SYS-CON MEDIA Authors: Pat Romanski, Liz McMillan, Yeshim Deniz, Elizabeth White, Courtney Abud

News Feed Item

Fraud Still Retailers’ Top Payment Issue Despite EMV

Three years after the switch to new chip-based credit and debit cards, a study released today by the National Retail Federation and Forrester says payment card fraud is still a top concern for large U.S. retailers as criminals move their activities online.

“The implementation of EMV chip cards and chip card readers was supposed to dramatically reduce credit and debit card fraud,” the State of Retail Payments report said. “So why is fraud still the top concern for merchants?”

The report found that fraud was the top payment-related challenge faced by retailers, cited by 55 percent of those surveyed. The reason is largely that Europay-MasterCard-Visa chip cards have moved payment card fraud away from stores and toward online transactions, the report said, citing a Forter study showing a 13 percent increase in online fraud last year. A Federal Reserve study said online fraud rose from $3.4 billion in 2015 – the first year retailers were required to accept chip cards or face an increase in fraud liability – to $4.6 billion in 2016 and was an “increasing concern.”

“In a post-EMV world, fraud is shifting from in-person to ecommerce channels, so retailers have been busy bolstering their defenses to mitigate the increasing costs and risks of ecommerce fraud,” the NRF/Forrester report said.

To help fight fraud, the report found that retailers want better authentication of purchases no matter where they take place and that 33 percent have implemented 3-D Secure, a system marketed as Verified by Visa or MasterCard SecureCode that is intended to help authenticate online purchases.

For in-person purchases, 51 percent of merchants said biometrics would be the best way to verify transactions, and 53 percent expressed interest in implementing forms such as the fingerprint and facial recognition available on smartphones. But with that technology limited to phones rather than cards, 46 percent said personal identification numbers would be the best currently available way to approve card transactions.

For purchases made with cards, 95 percent of retailers said requiring PINs would improve security and 92 percent would implement it if it were available. While EMV cards in other countries are chip-and-PIN, virtually all EMV credit cards issued by U.S. banks have been chip-and-signature with PIN available only on debit cards. And the major credit card companies stopped requiring a signature last year.

“The chip in an EMV card makes it very difficult to counterfeit the card, but it does nothing to show whether the person trying to use the card is the legitimate cardholder,” NRF Senior Vice President and General Counsel Stephanie Martz said. “If we want to stop card fraud, we need a better way of authenticating users and it should be one that’s affordable, easy and safe. Someday the answer might be biometrics or technology that has yet to be invented but, in the meantime, we know PIN can stop criminals dead in their tracks. With no signatures, no PIN and no biometrics, what we have right now is no authentication at all.”

NRF has long argued that PIN is important because the chip in EMV cards only prevents the use of counterfeit cards while not stopping lost or stolen cards, and a PIN can also provide a backup for cases where the chip malfunctions or is tampered with.

In addition to the focus on cards, retailers have also been installing technology to fight data breaches and thereby keep criminals from stealing card data that can then be used to commit fraud. The report found 89 percent expect to have tokenization in place by the end of next year, and that 80 percent plan to do the same with point-to-point encryption.

The second-biggest concern was the cost of accepting payment cards, including the swipe fees banks charge to process transactions, cited by 45 percent. While the survey found 49 percent of retailers have taken advantage of routing options required as part of a cap on debit card swipe fees passed by Congress in 2010, rising swipe fees for credit cards remain the subject of litigation between retailers and the card industry. Chargebacks of disputed purchases, which increased after implementation of EMV for some retailers, were the third-biggest concern, cited by 35 percent.

“Eliminating fraud and improving authentication are clearly top priorities for retailers,” Brendan Miller, principal analyst at Forrester, said. “As the answers to these challenges are found, the key will be finding ways to implement the solutions in a way that provides a frictionless experience for consumers.”

About NRF

The National Retail Federation is the world’s largest retail trade association. Based in Washington, D.C., NRF represents discount and department stores, home goods and specialty stores, Main Street merchants, grocers, wholesalers, chain restaurants and internet retailers from the United States and more than 45 countries. Retail is the nation’s largest private-sector employer, supporting one in four U.S. jobs — 42 million working Americans. Contributing $2.6 trillion to annual GDP, retail is a daily barometer for the nation’s economy. NRF.com

About Forrester

Forrester (Nasdaq: FORR) is one of the most influential research and advisory firms in the world. We work with business and technology leaders to develop customer-obsessed strategies that drive growth. Forrester’s unique insights are grounded in annual surveys of more than 675,000 consumers and business leaders worldwide, rigorous and objective methodologies, and the shared wisdom of our most innovative clients. Through proprietary research, data and analytics, custom consulting, exclusive executive peer groups, and events, the Forrester experience is about a singular and powerful purpose: to challenge the thinking of our clients to help them lead change in their organizations.

PERMALINK

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
If you are part of the cloud development community, you certainly know about “serverless computing,” almost a misnomer. Because it implies there are no servers which is untrue. However the servers are hidden from the developers. This model eliminates operational complexity and increases developer productivity. We came from monolithic computing to client-server to services to microservices to the serverless model. In other words, our systems have slowly “dissolved” from monolithic to function-...
xMatters helps enterprises prevent, manage and resolve IT incidents. xMatters industry-leading Service Availability platform prevents IT issues from becoming big business problems. Large enterprises, small workgroups, and innovative DevOps teams rely on its proactive issue resolution service to maintain operational visibility and control in today's highly-fragmented IT environment. xMatters provides toolchain integrations to hundreds of IT management, security and DevOps tools. xMatters is the ...
CoreOS extends CoreOS Tectonic, the enterprise Kubernetes solution, from AWS and bare metal to more environments, including preview availability for Microsoft Azure and OpenStack. CoreOS has also extended its container image registry, Quay, so that it can manage and store complete Kubernetes applications, which are composed of images along with configuration files. Quay now delivers a first-of-its-kind Kubernetes Application Registry that with this release is also integrated with Kubernetes Helm...

VANCOUVER, Canada, Aug. 29, 2018 /PRNewswire/ -- Open Source Summit North America – The Cloud Native Computing Foundation® (CNCF®), which sustains and integrates open source technologies like Kubernetes® and Prometheus™, today announced that Google Cloud has begun transferring ownership and management of the Kubernetes project's cloud resources to CNCF community contributors. Google Cloud will help fund this move with a ...

To enable their developers, ensure SLAs and increase IT efficiency, Enterprise IT is moving towards a unified, centralized approach for managing their hybrid infrastructure. As if the journey to the cloud - private and public - was not difficult enough, the need to support modern technologies such as Containers and Serverless applications further complicates matters. This talk covers key patterns and lessons learned from large organizations for architecting your hybrid cloud in a way that: Su...
Serverless Computing or Functions as a Service (FaaS) is gaining momentum. Amazon is fueling the innovation by expanding Lambda to edge devices and content distribution network. IBM, Microsoft, and Google have their own FaaS offerings in the public cloud. There are over half-a-dozen open source serverless projects that are getting the attention of developers.
Platform9, the open-source-as-a-service company making cloud infrastructure easy, today announced the general availability of its Managed Kubernetes service, the industry's first infrastructure-agnostic, SaaS-managed offering. Unlike legacy software distribution models, Managed Kubernetes is deployed and managed entirely as a SaaS solution, across on-premises and public cloud infrastructure. The company also introduced Fission, a new, open source, serverless framework built on Kubernetes. These ...
As Apache Kafka has become increasingly ubiquitous in enterprise environments, it has become the defacto backbone of real-time data infrastructures. But as streaming clusters grow, integrating with various internal and external data sources has become increasingly challenging. Inspection, routing, aggregation, data capture, and management have all become time-consuming, expensive, poorly performing, or all of the above. Elements erases this burden by allowing customers to easily deploy fully man...
IT professionals are also embracing the reality of Serverless architectures, which are critical to developing and operating real-time applications and services. Serverless is particularly important as enterprises of all sizes develop and deploy Internet of Things (IoT) initiatives. Serverless and Kubernetes are great examples of continuous, rapid pace of change in enterprise IT. They also raise a number of critical issues and questions about employee training, development processes, and opera...
The widespread success of cloud computing is driving the DevOps revolution in enterprise IT. Now as never before, development teams must communicate and collaborate in a dynamic, 24/7/365 environment. There is no time to wait for long development cycles that produce software that is obsolete at launch. DevOps may be disruptive, but it is essential. DevOpsSUMMIT at CloudEXPO expands the DevOps community, enable a wide sharing of knowledge, and educate delegates and technology providers alike.
As you know, enterprise IT conversation over the past year have often centered upon the open-source Kubernetes container orchestration system. In fact, Kubernetes has emerged as the key technology -- and even primary platform -- of cloud migrations for a wide variety of organizations. Kubernetes is critical to forward-looking enterprises that continue to push their IT infrastructures toward maximum functionality, scalability, and flexibility.
This month @nodexl announced that ServerlessSUMMIT & DevOpsSUMMIT own the world's top three most influential Kubernetes domains which are more influential than LinkedIn, Twitter, YouTube, Medium, Infoworld and Microsoft combined. NodeXL is a template for Microsoft® Excel® (2007, 2010, 2013 and 2016) on Windows (XP, Vista, 7, 8, 10) that lets you enter a network edge list into a workbook, click a button, see a network graph, and get a detailed summary report, all in the familiar environment of...
The Kubernetes vision is to democratize the building of distributed systems. As adoption of Kubernetes increases, the project is growing in popularity; it currently has more than 1,500 contributors who have made 62,000+ commits. Kubernetes acts as a cloud orchestration layer, reducing barriers to cloud adoption and eliminating vendor lock-in for enterprises wanting to use cloud service providers. Organizations can develop and run applications on any public cloud, such as Amazon Web Services, Mic...
Because Linkerd is a transparent proxy that runs alongside your application, there are no code changes required. It even comes with Prometheus to store the metrics for you and pre-built Grafana dashboards to show exactly what is important for your services - success rate, latency, and throughput. In this session, we'll explain what Linkerd provides for you, demo the installation of Linkerd on Kubernetes and debug a real world problem. We will also dig into what functionality you can build on ...
At CloudEXPO Silicon Valley, June 24-26, 2019, Digital Transformation (DX) is a major focus with expanded DevOpsSUMMIT and FinTechEXPO programs within the DXWorldEXPO agenda. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive over the long term. A total of 88% of Fortune 500 companies from a generation ago are now out of business. Only 12% still survive. Similar percentages are found throug...