TopicTracker
From daringfireball.netView original
TranslationTranslation

Apple Pay Express Mode for Transit, When Used With a Visa Card, Is Vulnerable to Scam Tap-to-Pay Readers

A security vulnerability in Apple Pay's Express Transit Mode allows scam tap-to-pay readers to exploit Visa cards linked for transit payments. The issue is specific to Visa cards and iPhones, and doesn't affect Mastercard, American Express, or Samsung Pay. Apple states this is a Visa system issue unlikely to occur in real-world scenarios.

Related stories

  • Google announced a new spam policy targeting back button hijacking, where websites manipulate browser history to trap users. Sites using these deceptive tactics will face demotions in search results starting June 15, 2026. The practice, exemplified by LinkedIn redirecting users to feeds instead of letting them leave, has been criticized as hostile to users.

  • John Gruber argues that Apple's competitive advantage comes from having the best apps on its platforms, which attracts users. He suggests this edge is waning as fewer developers are motivated to create well-crafted native apps exclusively for Apple's platforms.

  • The author considers phone calling and alarm features sacred and believes they must never fail. They missed an alarm for the first time in years when their iPhone 13 Pro with latest iOS displayed the alarm screen silently for 45 minutes without sound or responsive buttons. The author had to force quit the clock app and is considering getting a quartz clock alarm.