DocumentCode
2481879
Title
A New Framework for Credit Card Transactions Involving Mutual Authentication between Cardholder and Merchant
Author
Gupta, Shalini ; Johari, Rahul
Author_Institution
Sch. of Inf. Technol., Guru Gobind Singh Indraprastha Univ., Delhi, India
fYear
2011
fDate
3-5 June 2011
Firstpage
22
Lastpage
26
Abstract
Electronic Commerce (e-Commerce) and ease in the onsite transactions have led to the exponential growth in the acceptance of credit cards among consumers of all the sections. But despite their remarkable advantages, consumers are still reluctant in their use, especially for online transactions and reason being the increasing credit card fraud rate. A number of security models have been proposed and deployed for secure online transactions but the sharing of sensitive credit card data over the Internet has made online transactions vulnerable to threats. In this paper, we discuss and analyze the current developments in online authentication procedures including biometrics, one-time-password systems and use of mobile device and Public Switched Telephone Network for cardholder authentication. Then we propose a complete new framework for both onsite and online (Internet shopping) credit card transactions. This framework is more secure, robust, enhances user privacy and does not involve the deployment of special hardware systems at the customer´s site.
Keywords
Internet; biometrics (access control); credit transactions; data privacy; electronic commerce; fraud; message authentication; retail data processing; smart cards; telephone networks; transaction processing; Internet shopping; biometrics; cardholder authentication; credit card fraud rate; credit card transaction; customer site; e-commerce; electronic commerce; mobile device; mutual authentication; one-time-password system; online authentication procedures; online transaction; onsite transaction; public switched telephone network; sensitive credit card data sharing; user privacy; Authentication; Biometrics; Credit cards; Internet; Logic gates; Servers; PIN; authentication; biometrics; credit-card fraud; e-Commerce; one-time-password systems (OTP); smartcards;
fLanguage
English
Publisher
ieee
Conference_Titel
Communication Systems and Network Technologies (CSNT), 2011 International Conference on
Conference_Location
Katra, Jammu
Print_ISBN
978-1-4577-0543-4
Electronic_ISBN
978-0-7695-4437-3
Type
conf
DOI
10.1109/CSNT.2011.12
Filename
5966397
Link To Document