Secure Online Transaction Algorithm: Securing Online Transaction Using Two-Factor Authentication

被引:9
作者
Gualdoni, Joseph [1 ]
Kurtz, Andrew [1 ]
Myzyri, Ilva [1 ]
Wheeler, Megan [1 ]
Rizvi, Syed [1 ]
机构
[1] Penn State Univ, Dept Imformat Sci & Technol, Altoona, PA 16601 USA
来源
COMPLEX ADAPTIVE SYSTEMS CONFERENCE WITH THEME: ENGINEERING CYBER PHYSICAL SYSTEMS, CAS | 2017年 / 114卷
关键词
Two-Factor Authentication; Secure Online Transaction Algorithm (SOTA); AES Encrpytion; SHA-256;
D O I
10.1016/j.procs.2017.09.016
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Identity theft is a very scary and real threat to everyone. In an attempt to give people peace of mind a new algorithm of mitigating risk is presented, the Secure Online Transaction Algorithm (SOTA). The proposed SOTA seeks to use two-factor authentication with the random codes. This form of user authentication has become widely accepted and many companies have started to implement this security feature. This can be utilized to identify users and establish secure way of purchasing items online. The proposed SOTA uses mobile devices to log into card accounts via an application to view the randomly generated code. This is then inputted on an online retailer's website when prompted in order to authenticate the individual making the purchase. This minimizes the possibility that an illegitimate user can use someone else's information to make fraudulent purchases. Without a valid code, identity thieves cannot use the stolen card information to make purchases. This in turns protects both the consumer and the credit card companies, which could be harmed financially. In order to better understand how our model could protect someone from having a stolen credit card used, we provide one case study to showcase the security. (c) 2017 The Authors. Published by Elsevier B.V.
引用
收藏
页码:93 / 99
页数:7
相关论文
共 8 条
  • [1] Anup G.C., 2013, CREDIT CARD SECURITY
  • [2] Bhusari V., 2011, INT J COMPUTER APPL, V20
  • [3] Hadnagy C., 2011, Social Engineering: The Art of Human Hacking
  • [4] Harrell E., 2015, VICTIMS IDENTITY THE, P1
  • [5] Hedayati A., 2012, Journal of Law and Conflict Resolution, V4, P1, DOI DOI 10.5897/JLCR11.044
  • [6] Reddy V. L., 2015, INT J COMPUTER APPL, V124
  • [7] Williams BR, 2012, PCI COMPLIANCE UNDER
  • [8] Yadva A., 2013, BACKGROUND RANDOM NU