• Title/Summary/Keyword: Secure Payment

Search Result 177, Processing Time 0.026 seconds

Electronic Paymentsystem using Smart Card (스마트카드를 이용한 전자지불시스템)

  • 이창순
    • Journal of Korea Society of Industrial Information Systems
    • /
    • v.4 no.1
    • /
    • pp.97-101
    • /
    • 1999
  • The most important technical problem in EC is about secure electronic payment systems. Electronic payment systems come three different types distinguished by the payment method: electronic cash, electronic check, and creditcard. In these types, electronic cash payment system is popular and practical as in real commerce. But electronic cash can be copied easily, then it is infeasible to prevent user from double-spending a coin. In this paper, we overview several requirements for secure electronic payment system and present other proposed additions to the results. At last we present a model system which considers requirements above examined.

  • PDF

A Secure on the Design Model of the Payment System on Bluetooth (블루투스를 이용한 안전한 지불 시스템 모델에 관한 연구)

  • Seo Dae-Hee;Kang Se-ll;Leem Im-Yeong;Park Hea-Ryong
    • Journal of Korea Multimedia Society
    • /
    • v.7 no.11
    • /
    • pp.1610-1619
    • /
    • 2004
  • While researches and studies on short distance wireless communications have been actively carried out, studies on many applications of short distance wireless communications focusing on user-oriented Mobile device are also in progress. Since Bluetooth has several advantages that existing short distance communication does not have, studies on standardization have been carried out focusing on SIG, and IEEE has also jointly studied on this. Bluetooth is a short distance wireless communication technology that can be usefully applied to various kinds of applications. In this regard, this thesis presents payment system using Bluetooth, out of several application technologies of Bluetooth. This payment system is based on the scenario in which secure piconet is formed focusing on the user, the user gets in the car, fill up the gas at the gas station using his own Mobile device and pay The secure payment system presented in this thesis is designed to complement the weakness of existing Bluetooth in terms of security and to secure several requirements of security required for payment using short distance wireless communication.

  • PDF

Per-transaction Shared Key Scheme to Improve Security on Smart Payment System

  • Ahmad, Fawad;Jung, Younchan
    • International Journal of Internet, Broadcasting and Communication
    • /
    • v.8 no.1
    • /
    • pp.7-18
    • /
    • 2016
  • Several authentication methods have been developed to make use of tokens in the mobile networks and smart payment systems. Token used in smart payment system is genearated in place of Primary Account Number. The use of token in each payment transaction is advantageous because the token authentication prevents enemy from intercepting credit card number over the network. Existing token authentication methods work together with the cryptogram, which is computed using the shared key that is provisioned by the token service provider. Long lifetime and repeated use of shared key cause potential brawback related to its vulnerability against the brute-force attack. This paper proposes a per-transaction shared key mechanism, where the per-transaction key is agreed between the mobile device and token service provider for each smart payment transaction. From server viewpoint, per-transaction key list is easy to handle because the per-transaction key has short lifetime below a couple of seconds and the server does not need to maintain the state for the mobile device. We analyze the optimum size of the per-transaction shared key which satisfy the requirements for transaction latency and security strength for secure payment transactions.

A Study on the FinTech : The consideration of the Security (핀테크의 보안 고려사항에 대한 연구)

  • Lee, Yujin;Chang, Beomhwan;Lee, Youngsook
    • Journal of Korea Society of Digital Industry and Information Management
    • /
    • v.12 no.3
    • /
    • pp.111-123
    • /
    • 2016
  • Recently, mobile devices have been widely used. Therefore, the service users want that are not constrained by time and space. Among them, electronic payment services, mobile finance service is enjoying a tremendous popularity. The FinTech is the result of the fusion of finance and ICT(Information & Communication Technology). Security experts is pointed the FinTech security risk. New technology and Innovative FinTech services are even available, Insecure FinTech services is insignificant. In this paper we were surveyed market and product trends of FinTech and analyzed the threats about FinTech. Also, we analyzed the security considerations for FinTech using a questionnaire. As a result, users considers secure payment process and privacy. Therefore, we proposed security considerations for each vulnerability. So, we must be resolved of security technology and policy issues. If establishing a secure payment process and the unclear legal issue is resolved, FinTech service will provide a secure financial services to the user.

Designing an Efficient and Secure Credit Card-based Payment System with Web Services Based on the ANSI X9.59-2006

  • Cheong, Chi Po;Fong, Simon;Lei, Pouwan;Chatwin, Chris;Young, Rupert
    • Journal of Information Processing Systems
    • /
    • v.8 no.3
    • /
    • pp.495-520
    • /
    • 2012
  • A secure Electronic Payment System (EPS) is essential for the booming online shopping market. A successful EPS supports the transfer of electronic money and sensitive information with security, accuracy, and integrity between the seller and buyer over the Internet. SET, CyberCash, Paypal, and iKP are the most popular Credit Card-Based EPSs (CCBEPSs). Some CCBEPSs only use SSL to provide a secure communication channel. Hence, they only prevent "Man in the Middle" fraud but do not protect the sensitive cardholder information such as the credit card number from being passed onto the merchant, who may be unscrupulous. Other CCBEPSs use complex mechanisms such as cryptography, certificate authorities, etc. to fulfill the security schemes. However, factors such as ease of use for the cardholder and the implementation costs for each party are frequently overlooked. In this paper, we propose a Web service based new payment system, based on ANSI X9.59-2006 with extra features added on top of this standard. X9.59 is an Account Based Digital Signature (ABDS) and consumer-oriented payment system. It utilizes the existing financial network and financial messages to complete the payment process. However, there are a number of limitations in this standard. This research provides a solution to solve the limitations of X9.59 by adding a merchant authentication feature during the payment cycle without any addenda records to be added in the existing financial messages. We have conducted performance testing on the proposed system via a comparison with SET and X9.59 using simulation to analyze their levels of performance and security.

Simple Credit Card Payment Protocols Based on SSL and Passwords (SSL과 패스워드 기반의 신용카드 간편결제 프로토콜)

  • Kim, Seon Beom;Kim, Min Gyu;Park, Jong Hwan
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.26 no.3
    • /
    • pp.563-572
    • /
    • 2016
  • Recently, a plenty of credit card payment protocols have been proposed in Korea. Several features of proposed protocols include: using passwords for user authentication in stead of official certificate for authenticity, and no need to download additional security module via ActiveX into user's devices. In this paper, we suggest two new credit card payment protocols that use both SSL(Security Socket Layer) as a standardized secure transaction protocol and password authentication to perform online shopping and payment. The first one is for the case where online shopping mall is different from PG(Payment Gateway) and can be compared to PayPal-based payment methods, and the second one is for the case where online shopping mall is the same as PG and thus can be compared to Amazon-like methods. Two proposed protocols do not require users to perform any pre-registration process which is separate from an underlying shopping process, instead users can perform both shopping and payment into a single process in a convenient way. Also, users are asked to input a distinct payment password, which increases the level of security in the payment protocols. We believe that two proposed protocols can help readers to better understand the recent payment protocols that are suggested by various vendors, and to analyze the security of their payment protocols.

Design and Implementation of a Secure Electronic Payment System on Internet (안전한 인터넷 전자지불 프로토콜의 설계 및 구현)

  • Park, Hyeon-Dong;Lee, Eun-Seong;Song, Sang-Heon;Gang, Sin-Gak;Park, Jeong-Su;Ryu, Jae-Cheol
    • The Transactions of the Korea Information Processing Society
    • /
    • v.6 no.8
    • /
    • pp.2145-2157
    • /
    • 1999
  • One of the most popular services among the various application services provided in Internet is electronic commerce. However, it is true that the most of payment systems in existing shopping server are not secure enough even if they provide security services. In this paper, we pointed out some problems in existing shopping server. And, we designed and implemented the secure electronic payment system, SafePay to solve the problems in existing payment system.

  • PDF

Problem and Policy of e-Commerce Payment System (전자상거래 결제시스템의 현황과 과제 -전자화폐를 중심으로-)

  • 박근수
    • The Journal of Information Technology
    • /
    • v.3 no.3
    • /
    • pp.77-88
    • /
    • 2000
  • Electronic Commerce increased rapidly according to the growing popularity of Internet. but payment system are not changed. Now main payment system of electronic commerce are credit card and cyber banking system. Then credit card has some problems safety, privacy etc, and cyber banking system has some problem also. We need new payment system to Electronic Commerce. The merit of electronic money are more capacity, more secure, more reliable, quick and easy to update, secure off-line processing, enabling technology etc than credit card and cyber banking system. And so many countries began using experiment of electronic money and our country began July KOEX building. But it has some problems (standardization, safety of payment, etc). Therefor we must make nile about electronic money in order to standardization and safety of payment. After then electronic money are used widely in electronic commerce.

  • PDF

A Design of Authentication Algorithm for Safe Identification on Generating ISP in Online Environment Internet Secure Payment System (온라인 환경의 인터넷 안전결제에서 ISP 생성시 안전한 신원확인을 위한 인증 알고리즘 설계)

  • Jeon, Young-Ho;Jun, Moon-Seog
    • Proceedings of the KAIS Fall Conference
    • /
    • 2010.11a
    • /
    • pp.272-275
    • /
    • 2010
  • 인터넷의 발달로 인하여 다양한 온라인 카드 지불 방식이 생겨나게 되었다. 그 중, 기존의 국민카드와, BC카드의 카드 결제 방식인 ISP(Internet Secure Payment) 시스템에서 ISP를 생성하는 과정이 현재의 인증 방법으로는 잠재적인 취약점이 있음을 발견하고, 이에 본인 인증을 강화하는 프로토콜을 제안한다.

  • PDF

Security Evaluation Criteria of Electronic Payment System (전자 지불 시스템의 보안 평가 기준)

  • 신장균;황재준
    • Proceedings of the CALSEC Conference
    • /
    • 1999.07b
    • /
    • pp.491-500
    • /
    • 1999
  • Recent increase of commercial network Integration to World Wide Web(WWW) shifts an ordinary commerce to electronic environment. This draws more people to examine re-assurance of their secure transaction. This study investigates current status of security methodology for Electronic Payment System and extracts important axis of security level for electronic payment. Using these axis as security evaluation criteria, the research proposes a security matrix which consists of four different level of security granularity, hence allowing evaluation of a nation-wide credit card based payment system. Feasible usage of this matrix contributes to security analysis of the electronic system as whole, hence providing better secured electronic environment.

  • PDF