Security certification in payment card industry: Testbeds, measurements, and recommendations

S Rahaman, G Wang, D Yao - Proceedings of the 2019 ACM SIGSAC …, 2019 - dl.acm.org
The massive payment card industry (PCI) involves various entities such as merchants, issuer
banks, acquirer banks, and card brands. Ensuring security for all entities that process …

Fear the reaper: Characterization and fast detection of card skimmers

N Scaife, C Peeters, P Traynor - 27th USENIX Security Symposium …, 2018 - usenix.org
Payment card fraud results in billions of dollars in losses annually. Adversaries increasingly
acquire card data using skimmers, which are attached to legitimate payment devices …

Cardpliance:{PCI}{DSS} Compliance of Android Applications

SY Mahmud, A Acharya, B Andow, W Enck… - 29th USENIX Security …, 2020 - usenix.org
Smartphones and their applications have become a predominant way of computing, and it is
only natural that they have become an important part of financial transaction technology …

Analysis of Payment Service Provider SDKs in Android

SY Mahmud, KV English, S Thorn, W Enck… - Proceedings of the 38th …, 2022 - dl.acm.org
Payment Service Providers (PSPs) provide software development toolkits (SDKs) for
integrating complex payment processing code into applications. Security weaknesses in …

Credit card fraud is a computer security problem

ST King, N Scaife, P Traynor, Z Abi Din… - IEEE Security & …, 2021 - ieeexplore.ieee.org
Credit Card Fraud Is a Computer Security Problem Page 1 1540-7993/21©2021IEEE
Copublished by the IEEE Computer and Reliability Societies March/April 2021 65 Editors …

Boxer: Preventing fraud by scanning credit cards

Z Abi Din, H Venugopalan, J Park, A Li, W Yin… - 29th USENIX Security …, 2020 - usenix.org
Card-not-present credit card fraud costs businesses billions of dollars a year. In this paper,
we present Boxer, a mobile SDK and server that enables apps to combat card-not-present …

Swiped: Analyzing ground-truth data of a marketplace for stolen debit and credit cards

M Aliapoulios, C Ballard, R Bhalerao… - 30th USENIX Security …, 2021 - usenix.org
This paper presents the first empirical study of ground-truth data from a major underground
shop selling stolen credit and debit cards. To date, there is little quantitative knowledge …

Kiss from a rogue: Evaluating detectability of pay-at-the-pump card skimmers

N Scaife, J Bowers, C Peeters… - … IEEE Symposium on …, 2019 - ieeexplore.ieee.org
Credit and debit cards enable financial transactions at unattended" pay-at-the-pump" gas
station terminals across North America. Attackers discreetly open these pumps and install …

Messy states of wiring: Vulnerabilities in emerging personal payment systems

J Lou, X Yuan, N Zhang - 30th USENIX Security Symposium (USENIX …, 2021 - usenix.org
This paper presents our study on an emerging paradigm of payment service that allows
individual merchants to leverage the personal transfer service in third-party platforms to …

[图书][B] Sensitive Data Risks Analysis in Emerging Online Platforms

J Lou - 2023 - search.proquest.com
As the digital world evolves, emerging online platforms have become essential tools in our
daily life. However, their rapid expansion has spurred an unprecedented increase in the …