home news blogs forums events research newsletter whitepapers careers


UBM Network Computing
TechWeb
HOT PICKS

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers






Rushing Headlong After E-Commerce Gold: Is the Mine Safe?
December 15, 1998

By Christy Hudgins-Bonafield  The early '90s scramble to get rich quick as an ISP has become a rush for e-commerce gold--with electronic nuggets luring hundreds of commerce service provider (CSP) startups worldwide. But there are major questions about the way some of these startups are handling security.

For business merchants, especially smaller companies, the competitive pricing offered by some CSPs makes them an obvious, and perhaps the only affordable, path to e-commerce. The danger is that many CSPs are little more than garage operations, without telephone listings or even rudimentary security. Even larger, well-credentialed CSPs may have primitive ideas about what constitutes good security.



Some CSPs transmit credit-card information without any form of encryption. Others use a single firewall for their entire operation, rather than establish internal firewalls between applications. We've found CSPs that don't use firewalls at all, relying instead on the filtering capabilities of their routers. Some merely defer all security to the merchants hosting at their facilities.

Jim Balderston, an analyst with Zona Research, suggests that merchants who rely on router-based security alone to protect credit-card information may leave themselves open to charges of failing to exercise due diligence. "Banks and credit-card companies are now putting their servers in secure locations the way that merchants put their cash proceeds in a vault," Balderston says.

While credit-card liability is rarely a major issue for those who buy from e-commerce sites, the liability for merchants can be significant. Forrester Research estimates that a $1 million theft from an online bank (say, 1,000 accounts at $1,000 each) will cascade into a $100 million loss after factoring in network downtime, audits, bad publicity, insurance hikes and fleeing customers. More sobering, Forrester further asserts that about half of all online attacks succeed.


Article Sections

Cashing In on E-Commerce

"The Electronic Crane: E-Commerce Infrastructure Builds Upward,"

"Who's Minding the Store? Before You Choose a CSP, It Pays To Investigate,"

"Four Solutions To Rev Up Your E-Commerce Business,"
CSP Surveys

Breadth of Service Survey

Infrastructure Survey


How we scored the CSPs

Small Merchant Services

Mid-Tier Merchant Services

High-End Merchant Services


Company Directory
to browse our data, starting with a particular company.

Network Computing Links
allows you to request additional product information from our advertisers.

Print This Page


e-mail E-mail this URL






Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Purchase Today: $299
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Media Kit  |   Briefing Centers
Other Techweb Sites:   InformationWeek Reports  |  Intelligent Enterprise  |  Light Reading  |  InformationWeek
Techweb  |  Dark Reading  |  Network Computing Germany  |   Byte & Switch  |  bMighty  |  Small Biz Resource  |  InformationWeek Analytics
Copyright © 2008  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights