding the charges? If not (and if I'm not mistaken), what they're doing is illegal. Next time you get a call, request this information and if they can't or won't provide it, tell them that if they call you again it's off to the FCC and your state's attorney general.

    --

    I could not justify my existence if I were a turkey farmer. Would I terminate myself? Undoubtably, yes.

  10. Re:Possible? Yeah, but highly improbable by Deagol · · Score: 5, Informative
    I send most junk mail solicitations back to the sender in their own return envelope. If they send those neat colorful stickers, I stick a few of those on the envelope's outside border for good measure. So you have an over-stuffed envelope with stickers to gum up the machines.

    My wife did a few months on graveyard shift at a First Security payment processing center (before Wells Fargo assimilated them). She said those machines are *really* cool, really fast, and jam up so easily that they have dedicated staff on-hand to fix particularly nasty jams.

    So if you want to put a (albeit small) dent in the productivity of the Evil Credit Card Sharks, send back those handy self addressed envelopes stuffed with their own junk mail. Be sure to fold, spindle, and mutilate the envelope, too. :)

  11. Something else the credit card companies do... by Hamster+Lover · · Score: 3, Informative

    is send you endless reams of "balance transfer" cheques or convenience cheques. Not only are they a complete rip off to use as interest and endless fees apply the second you use one, but they get mixed in with all the other crap they love to send you in the envelope and you don't realize they're there. You end up throwning them away in the trash without voiding or otherwise defacing them to make them worthless. Any enterprising thief scrounging through your garbage can come across them and use them. This happened to a good friend of mine when she threw them away thinking they were some sort of advertising without realizing they were real cheques. Cheque fraud isn't the easiest thing in the world to do anymore, especially in Canada where no merchants will accept cheques anymore, but it does happen.

    Ask them to stop sending them to you and they swear up and down it will happen, but it never does. It's just too lucritive for them to stop sending them to you.