NFC TIMES Exclusive Insight – Japan’s popular 7-Eleven convenience store chain reported Thursday a major hack of its QR code-based mobile-payments app, but the breach appears to be due to poorly designed security protections in the app.
Seven & i Holdings and its subsidiary Seven-Eleven Japan, which has more than 20,000 locations in Japan, announced Thursday that users had lost at least ¥55 million (US$510,000) within only three days since the launching the 7pay app. Nearly 1,000 user accounts were compromised, and there could be many more.
Japanese police said they arrested two Chinese nationals, who reportedly stole or received the stolen IDs of the accountholders, then apparently used the information to reset passwords in the app.