다음을 통해 공유


When you need to care about Online Payment

Often times we need to pay using our credit/debit card to many E-Commerce portal. We must verify if the site is PCI compliant. But how a normal user would know? There are cases we easily fall into the trap. We need to be more careful and understand the complexity and save our hard earned money.

I was trying to pay in a portal where I got this screen and I wanted to ensure.

image

So I checked the SSL in https://www.ssllabs.com/ssltest/ and got the below output

This seems fine to me but few areas needs little attention

image

What worried me here that they are using SHA1 which is kind of not recommended anymore. Following are the few points about SHA-1

image

image

image

SHA-1 is not a major concern now but eventually will be.

As per the test web website's guide documentation https://www.ssllabs.com/projects/rating-guide/index.html, this seems manageable.

image

Now, I wanted to check their Certificate too,

image

Good thing is that they are using SHA256

As an end user you need to keep your money safe. There is a huge list of sites being compromised. You must check https://haveibeenpwned.com/PwnedWebsites

image

PCI DSS Quick Reference Guide v3.0

Be safe and play safe.

Namoskar!!!

Comments

  • Anonymous
    April 04, 2015
    hello

  • Anonymous
    April 04, 2015
    BE SMART AND BECOME RICH IN LESS THAN 3 DAYS....It all depends on how fast you can be to get the new PROGRAMMED blank ATM card that is capable of hacking into any ATM machine,anywhere in the world. I got to know about this BLANK ATM CARD when I was searching for job online about a month ago..It has really changed my life for good and now I can say I'm rich and I can never be poor again. The least money I get in a day with it is about $2,000.(two thousand USD) Every now and then I keeping pumping money into my account. Though is illegal,there is no risk of being caught ,because it has been programmed in such a way that it is not traceable,it also has a technique that makes it impossible for the CCTVs to detect you..For details on how to get yours today, email the hackers on : (atmmachinehackes@gmail.com). Tell your loved once too, and start to live large. That's the simple testimony of how my life changed for good...Love you all ...the email address again is atmmachinehackes@gmail.com