Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - The Time Is Now For EMV Adoption In The United States
Articles

The Time Is Now For EMV Adoption In The United States

ISBuzz TeamBy ISBuzz TeamMay 27, 2014Updated:July 5, 20245 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
emvcard2
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

According to a mid-March 2014 report issued by the Nilson Report, which covers the financial payments industry, the United States accounts for nearly half of the world’s credit card fraud and this fraud is pervasive from credit cards to debit cards to prepaid cards. The amounts lost to this theft is dramatic — $11.27 billion in 2012 which represents a nearly 15 percent increase over 2011.

While the issuers of those cards pay nearly two thirds of the loss, the reality is consumers and commercial customers pay for this fraud in the form of higher fees, lower interest rates and lost time and money when fraud is detected. The vast majority of the fraud occurs at the point of sale. In California, if a credit card is signed, merchants cannot legally ask to see identification.

The vast majority of fraud is due to “skimming.” Thieves extract data from the magnetic stripe off a card using a skimming device where the data is easily transferred to a fake card. The solution seems simple: move to a secure card that employs EMV technology which requires a four digit PIN to be entered at the time of purchase. But EMV security doesn’t work as well for online transactions, where most of those are made in the United States.

EMVCo, an organization driven by Visa and Mastercard, has defined a roadmap for EMV adoption in the US that considers the unique requirements for everyone involved in the transaction network from ATM providers, Merchants, Payment Processors, Automated Fuel Dispensers, and others. New liability for fraud shifts are defined at each stage to hold whichever part of the network fails to comply on time. The entire schedule is due to be completed by 2017.

REALSEC has tremendous experience with EMV is Europe and we’re poised to help our US banking customers comply with this new technology for US card transactions. But it’s important to understand, there is no federal requirement to deploy this technology so there’s no enforcement. Market forces are driving it and we think it’s about time.

EMV is an open-standard for secure payments and acceptance devices, developed to ensure interoperability between chip-based smart payment cards and secure payment terminals. Embedded chips provide powerful transaction security technology not available on traditional magnetic stripe cards. When EMV is fully deployed for US issuers and customers, there should be a dramatic reduction in card fraud.   Additionally, EMV cards will be fully interoperable with the international payments infrastructure, which today’s mag-stripe cardholders have trouble with when traveling abroad. Simply stated, EMV technology enhances cardholder verification methods and can be used for secure online transactions.

Walmart has already begun using EMV terminals at the point of sale for fast acceptance of EMV chip-and-PIN cards, but most major US retailers are slow to use EMV technology because it will not show a rapid return on investment. That said, EMV deployments are underway in at least 80 nations. EMVCo reports about 1.3 billion cards have been issued and there are nearly 21 million POS terminals that use these cards.

EMV cards go beyond these elements to include a third dimension:  storing payment information in a secure chip.  All cryptographically secure personalization is performed using issuer-specific keys so that it is virtually impossible to create a counterfeit EMV card that can be used to successfully conduct an EMV payment transaction.

Today’s next generation EMV dynamic cards behave exactly like multi-application cards, by including additional applications in the chip itself. For example applications for product loyalty, physical and logical access control, transportation, education cards, insurance and many more are easily programmed directly into the chipset.  This could bring new business opportunities for banks who adopt this technology, and could help fund some or all of the significant investment required for EMV adoption.

Besides reducing fraud, EMV allows users to conduct off-line transactions at terminals and can easily become the top technology used for mobile payments (Visa is linking EMV and NFC) as its simply more secure. With greater security, financial institutions can market this function and obtain greater cardholder retention.

As EMVCo explains, the biggest benefit of EMV is the reduction in card fraud resulting from counterfeit, lost and stolen cards. EMV also provides interoperability with the global payments infrastructure, ensuring that consumers with EMV chip payment cards can use their card on any EMV-compatible payment terminal. EMVCo cites the ability to support enhanced cardholder verification methods as an additional benefit of EMV technology, along with its ability to be used for secure online payment transactions.

The enhanced functionality for card authentication, verification and transaction authorization are three key security benefits of EMV.  By storing payment information on a secure chip instead of a magnetic stripe, and leveraging issuer-specific keys for all personalization, we believe it’s almost impossible to create a fake EMV card as fake mag-stipe cards are made.

Sebastian Munoz is CEO of Realsec Inc., a leading technology company providing cryptographic solutions in the fields of encryption, digital signature, PKI and time stamping for banking and payment systems, government and large enterprise. Visit his blog at

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read

Meta’s Smart Glasses Privacy Scandal Expands After Sama Credentials Found on the Dark Web

March 10, 20264 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}