Security News South Africa

How to secure online transactions

Users can encounter online identity theft on a daily basis, from the well publicised Facebook cloning to low-tech clone accounts, where hackers send friend requests to the user's friends and then message them asking for help or money.
How to secure online transactions

"Being able to verify identity is essential to ensure that you are transacting with and communicating to a legitimately recognised and intended recipient," says LAWtrust certificate service manager, Megan Rehbock.

Secure Sockets Layer (SSL) is a commonly used protocol for managing the security of a message transmission on the Internet. SSL certificates are one means to protect users from fraudsters trying to con people into handing over valuable usernames and passwords or other identifying information. SSL certificates verify sites and provide consumers with confidence that the site they visit is the site they think it is, and not a spoof site set up for the express purpose of harvesting credit card information.

Domain-only validated certificates (DV) are verified through automated systems and contain no information that identifies the business responsible for operating the website.

Organisational validation (OV) or extended validation (EV) is issued only once the requesting company's name and address are verified through third parties, the certificate request is verified, and the credentials of the person requesting said certificate have been checked.

"The latter is more expensive but provides a much higher degree of security and accountability and can be seen as an effective tool for enhancing consumer confidence and trust online by enabling visual cues which make it possible to display prominent and consistent trust indicators in the address bar."

Trust indicators that are commonly used include:
• Green background for address bar on pages with valid EV certificates
• New security status bar with familiar gold padlock icon
• Alternating display of issuer and organisation name and country

Trust indicators are an easy and universal sign to users that they can rely on the integrity of the site they are visiting, which is what makes SSL certificates so valuable - they make things very easy for users, as they require nothing but a simple visual check.

For more information, go to www.lawtrust.co.za.

Let's do Biz