The Register

Reg Hardware

Flame

@ Antony Pearce

The idea of using bank-supplied card readers in the home was a fantastic one, and I never understood why it didn't take off. And it was because "People decided it was all too hard?"

What? Let's see:

Normal online transaction: I have to type my name, address, card PAN and CVC number, expiry date, and the cardholder name before submitting the transaction. Any fraudster can bang in details copied from a card along with a fake address.

Card-reader transaction: I swipe my card through a reader, key my PIN, and the bank does the rest. Far more secure, and it ensures that any goods ordered are delivered to the address the cardholder has registered with the bank, not some arbitrary address specified by a fraudster.

Anybody who thought this system was harder than the usual online formfest needs to be dragged out into the street and clubbed to death for the good of humanity.

Forums

Forgotten password