

The UK press is abuzz with reports that CNP (Card Not Present) fraud is at an all-time high and growing at an alarming rate. We can all thank Chip and PIN cards for that. Chip and PIN cards did exactly what I believe it was supposed to do – move the fraud liability away from the issuers and onto the e-Commerce merchants.
So now Visa Europe is scrambling to get still another fraud fighting tool out the door. You know, like Chip and PIN, VbyV, CVV2, and the others. This one is a one-time-number generator built right into the card. Can you imagine how much this one will cost to replace after the next Hanaford-type incident?
According to Heise Online Visa is touting this as “milestone in fraud prevention.” Sure, just like all those others I mentioned. Still, If the PIN can be recorded surreptitiously, the card will prove no more secure than its predecessors. Instead of cloning the card, the fraudster would then merely need to steal it. So what’s the point? That’s pretty much the way it is now.
Visa is developing still another dubious, if not down-right worthless, technology just for the sake of showing cardholders that they are doing something. However useless that something might be, at least Visa can advertise that they are doing something. You know – kind of like advertising the fact that credit cardholders’ money is safe if their cards are stolen. Sure enough that’s true, but it’s not Visa’s doing. It was mandated by the FTC many years ago.
I love to see rebuttal comments like we had on the telephone call-back service but I doubt that Visa or MasterCard will respond. Come on folks – no guts or no rebuttal? Which is it?
Similar Posts:
- Chip and PIN continues to shift fraud
- Are you ready for an increase in credit card fraud?
- This webinar will help e-commerce merchants
- Visa Outlines Plan to Recoup Revenue After Durbin
- Preventing E-Commerce Credit Card Fraud- Only two days left to register!


This blog entry and response all discusses how the new tech is not enough to battle the issue, but forgets the big point, the way it is today is worse. As security experts say, nothing is secure, but if we can move from level 0 to level 5 maybe someday we have a chance to get to level 10 (being nirvana). Also, about this liability shift from issuers to merchants, for CNP transactions, there is something called Verified by Visa, MasterCard SecureCode...implement this correctly at least most of the chargeback headaches (I didn't say all...) will be taken care of.
- spam
- offensive
- disagree
- off topic
Like