Skip to main content

CARTES considers questions of security

Ensuring the security of payment systems is essential to maintain consumer confidence. The conference track ‘EMV: Challenges and benefits’, looks at ways of improving that security. When a customer uses his payment card in a store, he expects that the system will be secure. The interaction between EMV payment cards and POS terminals is strictly controlled.
November 4, 2014 Read time: 2 mins

Ensuring the security of payment systems is essential to maintain consumer confidence.

The conference track ‘EMV: Challenges and benefits’, looks at ways of improving that security. When a customer uses his payment card in a store, he expects that the system will be secure. The interaction between EMV payment cards and POS terminals is strictly controlled.

However, despite the existence of many systems that encrypt the PAN moving between the card reader and the processing infrastructure, part of the PAN’s journey is still ‘en clair’ – unencrypted. Over the years, the industry has spent a great deal of time and money on enforcing compliance with PCI DSS across the payment industry. However, data breaches still happen.

Milos Dunjic, CTO, Cardis International, will present a new solution that implements PAN with format preserving encryption (FPE) inside the card’s EMV payment application and is fully under the card issuer’s control. The new system is said to be radically different from previous methods. The solution is said to be fully resistant to replay attacks, as it ensures that the PAN reference is valid for only a single transaction. Since POS terminals, merchant acquirer and payment network systems handle only a unique per transaction format preserving PAN references, this eliminates the danger of criminals stealing real PAN data and then using it in CNP payments. Following on from this presentation, Andreas Strobel, board member with the Smart Payment Association, will give a presentation that analyses the advantages and disadvantages of different implementations, reflecting different business models. He will assess the standardisation efforts for online payment using tokens.


‘End-to-end tokenisation of PAN between EMV-application/digital-wallet and issuer host’, 14:40-15:00, Room 3

‘A Secure Profile for Tokenization in E and M-Commerce’, 16:30-17:00, Room 3

Related Content

  • Control rooms adapt to tech changes
    July 8, 2019
    From IP-based systems to an increasing array of choice, traffic and transit management has changed a lot in the last few years. Adam Hill talks to some of the leading players in the control room business
  • New thinking needed on the transportation front
    December 10, 2014
    Having spent his working life in transportation, Larry Yermack gives his views on today’s technology challenges. I remember it vividly; it was the late 80s, soon after I started as CFO of the Triborough Bridge and Tunnel Authority and I was standing mid-span on the deck of the Verrazano Narrows Bridge on a Friday afternoon.
  • Smart parking key to sustainable urban mobility
    April 26, 2013
    Smart parking looks like a market poised to take off in the US. It could bring many benefits, not just for parking facility operators and their customers but also for society as a whole. Steven Bayless, senior director, telecommunications and telematics at ITS America, looks at some of the opportunities and challenges involved. Parking is an estimated $24-25 billion industry in the US and although highly fragmented, it is experiencing a growing trend towards consolidation and outsourcing of parking operatio
  • CARTES 2014 where ‘users on the move’ is the central theme
    October 24, 2014
    A message from Isabelle Alfano, Exhibition Director, CARTES Network ‘Users on the move’ is the central theme of this year’s show. A great number of services, devices and systems are built around a new way of life made to fit users’ mobility.