The Implementation of a Full EMV Smartcard for a Point-of-Sale Transaction and Its Impact on the PCI DSS

Oludele Ogundele, Pavol Zavarsky, Ron Ruhl, Dale Lindskog · 2012

This paper argues that given the relevant known vulnerabilities and attacks against the EMV (named after Euro pay, MasterCard and Visa) technology, if the combined dynamic data authentication (CDA) card variant of the EMV payment card is deployed in a full EMV environment for point of sale terminal (POS) transaction, it becomes unnecessary to comply with the Payment Card Industry Data Security Standard (PCI DSS) unless the merchant with the POS terminal has been exposed to proven breach and even in that case the damage caused is likely to be minimal.

Read the paper · More papers on PaperTik