Content |
Main article: New York
History
2024: Sending National Guard troops to patrol subway after series of violent attacks
In March 2024, it was announced that New York would take the extraordinary step of deploying National Guard troops to patrol the subway system after a series of violent attacks that worried passengers and prompted fresh accusations from Republicans of lawlessness in major U.S. cities.
2023: A hole in the IT system allows you to monitor passenger travel
At the end of August 2023, it became known that there is a vulnerability in the contactless fare payment system on the New York subway that allows anyone to monitor passengers' trips. Moreover, the problem even affects those trips for which Apple Pay technology was used.
It is noted that in May 2019, the New York subway began introducing the Apple Pay Express Transit service. It makes it possible to use some transport cards and passes in Apple Wallet without taking the device out of sleep mode, unlocking it or authenticating it using Face ID, Touch ID or a password code. By the end of 2020, the feature became available at all New York City subway stations.
The subway payment system is operated by the large transport company Metropolitan Transportation Authority (MTA). Its website provides the ability to create an account that can be used to access travel logs after authentication. But there is also a function to instantly view travel history over the past seven days - and it was with it that problems arose.
It is reported that attackers can view the weekly travel log, knowing only the victim's bank card number and its validity period. A three- or four-digit security code, also known as a CSC, CVC or CCV, is not required to do so. Thus, criminals can theoretically monitor the movements of the victim, collect information about travel times and stations visited. This information can then be used to organize certain fraudulent schemes. Security experts say the breach identified presents a major challenge: The hole could be exploited by stalkers - individuals harassing other people, for example, to intimidate.[1]