DocumentCode :
2338942
Title :
The management of online credit card data using the Payment Card Industry Data Security Standard
Author :
Blackwell, Clive
Author_Institution :
Inf. Security Group, Univ. of London, Egham
fYear :
2008
fDate :
13-16 Nov. 2008
Firstpage :
838
Lastpage :
843
Abstract :
Credit card fraud on the Internet is a serious and growing issue. Many criminals have hacked into merchant databases to obtain cardholder details enabling them to conduct fake transactions or to sell the details in the digital underground economy. The card brands have set up a standard called PCI DSS to secure credit card details when they are stored online. We investigate the standard and find significant flaws especially in its requirements on small businesses. Finally, we propose some general rules for the secure management of online data.
Keywords :
credit transactions; fraud; security of data; Internet; PCI DSS; credit card fraud; digital underground economy; online credit card data; payment card industry data security standard; Application software; Computer hacking; Credit cards; Data security; Decision support systems; Information security; Internet; Protection; Transaction databases; Wireless networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Digital Information Management, 2008. ICDIM 2008. Third International Conference on
Conference_Location :
London
Print_ISBN :
978-1-4244-2916-5
Electronic_ISBN :
978-1-4244-2917-2
Type :
conf
DOI :
10.1109/ICDIM.2008.4746843
Filename :
4746843
Link To Document :
بازگشت