Transaction Verification is the term to describe the Internet-based security method of verifying that the actual content
of a transaction has not been altered, or additional transactions injected, by advanced fraudulent techniques such as
Man-in-the-Middle (MitM) and Man-in-the-Browser (MitB). Transaction Verification should not be confused with Transaction Authentication, which is simply a method of authenticating the identity of a user at the transaction level;
it does not include the verification of the integrity of the transaction content.
Transaction Verification must utilise either Out-of-band technology (the use of two separate channels) or an independent signing device, e.g. a programmable card-reader, capable of having transactional information re-keyed into it in order to create a code cryptographically linked to the underlying transaction detail. Whilst the latter has many drawbacks and limitations, especially regarding usability and convenience, VALid’s Out-of-Band approach provides a simple, intuitive solution that can be applied to any transaction regardless of type or length.
For further information, please download the white paper labelled "Intelligent Security: Countering Sophisticated Fraud ".
|