• DocumentCode
    2338942
  • Title

    The management of online credit card data using the Payment Card Industry Data Security Standard

  • Author

    Blackwell, Clive

  • Author_Institution
    Inf. Security Group, Univ. of London, Egham
  • fYear
    2008
  • fDate
    13-16 Nov. 2008
  • Firstpage
    838
  • Lastpage
    843
  • Abstract
    Credit card fraud on the Internet is a serious and growing issue. Many criminals have hacked into merchant databases to obtain cardholder details enabling them to conduct fake transactions or to sell the details in the digital underground economy. The card brands have set up a standard called PCI DSS to secure credit card details when they are stored online. We investigate the standard and find significant flaws especially in its requirements on small businesses. Finally, we propose some general rules for the secure management of online data.
  • Keywords
    credit transactions; fraud; security of data; Internet; PCI DSS; credit card fraud; digital underground economy; online credit card data; payment card industry data security standard; Application software; Computer hacking; Credit cards; Data security; Decision support systems; Information security; Internet; Protection; Transaction databases; Wireless networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Digital Information Management, 2008. ICDIM 2008. Third International Conference on
  • Conference_Location
    London
  • Print_ISBN
    978-1-4244-2916-5
  • Electronic_ISBN
    978-1-4244-2917-2
  • Type

    conf

  • DOI
    10.1109/ICDIM.2008.4746843
  • Filename
    4746843