A Gas Pump Glitch Turned Felony: How a Rewards Hack Went Too Far [Roundup]

News and notes from around the interweb:

About Gary Leff

Gary Leff is one of the foremost experts in the field of miles, points, and frequent business travel - a topic he has covered since 2002. Co-founder of frequent flyer community InsideFlyer.com, emcee of the Freddie Awards, and named one of the "World's Top Travel Experts" by Conde' Nast Traveler (2010-Present) Gary has been a guest on most major news media, profiled in several top print publications, and published broadly on the topic of consumer loyalty. More About Gary »

More articles by Gary Leff »

Comments

  1. Does anyone ever THINK about these articles? Does the gas-stealer in Nebraska drive a Kenworth? $28K ‘over several months’ … Ludicrous.

  2. This was not an Awards Card Hack.
    this was exploiting a software glitch

    from the article:
    “the company was unaware of a glitch that allowed anyone swiping a rewards card twice to put a gas pump into demonstration mode. In demo mode, the user could pump gas at no cost.”

    In addition: she sold the use of her card to at least one other woman to do this.

  3. Not sure I believe she should be arrested. She very obviously abused the situation and there’s no mention of her reporting it, but also, isn’t it kind of on the business to maintain systems and make sure this doesn’t happen? Who’s to say that double-swiping to get into demo mode was a bug and not a feature? Pump & Pantry certainly designed the rewards program and commissioned the software update that introduced the “bug” so is it really appropriate to put that on the user? She certainly didn’t take any action that I would deem unreasonable to trigger it.

    Not defending her actions, to be clear. I’m just not sure it rises to the level of criminal behavior to exploit a system that a company very, very poorly designed. Seems to me like this ought to be an expensive lesson in security for the gas station owner/operator rather than a criminal charge.

  4. @jamesb2147, in my opinion, if she was just filling up her car every week with 50 bucks worth of gas, I could see your point. When she is taking $4000 in gas every month, it becomes a criminal matter

  5. She would have a better chance of beating the charges if she hadn’t sold her card to another person. It also doesn’t help that she was getting way more gasoline than the average person uses in that time period.

  6. jamesb2147 How is what she did different from putting a stack of tools onto a cart at Home Depot and pushing it out through the exit without paying? The latter is using a hack of knowing that no one is supposed to stop shoplifters as people have been killed doing that. She had to take intentional efforts to put the pump into demo mode. If she had only double-swiped the card, and only did it once, I’d be more understanding. But, she got the card as a payment of a debt to her, and was possibly told how it worked. We will never be sure, as the person who gave her the card died.

  7. At any wawa in NJ the pump can be put into attendant cash pay mode quite easily. IFYKYK

  8. Qantas to allow payment at 1 cent AUD per point. Well yes but ONLY Y FARES. Sorry, you’re still stuck with your worthless hoard of Qantas Pesos

  9. The gas situation is incredibly unethical but it’s ridiculous that it’s a felony charge. I’m surprised they aren’t charging her under RICO for unauthorized use of a computer system.

    Suppose a grocery store made a lane that said “no payment necessary.” And then somebody resells the merchandise at a profit. Later the retailer says “oops we didn’t mean to do that” and refers for prosecution. It’s ridiculous. If a company did this it would be civil and they probably wouldn’t win.

    Creating a legal obligation to proactively identify erroneous POS behavior or risk criminal liability is a very slippery slope. Is it a felony to book a mistake fare? How about stocking up on an item that’s clearly priced incorrectly. Do we now have an obligation to act in the retailers best interest? So if I know that it will be unprofitable to ship a 50 gallon drum for $10 I can’t order it even though the option is there?

Comments are closed.