Ecommerce software home
Shopping Cart Software Forum for Ecommerce Templates
 
Home | Profile | Register | Active Topics | Members | Search | FAQ
Username:
Password:
Save Password
Forgot your Password?

Find us on Facebook Follow us on Twitter View our YouTube channel
Search our site
Forum Search
Google Site Search
 All Forums
 Technical
 PHP (Unix / Linux / Apache) versions
 PCI Compliance Shopping Cart Monitor
Author « Topic »  

mafluet
Starting Member

USA
29 Posts

Posted - 07/30/2024 :  09:01:30  
Hi everyone,

A security rep of ours recently let us know that a Shopping Cart Monitor of some form will be required in the new PCI Compliance version, something that monitors, detects, and analyzes payment page code for skimming.

Would any one be knowledgeable of a company or website that offers this? Or if ECT even has its own version of it?

Thanks,
Mike

mafluet
Starting Member

USA
29 Posts

Posted - 08/15/2024 :  08:45:55  
To give additional context, we are looking at the 6.4.3 and 11.6.1 PCI Compliance 4.0 guidelines.

6.4.3 details how each JavaScript on the page must be inventoried and documented, both static and dynamic.

11.6.1 essentially takes that collected data and requires you to analyze it, looking for potential areas/pieces of unauthorized modifications, scan is ran at least weekly.

Thanks,
Mike

Vince
Administrator

42756 Posts

Posted - 08/17/2024 :  01:47:57  
Hi Mike
I think Security Metrics offer something for this. But reading some of the results for if you even need this if you use an online process the results seem to be quite vague. For instance, if you are not storing or processing the credit card yourself then the payment systems are saying that "they've already done the work for you". Then send you to the PCI guidelines to decide if you need to be PCI compliant or not.

Vince

Click Here for Shopping Cart Software
Click Here to sign up for our newsletter
Click Here for the latest updater

mafluet
Starting Member

USA
29 Posts

Posted - 08/19/2024 :  06:40:15  
PCI Compliance has this super power of being very detailed yet still unclear of exact requirements for certain things haha. I will definitely check out Security Metrics to see what tools they offer, seems to be that a consultation will be needed to determine where we sit for compliance requirements.

Thanks,
Mike
  « Topic »  
Jump To:
Shopping Cart Software Forum for Ecommerce Templates © 2002-2022 ecommercetemplates.com
This page was generated in 0.02 seconds. Snitz Forums 2000