Credit Card Security
Credit Card, Credit Report, business, credit, credit card company No Comments »Credit cards are part of a payment system where the name comes from the tools used in the form of payment is a small plastic card issued by a credit card issuer (credit card issuer). Credit card holders were granted the right by the card issuer for use as a means of payment based on a promise from the cardholder to pay in the future.
Card holders can use credit cards at merchants (merchant) that accept the card after credit card applications printed when a request is approved by the credit provider. Card user agrees to make payments in the future in a way that it signed receipt card details and amount to be paid, or any other means by entering a personal identification number or PIN (personal identification number).
Card issuers typically charge interest if payment at maturity, the card holder does not pay in full. Interest is generally paid off if the pemengang card bill in full from the total balance to be paid.
From year to year the number of credit card fraud is increasing in line with the rapid growth of the Internet. Transactions via the Internet can use credit cards as a means of payment in which the physical credit cards are not required to complete a transaction. Buyers simply enter your name, card number and billing address and the transaction occurs. There are several online merchants that require buyers to scan and send the results via e-mail or fax with the aim of improving the security of transactions.
The latest technology now is to use a tool that produces a one-time password (OTP). OTP is used in place of static passwords that many weaknesses. Unlike static passwords, OTP produces different passwords at any time or any incidents so that those who try to guess the password will have trouble.
OTP requires two devices, where the first tool available in the server and the second held by the user. Every transaction that occurs then the user must enter a number that appears in the OTP and then sent to the server. The server then matches it by the number that exist on the server. Both these tools are usually in sync or not sync when there is a special calculation that allows both devices are back in sync.
Although OTP merukan one solution for securing online transactions on the Internet, the system is still vulnerable to phishing attacks and man in the middle. Still possible for hackers to intercept transactions that occurred then captures all the passwords generated by the OTP and re-use them at the same time. To prevent it a few vendors use challenge response OTP as part of the transaction. Challenge response meant that the user is required to enter account numbers and transaction values into their OTP device then the tool to do calculations based on the responses and make a figure. Because the account number and value becomes a necessity in the OTP generated password if the password is the middle road was captured by a hacker it will not be used because the password is only valid for one account number and a certain value.