The management of online credit card data using the Payment Card Industry Data Security Standard

Credit card fraud on the Internet is a serious and growing issue. Many criminals have hacked into merchant databases to obtain cardholder details enabling them to conduct fake transactions or to sell the details in the digital underground economy. The card brands have set up a standard called PCI DSS to secure credit card details when they are stored online. We investigate the standard and find significant flaws especially in its requirements on small businesses. Finally, we propose some general rules for the secure management of online data.

[1]  Helen Sampson,et al.  A Price Worth Paying? , 2008 .

[2]  R. Kent Secrets and lies. , 2007, Nursing standard (Royal College of Nursing (Great Britain) : 1987).

[3]  Alfred Menezes,et al.  Handbook of Applied Cryptography , 2018 .