FreeOZ论坛

标题: Credit card code to combat fraud [打印本页]

作者: justinli79    时间: 13-5-2009 15:47
标题: Credit card code to combat fraud
A credit card with a built-in display is being tested by Visa with the aim of reducing online fraud.

The Emue Card generates and displays a unique code each time it is used.

Developers say that the new technology would make it very hard for fraudsters, as any transaction would require the pin to generate the code.

The card is currently being trialled by 500 employees of Deloitte with the aim of assessing the technology by the end of the year.

The new technology comes against a growing backdrop of fraud. While chip and pin technology has helped reduce crime at the tills, when it comes to phone, internet, and mail order fraud - known in the industry as card-not-present or CNP fraud - the figures are growing every year and now make up more than 50% of all credit card fraud.

These transactions ask for the 16-digit code on the front of the card, and expiry date and some also ask for the three digit security card on the back. All of these details are available to a criminal who has a stolen card.


                               
登录/注册后可看大图

The new code technology could reduce so-called 'card not present' fraud
According to figures from the Association for Payment Clearing Services (Apacs) - the trade forum for banks, building societies, and credit card firms - CNP fraud accounted for more than £328.4 million in 2008, a rise of 13% from the previous year.

Michelle Whiteman, a spokesperson for Apacs, said there were a number of problems in tackling CNP fraud.

"Firstly, you aren't able to check the card's physical security measures, such as the hologram or signature.

"Then, at present, there is no form of chip and pin security.

"And finally, because of the anonymous nature of internet transactions, there fraudsters have a much lower chance of getting caught, which probably encourages some people who might otherwise not commit a crime," she said.

Visa say the new Emue system could help combat this by adding an additional layer of security. While the three-figure security code would remain, an additional four figure code - generated by the card - would also be required before a transaction could go through.

Backwards compatible

Sandra Alzetta, head of innovation at Visa, said that the card was bringing the principles of chip and pin technology to the online world.

"The card needs to be globally compatible: that means embossed characters for mechanical swipes, a magnetic strip for systems that require a signature, the fixed three digit security code and now the unique four figure code.

"You have to remember that our cards work across the world and not every country or retailer has access to the level of technology we might be used to," she said.


The new Emue card is currently on trial with Deloitte employees
Ms Alzetta said she hoped field trials would be completed by the end of the year.

Once certified by Visa it is then down to the banks and credit card companies to decide if they take up the new technology, but Ms Alzetta said she was confident they would.

"I see this as a very consumer focused product and any Visa bank could add it to their commercial cards and make it available, assuming it passes muster."

One of the problems facing developers was how to make sure the card could be handled like any other card without accidently pressing buttons or breaking the display.

"We've made the buttons in such a way that you need to 'pinch' them, rather than just press, for them to work.

"One of the things we're testing is how long the battery lasts - the plan is for it to work for more than three years, which means your card should expire before it runs out of power."
作者: someonehappy    时间: 13-5-2009 17:33
没看明白怎么防fraud。

而且,理论上如果是卡片被盗或者遗失,那什么技术也防不住拿到你的卡想要犯罪的人啊,如果不在这个新系统里面加入只有持卡人才知道的信息。

不过对于仅仅获取了用户支付信息,然后在网上假冒的人还是有点用的。
作者: justinli79    时间: 13-5-2009 18:17
他信用卡上有个密钥生成器,每多长时间变一次。
不过不管怎么样,丢了,就没有用了。
作者: media000    时间: 13-5-2009 22:53
丢了之后,别人拿着你的卡,也用不了.

因为你每次需要输入你自己的密码,然后生成动态码.如果是我拿你的卡,因为我不知道你输入的是什么密码,所以无法生成动态码,从而无法使用来消费
作者: MacroJ    时间: 14-5-2009 14:51
标题: 回复 #4 media000 的帖子


it sounds good.....

but once the card is dropped in water.....
作者: ingeer    时间: 14-5-2009 17:01
must be water proof.. this 'tiny' embeded device is just like the HSBC bank key generator.
Well.. i just wonder how to power the circuit.. i meant, is there any battery could be planted into that slim card??




欢迎光临 FreeOZ论坛 (https://www.freeoz.org/bbs/) Powered by Discuz! X3.2