E-Commerce Daniel Chromek.

Slides:



Advertisements
Similar presentations
Internet payment systems
Advertisements

Chapter 6 E-commerce Payment Systems. Traditional Payment Systems Cash Checking Transfers Credit Card Accounts Stored Value Accounts Accumulating Balance.
E-Commerce Payment Systems
SECURITY IN E-COMMERCE VARNA FREE UNIVERSITY Prof. Teodora Bakardjieva.
Understanding Networked Applications: A First Course Chapter 14 by David G. Messerschmitt.
Lect. 18: Cryptographic Protocols. 2 1.Cryptographic Protocols 2.Special Signatures 3.Secret Sharing and Threshold Cryptography 4.Zero-knowledge Proofs.
1 Pertemuan 12 Authentication, Encryption, Digital Payments, and Digital Money Matakuliah: M0284/Teknologi & Infrastruktur E-Business Tahun: 2005 Versi:
Chapter 13 Paying Via The Net. Agenda Digital Payment Requirements Fraud Detection Online Payment Methods Online Payment Types The Future Payment.
Electronic Transaction Security (E-Commerce)
1 Applications of Computers Lecture-3 2 E-Commerce 4 Almost all major companies have their homes on the web, mainly for advertising 4 Companies were.
Digital Payment Systems
Financial Transactions on Internet Financial transactions require the cooperation of more than two parties. Transaction must be very low cost so that small.
E-Money / Digital Cash Lin Huang. Money / Digital Cash What is Money –Coins, Bill – can’t exist on two places at one time –Bearer bonds: immediate cashable.
Conceptual Design of an E- commerce System Min Ding Smeal College of Business Administration Pennsylvania State University.
Traditional and Electronic Payment Methods Chapter 3.
Oz – Foundations of Electronic Commerce © 2002 Prentice Hall E-money.
EPS (Electronic payment system) is an online business process used for fund transfer using electronic means, i.e  Personal computers  services  Mobile.
Electronic Payment Systems University of Palestine University of Palestine Eng. Wisam Zaqoot Eng. Wisam Zaqoot March 2010 March 2010 ITSS 4201 Internet.
Supporting Technologies III: Security 11/16 Lecture Notes.
Copyright © 2002 Pearson Education, Inc. Slide 6-1.
BZUPAGES.COM Electronic Payment Systems Most of the electronic payment systems on internet use cryptography in one way or the other to ensure confidentiality.
MIS 3090 IT for Financial Services Digital Cash September 4, 2015.
Secure Electronic Transaction (SET)
E-Commerce Security Technologies : Theft of credit card numbers Denial of service attacks (System not availability ) Consumer privacy (Confidentiality.
Chapter 4 Getting Paid. Objectives Understand electronic payment systems Know why you need a merchant account Know how to get a merchant account Explain.
E-Commerce Security Professor: Morteza Anvari Student: Xiaoli Li Student ID: March 10, 2001.
Lecture 8 e-money. Today Secure Electronic Transaction (SET) CyberCash On line payment system using e-money ECash NetCash MilliCent CyberCoin.
_______________________________________________________________________________________________________________ E-Commerce: Fundamentals and Applications1.
Lecture 12 E-Commerce and Digital Cash. As communication technologies, such as the Internet and wireless networks, have advanced, new avenues of commerce.
Chapter 18: Doing Business on the Internet Business Data Communications, 4e.
Chapter 18: Doing Business on the Internet Business Data Communications, 4e.
E-commerce 24/12/ Electronic Commerce (E-Commerce) Commerce refers to all the activities the purchase and sales of goods or services. Marketing,
2/16/001 E-commerce Systems Electronic Payment Systems.
Chapter 4 E-commerce Security and Payment.
1. ◦ Intro ◦ Online shopping vs MOTO ◦ Credit card payments vs PayPal ◦ E-cash? 2.
OBJECTIVES  To understand the concept of Electronic Payment System and its security services.  To bring out solution in the form of applications to.
CIS-325: Data Communications1 CIS-325 Data Communications Dr. L. G. Williams, Instructor.
E-Payment Methods Fazal rehman shamil. 2001Daniel L. Silver2 Major Architectural Components of the Web Internet Browser Database Server Client 1 Server.
1 Chapter 7 WEB Security. 2 Outline Web Security Considerations Secure Socket Layer (SSL) and Transport Layer Security (TLS) Secure Electronic Transaction.
Electronic Money Lincoln Stein Whitehead Institute/MIT Center for Genome Research.
1 E-cash Model Ecash Bank Client Wallet Merchant Software stores coins makes payments accepts payments Goods, Receipt Pay coins sells items accepts payments.
1 Original Message Scrambled Message Public Key receiver Internet Scrambled+Signed Message Original Message Private Key receiver The Process of Sending.
Henric Johnson1 Chapter 7 WEB Security Henric Johnson Blekinge Institute of Technology, Sweden
April 20023CSG11 Electronic Commerce Payment systems John Wordsworth Department of Computer Science The University of Reading
Henric Johnson1 Secure Electronic Transactions An open encryption and security specification. Protect credit card transaction on the Internet. Companies.
Digital Payments STEP BY STEP INSTRUCTIONS FOR VARIOUS MODES OF PAYMENT: Cards, USSD, AEPS, UPI, Wallets.
Digital Payments STEP BY STEP INSTRUCTIONS FOR VARIOUS MODES OF PAYMENT: Cards, USSD, AEPS, UPI, Wallets.
E-Commerce Payment System
PAYMENT GATEWAY Presented by SHUJA ASHRAF SHAH ENROLL: 4471
Secure Electronic Transaction
BY GAWARE S.R. DEPT.OF COMP.SCI
Chapter 4 E-commerce Security and Payment.
Secure Electronic Transaction (SET) University of Windsor
From Web Security by Lincoln pp – 35-51
ELECTRONIC PAYMENT SYSTEM.
ELECTRONIC PAYMENT SYSTEMS
ECT 455/HCI 513 E-Commerce Web Site Engineering
ELC 200 DAY 25 & 26.
Lesson 4.2 Banking Services and Fees
Presentation transcript:

e-Commerce Daniel Chromek

What is e-Commerce? e-Commerce refers to all commercial transactions in witch one or more stages are processed electronicly

Properties of e-Commerce systems Security (SW,HW) – cryptography, smart cards, POS terminals Cost of transactions – micropayments online/offline systems – third side Anonymity and traceability (coins) Prepaid Pay-now Pay-later

Dangers associated with e-Commerce Communication Component security Establishment of identity

Security 1 – thread analysis Expected likehood of gaining access Damage caused by access Amount of effort required for execute attack Likehood that attacker would be detected

Security 2 – symetric cryptography Chanel

Security 3 – asymetric cryptography Chanel

Security 4 – Digital signatures merchant customer Goods, service

Security 5 – One-way hash functions ... dao32ie3qr90wsaa3 95rkq04msp54pwj0 f drl50rea3pr0357ms pjerm338r20smr376 e3053ma49emstuap ...

Security 6 – self security Adhere security informations (ISP recommendations) Antivirus defence Store access gaining means secure Back up Avoid active content (Active X, JavaScript) Look up for encrypion offered by ISP

Electronic Payment systems

Sending bank Recieving bank Money flow customer merchant

Dead e-payment systems

First Virtual Start in july '98, no cryptography Check-like, account based Online, traceable Clients to cybercash

Cyber cash Credit card based system (SET protocol)+debit card with authorised shops Cyber coins prepaid system for micropayments Online, traceable Discontinued in 2000 Special SW – Wallet Security: DES+768 bit RSA

Milicent Special for micropayments Cash like Online Traceable Didn't succeed on market

Alive electromic payment systems

NetCheque Distributed system – NetCheque servers (banks) Digitaly signed cheques – Kerberos Traceable, online, nonanonym Sigc=[Ecb(CSum_c),Tcb] Sigm=[Emb(CSum_m),Tmb]

e-Cash (DigiCash) Founder = David Chaum Fully anonymed (client) and traceable (blind electronic signatures – RSA blind protocol) System of digital coins – account based cash like Online Related to CAFE smartcard payment system e-Cash Wallet SW Noncostitency with different banks Problem: loss of coins after HDD crush

e-Cash 2 - Model -coin verification e-Cash bank -managing accounts -keeping database Widhdraw/ deposit coins New coins Coins verification Client Wallet Merchant SW Coins payments goods -keep coins -make payments -sell goods -make payments -accept payments

SET Standard of Visa and MasterCard PKI and CA used Developed by GTE Laboratories, IBM, MS, Netscape, SAIC, Terisa and Verisign Not for micropayments (high price for transaction) Online, traceable and account based system

SET 2 - model Financial network Recieving bank Emiting bank 1.customer choose goods Financial network 2.customer fill form 3.customer choose type of payment 4.customer send signed payment application to merchant Payment gateway 5. merchant authorise payment in emiting (customer's) bank through recieving (his) bank 6. merchant send goods internet 7. merchant apply for payment in emiting bank customer merchant internet

SET 3 – Security aspects Confidentiality Payment information confidentiality Form information confidentiality Integrity – all document integrity Authentification Customer authentification for PGW and merchant Merchant authentification for PGW and customer PGW authentification for merchant and customer

Questions?

Sources & download www.bsi.bund.de/english Jozef Uhler: Elektronické peniaze – diplom work Jaroslav Janáček: Certifikačná autorita – diplom work BSI : e-Commerce, IT Baseline Protections Download site: www.dundee.szm.sk/Projekty/projekty.html