<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-4854181385517767691.post6666335319641359379..comments</id><updated>2011-05-09T21:29:11.164+03:00</updated><category term='USAID'/><category term='Mombasa'/><category term='knowledge-based'/><category term='Yu'/><category term='Fireside Chat'/><category term='lawyers'/><category term='peculiar habits'/><category term='mHealth'/><category term='strategy'/><category term='competition'/><category term='Cisco'/><category term='events'/><category term='ZTE'/><category term='proposal'/><category term='Bob Collymore'/><category term='Nairobi'/><category term='M-PESA'/><category term='VPN'/><category term='strategic plan'/><category term='wealth'/><category term='customer focus'/><category term='Eldoret'/><category term='Anthony Okulo'/><category term='patriotism'/><category term='evidence-based'/><category term='JICA'/><category term='developer'/><category term='michael joseph'/><category term='solution vendor'/><category term='FOI bill'/><category term='fraud'/><category term='Huawei'/><category term='M-PESA agent'/><category term='socio-political crisis'/><category term='vodaphone'/><category term='workshop'/><category term='Millenium Villages'/><category term='competitive advantage'/><category term='policy'/><category term='government'/><category term='legal'/><category term='Moses Kemibaro'/><category term='Mind Speak'/><category term='CSR'/><category term='bandwidth cost'/><category term='Information Industry'/><category term='innovation'/><category term='Kisumu'/><category term='DHIS2'/><category term='sustainable growth'/><category term='IT security'/><category term='ICT4D'/><category term='qualifications'/><category term='content'/><category term='google'/><category term='M-KESHO'/><category term='bharti airtel'/><category term='software industry'/><category term='technology'/><category term='consumer'/><category term='PEPFAR'/><category term='WAN'/><category term='Dual Sim'/><category term='OCC'/><category term='AMPATH'/><category term='optic fiber'/><category term='act'/><category term='AIDS'/><category term='it'/><category term='ChildCount'/><category term='IT practitioner'/><category term='zain'/><category term='ICT'/><category term='donar agency'/><category term='Agosta Liko'/><category term='sagentia'/><category term='stakeholder'/><category term='ROI'/><category term='Airtel Money'/><category term='mobile planet'/><category term='cloud computing'/><category term='tender'/><category term='proprietary'/><category term='Strathmore University'/><category term='TCO'/><category term='meeting'/><category term='Mobile Monday'/><category term='Equity Bank'/><category term='AccessKenya'/><category term='KDN'/><category term='Pesapal'/><category term='chama'/><category term='RapidSMS'/><category term='twitter'/><category term='Nairobi Tech Scene'/><category term='standards'/><category term='knowledge economy'/><category term='Samsung'/><category term='social media'/><category term='monopolistic tendencies'/><category term='CDC'/><category term='safaricom'/><category term='YuCash'/><category term='NASCOP'/><category term='ZAP'/><category term='Dr. Bitange Ndemo'/><category term='Kenyan stereotypes'/><category term='grant'/><category term='Kenyan economy'/><category term='fiber'/><category term='KePMS'/><category term='parastatal'/><category term='Enterprise Architecture'/><category term='ICT practitioner'/><category term='Pivot25'/><category term='ICDL'/><category term='Matt Berg'/><category term='IT expert'/><category term='OboPay'/><category term='HIS'/><category term='EASSY'/><category term='product diversification'/><category term='SMS'/><category term='EMR'/><category term='computer society of Kenya'/><category term='knowledge management'/><category term='Uchumi'/><category term='google maps'/><category term='OpenMRS'/><category term='Nokia'/><category term='seminar'/><category term='tandaa'/><category term='Best Practices'/><category term='digital revolution'/><category term='software licence'/><category term='regulation'/><category term='TEAMS'/><category term='Telkom Kenya'/><category term='English Premier League'/><category term='software'/><category term='SEACOM'/><category term='certificate'/><category term='Health Informatics'/><category term='WHO'/><category term='orange'/><category term='royalty'/><category term='eHealth'/><category term='dishonesty'/><category term='google base'/><category term='184'/><category term='I-TECH'/><category term='ART'/><category term='COBPAR'/><category term='HIV'/><category term='NOFBI'/><category term='KCB'/><category term='iHub'/><category term='signature'/><category term='DSTV'/><category term='Jua Kali'/><category term='CCK'/><category term='semeni'/><category term='evidence'/><category term='social networking'/><category term='kenyan'/><category term='m:lab'/><category term='IT infrastructure'/><category term='OrangeMoney'/><category term='group SMS'/><category term='Sagem'/><category term='football'/><category term='Android'/><category term='Tanzania'/><category term='John Waibochi'/><category term='human resource'/><category term='law'/><category term='M-PESA float'/><category term='entrepreneurship'/><category term='DfID'/><category term='blog'/><category term='OpenSource'/><category term='Ken Oyolla'/><category term='certification'/><category term='ICT industry'/><category term='EPL'/><category term='ICT Hub'/><category term='intellectual property'/><category term='Vision 2030'/><category term='ICT Board'/><category term='ICT expertise'/><category term='data protection bill'/><category term='freedom of information bill'/><category term='cyber-law'/><title type='text'>Comments on gmeltdown: M-PESA Fraud - Agents Beware!</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.gmeltdown.com/feeds/6666335319641359379/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html'/><author><name>gmeltdown</name><uri>http://www.blogger.com/profile/16262599035915984050</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://3.bp.blogspot.com/_xnPIrtwkkVM/SgFpI38wPeI/AAAAAAAAAAM/2xVNAecmnLU/S220/redme.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>7</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-2644348182921278786</id><published>2011-05-09T21:29:11.164+03:00</published><updated>2011-05-09T21:29:11.164+03:00</updated><title type='text'>I hope I&amp;#39;m wrong, but irrespective of whether ...</title><content type='html'>I hope I&amp;#39;m wrong, but irrespective of whether sms confirmation message was genuine or not, why would an MPESA agent pay out ?&lt;br /&gt;Are the agents not suppose to key in the confirmation supplied by customer on the MPESA system and than the system would validate same and advise if Agent should honor it or not. Am I missing something here?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/2644348182921278786'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/2644348182921278786'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1304965751164#c2644348182921278786' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1032624338'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-7371132262914430670</id><published>2010-08-12T10:43:08.825+03:00</published><updated>2010-08-12T10:43:08.825+03:00</updated><title type='text'>Correction: The M-PESA fraud tool place on 1st Feb...</title><content type='html'>Correction: The M-PESA fraud tool place on 1st Feb 2010 and not 2009 as earlier indicated</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/7371132262914430670'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/7371132262914430670'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1281598988825#c7371132262914430670' title=''/><author><name>gmeltdown</name><uri>http://www.blogger.com/profile/16262599035915984050</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://3.bp.blogspot.com/_xnPIrtwkkVM/SgFpI38wPeI/AAAAAAAAAAM/2xVNAecmnLU/S220/redme.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-144787796'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-3941250403350095114</id><published>2010-02-12T10:19:42.615+03:00</published><updated>2010-02-12T10:19:42.615+03:00</updated><title type='text'>The most basic education to the Agent HAS to be to...</title><content type='html'>The most basic education to the Agent HAS to be to check the ID of the sender of the SMS.&lt;br /&gt;&lt;br /&gt;If it is sent by MPESA, it would normally contain an MPESA sender ID.&lt;br /&gt;&lt;br /&gt;If it is sent by a fraudster then it would contain the Fraudsters Mobile number.&lt;br /&gt;&lt;br /&gt;This is one of the most obvious fraud possibilities in launching such services and I am surprised that it wasn&amp;#39;t foreseen and the agent trained accordingly.&lt;br /&gt;&lt;br /&gt;I realise that you may think that even with training the Agent may omit seeing the sender ID on a per transaction basis, but then that is the fear that needs to be drilled into the agent that you cannot afford to miss out on seeing who is the sender of the SMS</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/3941250403350095114'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/3941250403350095114'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1265959182615#c3941250403350095114' title=''/><author><name>Farhad</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1310163689'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-2466698711119669057</id><published>2010-02-10T03:53:31.109+03:00</published><updated>2010-02-10T03:53:31.109+03:00</updated><title type='text'>I thought that the SMS was encrypted and could ONL...</title><content type='html'>I thought that the SMS was encrypted and could ONLY be deciphered by the SIM application?&lt;br /&gt;&lt;br /&gt;Are you saying that the thieves got around this?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/2466698711119669057'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/2466698711119669057'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1265763211109#c2466698711119669057' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-896607623'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-1167304967756128844</id><published>2010-02-09T09:33:36.232+03:00</published><updated>2010-02-09T09:33:36.232+03:00</updated><title type='text'>@kipsang sorry for delayed response. You may go ah...</title><content type='html'>@kipsang sorry for delayed response. You may go ahead and repost. It may have been prefferatble to simply link to this post but you may repost as you wish.&lt;br /&gt;&lt;br /&gt;@anon 9.24am, am informed that the fake Safaricom guys did not gain access to the dispensing handset but true to your hypothesis, there was a fake contact labelled M-PESA on the handset. Its still unclear how it got there eg a VCARD sent and saved inadvertently. What is puzzling now is the thought that a dispensing handset should be allowed to receive SMS texts from an origin other than the Safaricom system.&lt;br /&gt;&lt;br /&gt;Me thinks M-PESA agents are highly exposed to fraud and theft from employees and such tricksters. Several such incidents practically eat away the float deposited at safaricom and they either inject more capital of they are out of business</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/1167304967756128844'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/1167304967756128844'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1265697216232#c1167304967756128844' title=''/><author><name>gmeltdown</name><uri>http://www.gmeltdown.com</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1766158841'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-6713692223990205641</id><published>2010-02-02T18:54:57.652+03:00</published><updated>2010-02-02T18:54:57.652+03:00</updated><title type='text'>This is how the tricks works : -
The conmen visit ...</title><content type='html'>This is how the tricks works : -&lt;br /&gt;The conmen visit your premise pretending to be from Safaricom or use any other excuse to handle the dispensing phone. Once they access the phone they save themselves in your phone book by the name mpsesa. Then they edit a normal mpesa message and send as a normal sms to the dispensing  phone. what you see is actualy an sms message bearing the name mpesa but if you scroll the message further down you see the actual number of the sender. a very cheap trick but higly devastating.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/6713692223990205641'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/6713692223990205641'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1265126097652#c6713692223990205641' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-157605931'/></entry><entry><id>tag:blogger.com,1999:blog-4854181385517767691.post-3248356313154093779</id><published>2010-02-02T09:24:08.958+03:00</published><updated>2010-02-02T09:24:08.958+03:00</updated><title type='text'>Dear gmeltdown,

I would like to repost this artic...</title><content type='html'>Dear gmeltdown,&lt;br /&gt;&lt;br /&gt;I would like to repost this article followed by a link to your blog for publication on mine (http://kipsang.wordpress.com). &lt;br /&gt;&lt;br /&gt;Hence this comment to ask your permission to do so.&lt;br /&gt;&lt;br /&gt;Kind regards,&lt;br /&gt;&lt;br /&gt;Kipsang.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/3248356313154093779'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4854181385517767691/6666335319641359379/comments/default/3248356313154093779'/><link rel='alternate' type='text/html' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html?showComment=1265091848958#c3248356313154093779' title=''/><author><name>kipsang</name><uri>http://kipsang.wordpress.com/</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/openid16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.gmeltdown.com/2010/02/m-pesa-fraud-agents-beware.html' ref='tag:blogger.com,1999:blog-4854181385517767691.post-6666335319641359379' source='http://www.blogger.com/feeds/4854181385517767691/posts/default/6666335319641359379' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-922273978'/></entry></feed>
