Skip to main content

CARTES considers questions of security

Ensuring the security of payment systems is essential to maintain consumer confidence. The conference track ‘EMV: Challenges and benefits’, looks at ways of improving that security. When a customer uses his payment card in a store, he expects that the system will be secure. The interaction between EMV payment cards and POS terminals is strictly controlled.
November 4, 2014 Read time: 2 mins

Ensuring the security of payment systems is essential to maintain consumer confidence.

The conference track ‘EMV: Challenges and benefits’, looks at ways of improving that security. When a customer uses his payment card in a store, he expects that the system will be secure. The interaction between EMV payment cards and POS terminals is strictly controlled.

However, despite the existence of many systems that encrypt the PAN moving between the card reader and the processing infrastructure, part of the PAN’s journey is still ‘en clair’ – unencrypted. Over the years, the industry has spent a great deal of time and money on enforcing compliance with PCI DSS across the payment industry. However, data breaches still happen.

Milos Dunjic, CTO, Cardis International, will present a new solution that implements PAN with format preserving encryption (FPE) inside the card’s EMV payment application and is fully under the card issuer’s control. The new system is said to be radically different from previous methods. The solution is said to be fully resistant to replay attacks, as it ensures that the PAN reference is valid for only a single transaction. Since POS terminals, merchant acquirer and payment network systems handle only a unique per transaction format preserving PAN references, this eliminates the danger of criminals stealing real PAN data and then using it in CNP payments. Following on from this presentation, Andreas Strobel, board member with the Smart Payment Association, will give a presentation that analyses the advantages and disadvantages of different implementations, reflecting different business models. He will assess the standardisation efforts for online payment using tokens.


‘End-to-end tokenisation of PAN between EMV-application/digital-wallet and issuer host’, 14:40-15:00, Room 3

‘A Secure Profile for Tokenization in E and M-Commerce’, 16:30-17:00, Room 3

Related Content

  • SafeRide: it’s time to act on cyberattacks
    May 10, 2019
    Cyber threats are increasing rapidly and conventional security measures are unable to keep up. Ben Spencer talks to SafeRide’s Gil Reiter about what OEMs can do now As more vehicles become connected, so the potential threats to their security increase. Gil Reiter, vice president of product management for security firm SafeRide, says the biggest ‘attack surface’ for connected cars is their internet connectivity - and the in-vehicle applications that use the internet connection. “The most vulnerable co
  • Alliance stages North American back office interoperability trial
    December 4, 2013
    JJ Eden, President and CEO of the Alliance for Toll Interoperability, talks to Jason Barnes about the new inter-agency hub, which will facilitate national transactions When it comes to achieving interoperability, the sheer diversity of technologies in operation in the US is perhaps the tolling industry’s greatest defining characteristic and its biggest challenge. The situation is in stark contrast with some other regions of the world, such as Europe where the use of common front-end Dedicated Short-Range
  • Anywhere card delivers prepaid contactless ticketing
    January 25, 2012
    David Crawford investigates a far reaching initiative in integrated travel. The Port Authority Transit Corporation (PATCO), an operator of high speed commuter rail in the north eastern US, is not one of the world's best known transit providers. Its 13 stations along a single east-west route (three of them interchanges with other regional commuter lines) handle 40,000 passengers a day, travelling to and from Philadelphia, the US' fifth most populous city.
  • Authorities look to MaaS for new solutions and cost savings
    July 18, 2017
    The structure of society and the way in which our cities work will be completely transformed by Mobility as a Service (MaaS), Finland’s minister of transport and communications Anne Berner, told ITS International’s recent MaaS Market conference 2017 in London. In her keynote address, Berner told a packed audience of more than 200 ITS professionals that MaaS has the potential to help governments around the world meet their big city targets such as the rate of employment, the environment, the efficient use of