This comprehensive survey deliberated over the security of electronic payment systems. In our research, we focused on either dominant systems or new attempts and innovations to improve the level of security of the electronic payment systems. This survey consists of the Card-present (CP) transactions and a review of its dominant system i.e. EMV including several researches at Cambridge university to designate variant types of attacks against this standard which demonstrates lack of a secure "offline" authentication method that is one of the main purpose of using the smart cards instead of magnetic stripe cards which are not able to participate in authentication process, the evaluation of the EMV migration from RSA cryptosystem to ECC based cryptosystem 3. The evaluation of the Card-not-present transactions approaches including 3D Secure, 3D SET, SET/EMV and EMV/CAP, the impact of concept of Tokenization and the role of Blind Signatures schemes in electronic cash and E-payment systems, use of quantum key distribution (QKD) in electronic payment systems to achieve unconditional security rather than only computational assurance of the security level by using traditional cryptography, the evaluation of Near Field Communication (NFC) and the contactless payment systems such as Google wallet, Android Pay and Apple Pay, the assessment of the electronic currency and peer to peer payment systems such as Bitcoin. The criterion of our survey for the measurement and the judgment about the quality of the security in electronic payment systems was this quote: "The security of a system is only as strong as its weakest link"
翻译:这一全面调查涉及电子支付系统的安全性。在我们的研究中,我们侧重于要么主导系统,要么新的尝试和创新,以提高电子支付系统的安全性。这项调查包括卡片(CP)交易和对其主导系统的审查,即EMV, 包括剑桥大学的一些研究,目的是针对这一标准确定不同类型的攻击类型,这表明缺乏一种安全的“离线”认证方法,而该方法的主要目的是使用智能卡,而不是无法参与认证程序的磁条卡;评价从RSA加密系统向ECC加密系统的EMV迁移到ECC的加密系统。这项调查包括卡片(CP)交易和对其主导系统的审查,包括3D安全、3D安全、SET、SET/EMV和EMV/CAP, 评估卡片交易方法,其影响和盲人签名计划在电子现金和电子支付系统中的作用,在电子支付系统中仅使用量量键分配(QKD)实现无条件的安全性,而不是仅仅通过使用传统的加密系统对安全水平进行计算保证。 近地域通信系统(NFC)和同级支付标准等同级系统,例如国际货币支付和同级系统,例如国际货币的同级系统。