• 제목/요약/키워드: Standard payment

검색결과 114건 처리시간 0.018초

휴대전화 소액결제 시스템의 구조적 취약점 및 이용자 보호를 위한 표준결제창의 개선방안 (A Study on Structural Vulnerability of MobilePhone Micropayment System And Improvement of Standard Payment Module for User Protection)

  • 박광선;이상진
    • 정보보호학회논문지
    • /
    • 제23권6호
    • /
    • pp.1007-1015
    • /
    • 2013
  • 휴대전화 소액결제 시스템은 자동결제 처리 시 이용자의 점유인증을 관리하지 않는다. 콘텐츠제공사업자가 이점을 악용하면 허위 결제정보를 생성하여 이용자에게 부당한 요금을 부과할 수 있다. 이와 같은 휴대전화 소액결제 시스템의 구조적 취약점은 소액결제 이용자의 피해로 이어졌다. 이를 해결하기 위해 2012. 8. 이후 이용자의 결제 인증 강화를 위한 표준결제창이 적용되었다. 그러나 표준결제창도 부당한 이용자 피해가 발생할 수 있는 취약점이 존재하는 바 이용자 보호를 위한 개선방안을 제안하고자 한다.

EMV 기반의 전자지불 PKI와 효율적인 IC 카드 인증메커니즘 (Payment PKI based on EMV and Efficient IC Card Authentication Mechanism)

  • 송상헌;최석진;류재철
    • 정보처리학회논문지C
    • /
    • 제11C권6호
    • /
    • pp.755-764
    • /
    • 2004
  • 최근 자기띠 방식의 금융카드를 IC 카드로 대체하기 위해 현금카드를 위한 금융IC카드표준 규격, 신용카드를 위한 EMV 규격을 채택되어 관련 인프라 구축이 활발하게 전개되고 있는 상황이다. 본 논문에서는 공개키 암호를 채택하고 있는 EMV 규격을 분석함으로써 인터넷 PKI, WAP PKI 등에 비해 상대적으로 연구가 미진한 EMV 기반 Payment PKI에 대한 연구를 하고자 한다. 이와 함께 IC 카드 기반 전자결제 시스템 개발에 활용할 수 있는 EMV 기반 Payment PKI 모델을 제안하고, EMV CA 시스템을 개발하였다. 또한 이를 활용하여 EMV 규격에 정의된 IC 카드 인증메커니즘을 보완하여 IC 카드 메모리 낭비 감소, 거래 처리 시간 단축, 효율적인 운영환경 및 성능을 향상시킬 수 있는 "효율적인 IC 카드 인증메커니즘" 제안하고, 성능평가를 하였다.

URDG 하의 지급청구를 위한 제시요건과 그 일치성 기준 (A Study on the Requirements and Compliance Standard of a Presentation for Demand for Payment under URDG)

  • 채진익
    • 무역상무연구
    • /
    • 제50권
    • /
    • pp.109-136
    • /
    • 2011
  • Bank Guarantee system is commonly used as useful financial instruments to support various overseas and domestic business activities by providing bank guarantees. Therefore, it will be able to develop as a useful socio-economic useful system. However, some procedural problem can arise from the processes under demands for payment. Therefore, it is very important to review the requirements of the demand for payment and compliance standard for the examination of a presentation under the guarantee system. It is necessary to examine main issues under the revised URDG 758. The URDG introduced the same examination principle of "need not be identical to, but shall not conflict with' as that of UCP 600. The main changes of the URDG 758 like this imply the mitigation of the compliance standard for examination. So, This paper is to provide a comparative study of the regulations and laws for the examination standard and propose their implications and practical notes under bank guarantee system. For this purpose, this study will be examined the practical and legal issues focusing on the relative regulations of the revision URDG 758. It will also be reviewed and compared with the URDG, ISP98, UCP 600 and so on.

  • PDF

신용장거래에서 연지급확약할인의 유효성에 관한 연구 -사가의 원칙 적용을 중심으로- (Analysis on Validity of Discounting the Deferred Payment Undertaking under Documentary Credit Transactions - with a Special Reference to the Application of Fraud Rule -)

  • 한재필
    • 한국중재학회지:중재연구
    • /
    • 제21권2호
    • /
    • pp.133-156
    • /
    • 2011
  • This paper is to analyze the legality in which the fraud rule allow the issuer of L/C or a court to disrupt the payment to the beneficiary under the deferred payment credit when the nominated bank for deferred payment undertaking made prepayment or negotiation before the maturity date and fraud is identified to be involved. Since the function of commercial L/C is to provide absolute assurance of payment to a beneficiary, the fraud rule based on fraud exception has been known as the negative factor which lead to the disruption of "principle of independence & abstraction" under the commercial L/C transactions. As a result, the fraud rule is necessary to limit the activities of fraudsters, but its scope must be carefully circumscribed so as not to deny commercial utility to an instrument that exists to serve as an assurance of payment. But the fraud itself has not been firmly established because it is inherently pliable in its concept. There are numerous contents to describe the application of fraud to the L/C transactions as a standard such as egregious fraud, intentional fraud, L/C fraud(omitted here), flexible fraud, and constructive fraud. And so the standard applicable to the commercial transaction as the fraud rule would be high or low depending upon the various standards of fraud.

  • PDF

가맹점 결제 인프라 개선을 통한 모바일 결제 확대 방안 연구 : 블루투스(BLE) 기술 중심 (Study of Measures to Expand Mobile Payment by Enhancing the Payment Infrastructure for Merchant : Focus on Bluetooth Low Energy(BLE) Technology)

  • 복중효;김병수;김광용
    • 한국IT서비스학회지
    • /
    • 제16권4호
    • /
    • pp.33-46
    • /
    • 2017
  • Increasing popularity of smartphone is creating many changes in payment market sector also. The new fin-tech and simple mobile payment service have provided convenience as well as various benefits and value-added services to create new payment culture. However, the infrastructure of offline shops is too poor for users to use the simple mobile payment services in Korea. There are several reasons why the support of simple mobile payment services by offline shops has reached the limit in Korea. They include the reluctance of shop owners due to highly priced devices, the failure of NFC of the leading offline payment infrastructure to support iOS, the services that are biased to the specific manufacturers and smartphones (Samsung Pay and LG Pay), prefer large shops (SSG Pay and L PAY), and focus on online transactions. This study used the Bluetooth technology that is the standard feature built in all smartphone to expand the offline shops that accept the simple mobile payment services ensuring universality and scalability from the convenience of customer's and service provider's aspects. Applying the same payment scene as the existing NFC payment method from the user's aspect and the Bluetooth technology from the service provider's aspect enables support of all smartphones and offering value-added services such as electronic receipt and promotions through the large-capacity bidirectional data transfer. This study is intended to review the simple mobile payment services in Korea and other countries, propose the simple mobile payment service model for Korea by analyzing the Bluetooth technology and preceding studies of payment services using BLE technology, and develop the pilot system using the BLE technology to verify the proposed system with actual shops.

전자결제 메커니즘을 위한 비즈니스 프로세스 모델링에 관한 연구 (A Research on Business Process Modeling for Electronic Payment Mechanism)

  • 김훈태;이용한
    • 한국전자거래학회지
    • /
    • 제11권4호
    • /
    • pp.107-122
    • /
    • 2006
  • 기업간 거래에서 전자결제는 지속적으로 확대되고 있으며, 이에 따라 전자결제를 지원하는 정보시스템의 개발도 활발하게 이루어지고 있다. 이러한 환경에서 전자결제시스템은 다양한 전자결제 메커니즘들을 수용하도록 개발되어야 하고 이를 위해서는 전자결제 프로세스를 표준적인 방법으로 모델링 할 필요가 있다. 본 연구에서는 전자결제 메커니즘을 모델링 하는데 있어서 다양한 비즈니스 프로세스 모델링 기법들의 적합성을 분석하고, 이를 바탕으로 전자결제 메커니즘의 비즈니스 프로세스 모델링 지침을 제시하고자 한다. 본 연구의 결과는 전자방식을 이용하여 결제하는 비즈니스 프로세스를 모델링하고 전자결제시스템을 개발하는데 좋은 지침이 될 수 있을 것이다.

  • PDF

Factors Affecting Online Payment Method Decision Behavior of Consumers in Vietnam

  • NGUYEN, Thi Phuong Linh;NGUYEN, Van Hau
    • The Journal of Asian Finance, Economics and Business
    • /
    • 제7권10호
    • /
    • pp.231-240
    • /
    • 2020
  • E-commerce development led to the explosion of online payment. Consumers have many choices when deciding on the online payment method for each transaction. Using a combination of both qualitative and quantitative methods with the help of SPSS AMOS version 22.0, the article explores the factors that influence consumers' online payment method decision behavior in Vietnam. Research results show that awareness of usefulness, awareness of risk, awareness of trust, awareness ease of use, product uncertainly perception and perceived behavioral control have effects on the behavior of deciding on online payment methods. Awareness of risk has the strongest negative impact on online payment method decision behavior and awareness of usefulness has the strongest positive impact on online payment method decision behavior. Based on these important results, the article proposes a number of implications: (i) continuing to invest and upgrade modern technology to ensure customer information absolutely confidential; (ii) converting all ATM cards on the market to EMV chip standard card technology; (iii) improving service activities, quickly handle things to create confidence for customers; (iv) credit institutions operating in the field of online payment linked to e-commerce sites, supermarkets, convenience stores, restaurants must ask partners to increase transparency for the products.

Designing an Efficient and Secure Credit Card-based Payment System with Web Services Based on the ANSI X9.59-2006

  • Cheong, Chi Po;Fong, Simon;Lei, Pouwan;Chatwin, Chris;Young, Rupert
    • Journal of Information Processing Systems
    • /
    • 제8권3호
    • /
    • pp.495-520
    • /
    • 2012
  • A secure Electronic Payment System (EPS) is essential for the booming online shopping market. A successful EPS supports the transfer of electronic money and sensitive information with security, accuracy, and integrity between the seller and buyer over the Internet. SET, CyberCash, Paypal, and iKP are the most popular Credit Card-Based EPSs (CCBEPSs). Some CCBEPSs only use SSL to provide a secure communication channel. Hence, they only prevent "Man in the Middle" fraud but do not protect the sensitive cardholder information such as the credit card number from being passed onto the merchant, who may be unscrupulous. Other CCBEPSs use complex mechanisms such as cryptography, certificate authorities, etc. to fulfill the security schemes. However, factors such as ease of use for the cardholder and the implementation costs for each party are frequently overlooked. In this paper, we propose a Web service based new payment system, based on ANSI X9.59-2006 with extra features added on top of this standard. X9.59 is an Account Based Digital Signature (ABDS) and consumer-oriented payment system. It utilizes the existing financial network and financial messages to complete the payment process. However, there are a number of limitations in this standard. This research provides a solution to solve the limitations of X9.59 by adding a merchant authentication feature during the payment cycle without any addenda records to be added in the existing financial messages. We have conducted performance testing on the proposed system via a comparison with SET and X9.59 using simulation to analyze their levels of performance and security.

현행 응급의료비 미수금대불제도에 대한 법리적 고찰 (Legalistic Study Of The Subrogation Payment System In Emergency Medicine)

  • 송기민;김윤신;이영호
    • 의료법학
    • /
    • 제9권2호
    • /
    • pp.139-179
    • /
    • 2008
  • This study was carried out to investigate the present conditions and discuss the issues of the Subrogation payment system in emergency medicine. Hitherto preceding study is focusing on controversial of management or efficient control of Subrogation payment system in emergency medicine. The object of this study is legalistic study of the Subrogation payment system in emergency medicine. The Current legalistic issues of subrogation payment system in emergency medicine are the following aspects; Firstly, there are a claimant conformity to the standard limit. Secondly, the review system is not propriety of the promptitude. Thirdly, there is a lack of propriety claim for compensation of a support responsible person. Fourthly, there are objectivity and fairness of administrative appeal system Fifthly, the point where one starts counting of extinctive prescription. Sixthly, the administrative punishment is an illogical system. Lastly, equity and fairness of the Review Agency, as an insurance company and an review Agency are sameness In conclusion, we ought to improvement an unnecessary obstructions of promptitude in the Subrogation payment system in emergency medicine, and ensure a right of emergency medicine without delay.

  • PDF

Enhanced Mutual Authentication Scheme based on Chaotic Map for PCM in NFC Service Environment

  • Park, Sung-Wook;Lee, Im-Yeong
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제11권2호
    • /
    • pp.1180-1200
    • /
    • 2017
  • Currently, automated payment services provide intuitive user interfaces by adapting various wireless communication devices with mobile services. For example, companies like Samsung, Google, and Apple have selected the NFC payment method to service payments of existing credit cards. An electronic payment standard has been released for NFC activation within Korea and will strengthen the safety of payment service communications. However, there are various security risks regarding the NFC-based electronic payment method. In particular, the NFC payment service using the recently released lightweight devices cannot provide the cryptographic strength that is supported by many financial transaction services. This is largely due to its computational complexity and large storage resource requirements. The chaotic map introduced in this study can generate a highly complicated code as it is sensitive to the initial conditions. As the lightweight study using the chaotic map has been actively carried out in recent years, associated authentication techniques of the lightweight environment have been released. If applied with a chaotic map, a high level of cryptographic strength can be achieved that can provide more functions than simple XOR operations or HASH functions. Further, this technique can be used by financial transaction services. This study proposes a mutual authentication technique for NFC-PCM to support an NFC payment service environment based on the chaotic map.