PA-DSS Formally Unveiled
Written by Evan SchumanApril 17th, 2008
The PCI Security Standards Council on April 15 officially rolled out version 1.1 of the Payment Application Data Security Standard (PA-DSS). The specifics of the standard were spelled out last November and this is just the expected formal unveiling.
This fall, the group said it will maintain a list of validated payment apps. Also this fall, the group is likely to introduce an entirely new version of the PCI specification. But that version is not expected to have any impact on which apps are considered compliant.
Cards issued by European banks when used online cross border don't usually support AVS checks. So, when a European card is used with a billing address that's in the US, an ecom merchant wouldn't necessarily know that the shipping zip code doesn't match the billing code.
-Marc
