An Investigation into Credit Card Information Disclosure through Point of Sale Purchases
被引:0
|
作者:
von Sohns, S.
论文数: 0引用数: 0
h-index: 0
机构:
North West Univ, Sch Elect Elect & Comp Engn, CSIR, Mahikeng, South AfricaNorth West Univ, Sch Elect Elect & Comp Engn, CSIR, Mahikeng, South Africa
von Sohns, S.
[1
]
机构:
[1] North West Univ, Sch Elect Elect & Comp Engn, CSIR, Mahikeng, South Africa
The use of debit and credit cards has become indispensable to consumers worldwide. This cashless method of payment offers flexibility and convenience. It eliminates the safety risk of carrying large cash amounts in person and cards can be cancelled as soon as it is lost or stolen. One of the most popular methods of non-cash transactions is through a Point of Sale (POS) terminal. A POS is a quick and convenient method for a customer to pay a business, but may lead to the disclosure of sensitive information without the knowledge of the customer. By investigating the information printed on the customer and merchant transaction receipts at various POS devices in South Africa, it is shown that information provided on the POS transaction receipts can put the consumer at risk as the credit card number, expiry date and name of the card holder may be printed on these transaction receipts. This paper investigates various POS devices used by South African businesses and the relevant information printed on the merchant and customer transaction receipts after a transaction. It is shown that the information contained in the transaction receipts from certain POS terminals is sufficient to perform successful online purchases at multiple online shopping sites. We also show that when the CVV number on the back of the credit card can be obtained while the transaction is in progress, even more online shopping sites can be successfully used without the authorisation or knowledge of the credit card owner.
机构:
City Univ Hong Kong, Dept Accountancy, Kowloon, Hong Kong, Peoples R ChinaCity Univ Hong Kong, Dept Accountancy, Kowloon, Hong Kong, Peoples R China
机构:
Univ Nova Lisboa, Fac Sci & Technol, Dept Comp Sci, Lisbon, Portugal
Univ Politecn Madrid, Ctr Biomed Technol, Madrid 28223, Spain
Univ Rey Juan Carlos, Data Networks & Cybersecur Res Inst, Madrid 28028, SpainUniv Nova Lisboa, Fac Sci & Technol, Dept Comp Sci, Lisbon, Portugal
Zanin, Massimiliano
Romance, Miguel
论文数: 0引用数: 0
h-index: 0
机构:
Univ Rey Juan Carlos, Data Networks & Cybersecur Res Inst, Madrid 28028, Spain
Univ Rey Juan Carlos, Dept Appl Math, Madrid 28933, Spain
Ctr Computat Simulat, Madrid 28223, SpainUniv Nova Lisboa, Fac Sci & Technol, Dept Comp Sci, Lisbon, Portugal
Romance, Miguel
Moral, Santiago
论文数: 0引用数: 0
h-index: 0
机构:
Univ Rey Juan Carlos, Data Networks & Cybersecur Res Inst, Madrid 28028, Spain
Univ Rey Juan Carlos, Dept Appl Math, Madrid 28933, Spain
BBVA Grp, Cyber Secur & Digital Trust, Madrid 28050, SpainUniv Nova Lisboa, Fac Sci & Technol, Dept Comp Sci, Lisbon, Portugal
Moral, Santiago
Criado, Regino
论文数: 0引用数: 0
h-index: 0
机构:
Univ Rey Juan Carlos, Data Networks & Cybersecur Res Inst, Madrid 28028, Spain
Univ Rey Juan Carlos, Dept Appl Math, Madrid 28933, Spain
Ctr Computat Simulat, Madrid 28223, SpainUniv Nova Lisboa, Fac Sci & Technol, Dept Comp Sci, Lisbon, Portugal