Table of Contents
Introduction: Fraud - As Old as Money
1. Attack
- 1.1. Know the Criminal
- 1.2. Know the Crime
- 1.2.1. Stolen consumer identities
- 1.2.2. Stolen merchant identities
- 1.2.3. Access to payment networks
2. Defense
- 2.1. Vulnerability: Message Interception. Countermeasure: Encryption
- 2.1.1. Secure Socket Layer (SSL)
- 2.2. Vulnerability: Fraudulent Consumer Activity. Countermeasure: Consumer
Authentication
- 2.2.1. 3D Secure
- 2.2.2. Card Verification Value and Address Verification Service
- 2.2.3. Password Generating Devices
- 2.2.4. Distributed EMV
- 2.2.5. Cellphone Authentication
- 2.2.6. Transaction History Analysis
- 2.3. Vulnerability: Fraudulent Merchant Activity. Countermeasures:
Merchant Authentication & Card
- Number Protection
- 2.3.1. Merchant Authentication
- 2.3.2. Card Number Protection
- 2.4. Defensive Measures Summary
3. How Bad is Online Card Fraud?
4. Conclusion
List of Exhibits
- Exhibit 1: Physical World Card Transaction
- Exhibit 2: Virtual World Card Transaction
- Exhibit 3: The Three Opportunities for Online Payment Fraud
- Exhibit 4: Portable Magnetic Stripe Reader (E-Bay Price: $220)
- Exhibit 5: Securing the Message Pipeline
- Exhibit 6: SSL Sequence
- Exhibit 7: Authenticating the Cardholder
- Exhibit 8: 3D Secure Transaction Sequence
- Exhibit 9: SET Protocol Transaction Sequence
- Exhibit 10: Uptake of 3D Secure by Association Members
- Exhibit 11: Global VbV and SecureCode Cardholder Uptake (# of cardholders
in millions, percentage)
- Exhibit 12: Card Verification Value
- Exhibit 13: Vasco eDigiPass' Token
- Exhibit 14: Cellphone Authentication
- Exhibit 15: Merchant Authentication
- Exhibit 16: Sample E-Bay Vendor Comments Page
- Exhibit 17: Card Number Protection
- Exhibit 18: Summary of Defensive Tools
- Exhibit 19: Complaints to Internet Fraud Complaint Center, 2003
- Exhibit 20: US Holiday Season Online Spend, 2002 / 2003
- Exhibit 21: Percentage of Fraudulent Card Transactions Online
- Exhibit 22: Global Credit Card Financial Losses by Type
|
Related Report
|