首页> 外文会议>International Conference on P2P, Parallel, Grid, Cloud and Internet Computing >Direct Debit Transactions: A Comprehensive Analysis of Emerging Attack Patterns
【24h】

Direct Debit Transactions: A Comprehensive Analysis of Emerging Attack Patterns

机译:直接借记交易:新兴攻击方式的综合分析

获取原文

摘要

In the recent years payment systems in Europe are evolved to a new scenario where transactions and retail payments take place according to the SEPA (Single Euro Payments Area) Regulation. SEPA is an initiative of the European banking industry aiming at making all electronic payments across the Euro area -- e.g. by credit card, debit card, bank transfer or direct debit -- as easy as domestic payments currently are. One of the payment schemes defined by the SEPA mandate is the SEPA Direct Debit (SDD) that allows a creditor (biller) to collect funds from a debtor's (payer's) account, provided that a signed mandate has been granted by the payer to the biller. Thanks to SDD consumers can make and receive no-cash euro payments with a single set of instructions and a single bank account. It is apparent that the use of this standard scheme facilitates the access to new markets by enterprises and public administrations and allows for a substantial cost reduction. However, the other side of the coin is represented by the security issues concerning this type of electronic payments. A study conducted by Center of Economics and Business Research (CEBR) of Britain, on behalf of Liverpool Insurance Company, showed that from 2006 to 2010 the Direct Debit frauds have increased of 288%. In this paper a comprehensive analysis of real SDD data provided by the EU FP7 LeanBigData project is performed in order to identify and classify emerging and sophisticated attack patterns that can be executed against an SDD service. The results of this data analysis will be used to inspire the design of a security system supporting analysts to detect Direct Debit frauds.
机译:近年来,欧洲的支付系统发展到一种新的场景,根据SEPA(单一欧元支付区)条例进行交易和零售支付。 SEPA是欧洲银行业的一项举措,旨在在整个欧元区进行所有电子支付,例如通过信用卡,借记卡,银行转帐或直接借记-就像目前的国内付款一样容易。 SEPA授权定义的付款方案之一是SEPA直接借记(SDD),它允许债权人(开票人)从债务人(付款人)的帐户中收取资金,但前提是付款人已向开票人授予了签字的授权书。借助SDD,消费者可以通过一套指令和一个银行账户进行欧元现金付款,并获得无现金付款。显然,使用此标准方案有助于企业和公共管理部门进入新市场,并可以大幅度降低成本。但是,硬币的另一面是与此类电子支付有关的安全性问题。英国经济与商业研究中心(CEBR)代表利物浦保险公司进行的一项研究显示,从2006年到2010年,直接借记欺诈已增加了288%。在本文中,对欧盟FP7 LeanBigData项目提供的真实SDD数据进行了全面分析,以识别和分类可以针对SDD服务执行的新兴和复杂攻击模式。数据分析的结果将用于启发安全系统的设计,该系统支持分析人员检测直接借记欺诈。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号