|
|
Posted: Fri, April 25, 2008
New rules tighten online card security standards
In news which may affect small businesses in Wales selling online, new rules from the Payment Card Industry (PCI) Security
Standard Council mean enterprises dealing with credit and debit card information online will have to increase the security of their web applications,
Changes to the PCI Data Security Standard (DSS), due to come into force this summer, will address a number of common concerns about the way in which retail websites are exploited by hackers to
access personal information and credit card details.
From June 30th, businesses will have to run either manual or automated reviews of their web application code and security checks to ensure everything is compliant, plus installing a web application
firewall.
Recently the PCI Security Standard Council announced the release of version 1.1 of the Payment Application Data Security Standard (PA-DSS), which is designed to help software vendors create secure
payment applications that do not store prohibited information, such as Pin data.
The new standard was released at the Electronic Transactions Association Annual Meeting and Expo. It will include a list of validated payment
applications to help enable buyers choose one that meets the standard.
© Adfero Ltd
|
|
|
|
|