PCI Vendor Offers $100K For Any Customer Breached
September 30th, 2010To qualify for the money, a merchant doesn't have to be PCI compliant (although that's always nice). Indeed, it doesn't even have to experience a real breach, said SecureConnect Director of Marketing Kristyan Mjolsnes. For example, if the chain's bank or a card brand suspects a breach and insists the chain pay for a forensic probe, that would be covered, she said. If the chain gets nervous and wants to triple-check on its own, however, that would not be covered, Mjolsnes added, reasonably enough.Read more...
Cards issued by European banks when used online cross border don't usually support AVS checks. So, when a European card is used with a billing address that's in the US, an ecom merchant wouldn't necessarily know that the shipping zip code doesn't match the billing code.
-Marc
