Follow along with the video below to see how to install our site as a web app on your home screen.
Note: This feature may not be available in some browsers.
So , you are saying you used both the cards successfully for Flipkart transactions without OTP.. right?? I haven’t heard this before.. let’s see if anyone had this experienceI have 2 credit cards and both were used on flipkart but I didn't get any otp neither sms.What can be the reason?
If any transaction happens without otpI have 2 credit cards and both were used on flipkart but I didn't get any otp neither sms.What can be the reason?
It's possible with hdfc if you have swipe to pay enabled 👀 it's stupid but there's a glitch in their system, one can basically call the transaction api with specific headers and say it was a swipe to pay transaction and it's approved no otp required but I'm unsure how it can be done for sbiSo , you are saying you used both the cards successfully for Flipkart transactions without OTP.. right?? I haven’t heard this before.. let’s see if anyone had this experience
Now this is scaryIt's possible with hdfc if you have swipe to pay enabled 👀 it's stupid but there's a glitch in their system, one can basically call the transaction api with specific headers and say it was a swipe to pay transaction and it's approved no otp required but I'm unsure how it can be done for sbi
Not that scary someone will have to test the specifics of itNow this is scary
I don't belive any app other than samsung pay in that caseIt's scary.. Shall we keep our card saved on specific App??
if common folks like this can go this far, what about pro hackers bro ? definitely scaryNot that scary someone will have to test the specifics of it
When I was experimenting with it I could only do it with my own device and my own card and not some other cards but it feels like it should be possible with enough know how
I'm an engineer who codes for fun and a living so not just common but also not a problem hacker, that's the thing looking at it I feel someone with more knowledge could probably misuse itif common folks like this can go this far, what about pro hackers bro ? definitely scary
How to check this swipe to pay?It's possible with hdfc if you have swipe to pay enabled 👀 it's stupid but there's a glitch in their system, one can basically call the transaction api with specific headers and say it was a swipe to pay transaction and it's approved no otp required but I'm unsure how it can be done for sbi
Did that work for tokenized card?It's possible with hdfc if you have swipe to pay enabled 👀 it's stupid but there's a glitch in their system, one can basically call the transaction api with specific headers and say it was a swipe to pay transaction and it's approved no otp required but I'm unsure how it can be done for sbi
Inside payzapp if you don't have payzapp you don't have it onHow to check this swipe to pay?
I am unsure, it was my debit cardDid that work for tokenized card?
The only problem is when the device is lost and was accessed immediatelyIdeally OTP should become a matter of past now. If sim binding and device binding is done correctly, and transaction happens from the device, it is safer than OTP.
I too had same issue in 2021, I think flipkart is main culprit to gave data to fraudstersI have 2 credit cards and both were used on flipkart but I didn't get any otp neither sms.What can be the reason?
That can happen today with sms also. All app with tokenized cards should have pin / bioauth login too. That may reduce fraud on device loss.The only problem is when the device is lost and was accessed immediately
No, in deep analysis i found my gmail was getting accessed and the otp received on Gmail was used to do the transaction, however when I requested to block that gift voucher purchased from my account, flipkart blocked my account and till now the complain isn't resolved and I also had filed cyber case against that and that case came to my nearest police station after 2 years and they have no clue of what to doThe only problem is when the device is lost and was accessed immediately