Security and Privacy Aspects fo Smartflow Internet Payment System
نویسندگان
چکیده
Smart cards are replacing traditional magnetic cards for payment transactions. One of the main reasons is enhanced security capabilities that can be built in a smart card. With the high popularity of web technology, there is a trend towards smart cards being used as an electronic wallet for payment transactions on Internet. Most of the related work of smart card payment transactions concentrates only on the security aspects of hardware/firmware, encryption method and key management, or they only propose the online shopping protocol for uni-directional payment transaction based on the scenery of exact payment from the customer to merchant during business activity. We developed a prototype system called “SmartFlow” to demonstrate these kinds of business activities on Internet by smart card. The main focus of this paper is to present the framework of “SmartFlow” and some important security and privacy issues for bi-directional payment transaction with change among more than two parties involved business activity. Further, we present the application of downloading software license key from Internet into smart card in SmartFlow environment. We have already implemented a prototype “SmartFlow” system with these functionalities.
منابع مشابه
Prototyping Web-Based Smart Flow Multi-Application System using Smart Card Technology
These days smart cards are replacing traditional magnetic cards for payment transactions. One of the main reasons is the enhanced security capabilities built into a smart card. Most of the related works in smart card only concentrates on the single application such as network access control, prepaid phone card or debit card. With popularity in web technologies, there is a trend towards smart ca...
متن کاملAn Architecture for Security and Protection of Big Data
The issue of online privacy and security is a challenging subject, as it concerns the privacy of data that are increasingly more accessible via the internet. In other words, people who intend to access the private information of other users can do so more efficiently over the internet. This study is an attempt to address the privacy issue of distributed big data in the context of cloud computin...
متن کاملA NEW PROTOCOL MODEL FOR VERIFICATION OF PAYMENT ORDER INFORMATION INTEGRITY IN ONLINE E-PAYMENT SYSTEM USING ELLIPTIC CURVE DIFFIE-HELLMAN KEY AGREEMENT PROTOCOL
Two parties that conduct a business transaction through the internet do not see each other personally nor do they exchange any document neither any money hand-to-hand currency. Electronic payment is a way by which the two parties transfer the money through the internet. Therefore integrity of payment and order information of online purchase is an important concern. With online purchase the cust...
متن کاملSecurity Aspects of Inter-Vehicle Communications
Inter-Vehicular Communications (IVC) are a cornerstone of the future intelligent transportation systems. A crucial enabling component of IVC is its security and privacy. Indeed, as vehicular computing systems become interconnected, there will be new venues for attackers to exploit system vulnerabilities. In addition, proper security mechanisms can assist in law enforcement and automate payment ...
متن کاملImproving System Security and User Privacy in Secure Electronic Transaction (SET) with X.509 v3 Certificate
With the advancement of internets, user’s transaction is at ease, timely manner and effective wise through online payment method, so also cybercriminals become increasingly more prompt in areas like e-commerce sites, financial institutions, payment processes and other online transactions. Therefore the need for the system security and privacy became the central issues for the acceptance of onli...
متن کامل