Network World
Friday, January 9, 2009
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Community: Security

Navigation

Analysis of PCI DSS v1.2 changes

We have a detailed analysis of the changes in v1.2 of the PCI DSS posted online:
http://pcianswers.com/2008/10/01/pci-dss-version-12-differences-and-updates/

Click to read the article this is in response to.

Changes

0

They are only starting to think about end to end encryption now? What about the nice touchless RFID payment systems that offer no security whatsoever because the authenticator is in the local scaning machine instead of at visa/MC servers. Never mind the fact that the RFID chip on my credit card can be remotely read from meters away with the proper equipment which is readily available.

Additionally, why are credit card numbers even being stored? And if they need to be stored, why is not some method of 1 way hash devised to store the credit card number to prevent theft of these card numbers?

PCI Changes

0

New PCI Input

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <i> <b> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <blockquote> <br /> <br> <p>
  • Lines and paragraphs break automatically.
  • You can use BBCode tags in the text.
  • Web page addresses and e-mail addresses turn into links automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

Advertisement: