Is PCI “Mission Accomplished”? Hardly
January 25th, 2008There are quite a few merchants who feel that the drive to PCI compliance has caused them to make some security technology choices that are contrary to their system architectures and prior planning. Others have expressed concerns that they are simply not able to process all the data they are collecting from their various auditing and logging tools, which means they are getting little value from the many thousands of dollars they have spent, other than the "PCI Compliant" seal of approval. Read more...
Cards issued by European banks when used online cross border don't usually support AVS checks. So, when a European card is used with a billing address that's in the US, an ecom merchant wouldn't necessarily know that the shipping zip code doesn't match the billing code.
-Marc
