How Visa Protects Your Data
fastcompany.com
fastcompany.com
uhh, right. two articles from the 90s put it in mclean, va: http://www.recordnet.com/apps/pbcs.dll/article?AID=/19940101...
Here you always have to at least sign the card (and the cashier checks the signature against the one on the card), but in most cases you have to enter your PIN number. And I live in fricking Slovenia who was, just 5 minutes ago, a part of a communist union ...
Anybody has an explanation for this lack of security in the states?
Also, Visa tracks your purchasing habits to an insane degree. More than once I've gotten a phone call asking if I actually bought some item. Finally, I likely wouldn't be liable for much if any of the goods purchased with a stolen card. So, all in all, I'm not terribly worried about that end of the security.
In practice, they're barely even looked at. There are various signature-trolling stories around the net (signing as mickey mouse, Hitler, random pictograms, etc) demonstrating this.
When I worked (thankfully briefly) in retail, I'd give every one at least a cursory check, and maybe a bit more detail and less tolerance of differences if it was a big-ticket item. I actually got chewed out by my boss occasionally for checking, since few of the other staff did, and it might "upset the customer".
In most cases, at least for Americans, if your credit card gets stolen, you aren't responsible for any of the fraudulent charges. I've had a credit card number stolen several times (about half travelling outside the US and half while in the US). I never lost a dime to any of the fraudulent charges, just several minutes of my time telling the credit card company.
For businesses like quick-service restaurants, the increased revenue is worth more to them than the potential losses to fraud.
Not that that's a bad thing, but I really don't believe they care about protecting our data. From personal experience, they seem to let any type of fraud occur on your credit card, and then if you protest, then they might reverse the charges. And then they issue you a new credit card number. They would prefer to fix the problem before, putting the onus on us to determine if fraud occurred, rather than actually prevent the fraud and protect our data.
--- obDisclosure: I am a merchant who has been defrauded hundreds of thousands of dollars and have no love for the credit card companies.
(from looking at job ads)
The only things I think they have I haven't seen before:
1) The concrete barrier and hair pin turn. Most data centers don't fear James Bond.
2) The air lifted mailroom.
You should have to have an open path out in that type of a situation.