TY - JOUR
T1 - International comparison of bank fraud reimbursement: customer perceptions and contractual terms
AU - Becker, Ingolf
AU - Hutchings, Alice
AU - Abu-Salma, Ruba
AU - Anderson, Ross
AU - Bohm, Nicholas
AU - Murdoch, Steven J
AU - Sasse, M Angela
AU - Stringhini, Gianluca
PY - 2018/1/31
Y1 - 2018/1/31
N2 - The study presented in this article investigated to what extent bank customers understand the terms and conditions (T\amp;Cs) they have signed up to. If many customers are not able to understand T\amp;Cs and the behaviours they are expected to comply with, they risk not being compensated when their accounts are breached. An expert analysis of 30 bank contracts across 25 countries found that most contract terms were too vague for customers to infer required behaviour. In some cases the rules vary for different products, meaning the advice can be contradictory at worst. While many banks allow customers to write Personal identification numbers (PINs) down (as long as they are disguised and not kept with the card), 20\ and a handful stipulate that the customer have a unique PIN for each account. We tested our findings in a survey with 151 participants in Germany, the USA and UK. They mostly agree: only 35\% fully understand the T\amp;Cs, and 28\ Germans found their T\amp;Cs particularly hard to understand, and USA bank customers assumed some of their behaviours contravened the T\amp;Cs, but were reassured when they actually read them.
AB - The study presented in this article investigated to what extent bank customers understand the terms and conditions (T\amp;Cs) they have signed up to. If many customers are not able to understand T\amp;Cs and the behaviours they are expected to comply with, they risk not being compensated when their accounts are breached. An expert analysis of 30 bank contracts across 25 countries found that most contract terms were too vague for customers to infer required behaviour. In some cases the rules vary for different products, meaning the advice can be contradictory at worst. While many banks allow customers to write Personal identification numbers (PINs) down (as long as they are disguised and not kept with the card), 20\ and a handful stipulate that the customer have a unique PIN for each account. We tested our findings in a survey with 151 participants in Germany, the USA and UK. They mostly agree: only 35\% fully understand the T\amp;Cs, and 28\ Germans found their T\amp;Cs particularly hard to understand, and USA bank customers assumed some of their behaviours contravened the T\amp;Cs, but were reassured when they actually read them.
KW - banking fraud
KW - customer perceptions
KW - international comparisons
KW - PIN usage
KW - terms and conditions
U2 - 10.1093/cybsec/tyx011
DO - 10.1093/cybsec/tyx011
M3 - Article
VL - 3
SP - 109
EP - 125
JO - Journal of Cybersecurity
JF - Journal of Cybersecurity
SN - 2057-2085
IS - 2
ER -