TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Why is our payment card data being hijacked? It’s people – not PCI

2 pointsby cyphersanctusabout 11 years ago

1 comment

mschuster91about 11 years ago
What I don&#x27;t get is why CC payments cannot be done in a OAuth-like manner.<p>For RL payments, the card would, supplied with the correct PIN, generate an OAuth token that allows the merchant&#x27;s processor (and ONLY it!) to withdraw money from the card onto ONLY the merchant&#x27;s account.<p>For online payments, the customer would be redirected to a central, MasterCard&#x2F;Visa&#x2F;foo supplied site, once again giving out access tokens valid only for a specific destination account, as well as optionally locked money&#x2F;time limits for recurring withdrawals.