[prev in list] [next in list] [prev in thread] [next in thread] 

List:       websecurity
Subject:    Re: [WEB SECURITY] Vulnerabilities at PCI DSS sites
From:       Lucian Corlan <lucian.corlan () gmail ! com>
Date:       2011-10-28 5:57:56
Message-ID: CALoRPss5RAXKqSfS1g8vnhZ=7aSH4ZQuBrAd_5CKfDe71Xuc0Q () mail ! gmail ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


PCI DSS applies to all companies that process and store cardholders data,
including banks with in house processing.

Lucian Corlan
On 27 Oct 2011 19:31, "Kristen Eisenberg" <kristen.eisenberg@yahoo.com>
wrote:

> > only in Ukraine, but worldwide) isn't PCI DSS certified?
>
> PCI DSS is intended for Merchants not EPS.
>
> > 2. Don't Visa and MasterCard asking from EVERY company and bank (or at
> list
> > large ones) which work with cards to be PCI DSS compliant?
>
> Banks are excluded i.e. PCI DSS is an agreement specified by the Bank
> to the Merchant and not vice versa.
>
> > 3. Does the company, owner of EPS, is deceiving people by not having PC=
I
> DSS
> > and putting "funky" Verified by VISA and MasterCard SecureCode logos?
>
> Their intent is different.
>
>
> Kristen Eisenberg
> Billige Fl=FCge
> Marketing GmbH
> Emanuelstr. 3,
> 10317 Berlin
> Deutschland
> Telefon: +49 (33)
> 5310967
> Email:
> utebachmeier at
> gmail.com
> Site:
> http://flug.airego.de - Billige Fl=FCge vergleichen
>
> _______________________________________________
> The Web Security Mailing List
>
> WebSecurity RSS Feed
> http://www.webappsec.org/rss/websecurity.rss
>
> Join WASC on LinkedIn http://www.linkedin.com/e/gis/83336/4B20E4374DBA
>
> WASC on Twitter
> http://twitter.com/wascupdates
>
> websecurity@lists.webappsec.org
> http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.o=
rg
>
>

[Attachment #5 (text/html)]

<p>PCI DSS applies to all companies that process and store cardholders data, \
including banks with in house processing.</p> <p>Lucian Corlan</p>
<div class="gmail_quote">On 27 Oct 2011 19:31, &quot;Kristen Eisenberg&quot; &lt;<a \
href="mailto:kristen.eisenberg@yahoo.com">kristen.eisenberg@yahoo.com</a>&gt; \
wrote:<br type="attribution"><blockquote class="gmail_quote" style="margin:0 0 0 \
.8ex;border-left:1px #ccc solid;padding-left:1ex"> <div><div \
style="color:#000;background-color:#fff;font-family:times new roman, new york, times, \
serif;font-size:12pt"><div>&gt; only in Ukraine, but worldwide) isn&#39;t PCI DSS \
certified?<br><br>PCI DSS is intended for Merchants not EPS.<br> <br>&gt; 2. \
Don&#39;t Visa and MasterCard asking from EVERY company and bank (or at list<br>&gt; \
large ones) which work with cards to be PCI DSS compliant?<br><br>Banks are excluded \
i.e. PCI DSS is an agreement specified by the Bank<br> to the Merchant and not vice \
versa.<br><br>&gt; 3. Does the company, owner of EPS, is deceiving people by not \
having PCI DSS<br>&gt; and putting &quot;funky&quot; Verified by VISA and MasterCard \
SecureCode logos?<br><br>Their intent is different.</div> \
<div><br></div><div><br></div><div>


<div class="MsoNormal"><span lang="DE">Kristen Eisenberg</span></div>

<div class="MsoNormal"><span lang="DE">Billige Flüge</span></div>

<div class="MsoNormal"><span lang="DE">Marketing GmbH</span></div>

<div class="MsoNormal"><span lang="DE">Emanuelstr. 3,</span></div>

<div class="MsoNormal"><span lang="DE">10317 Berlin</span></div>

<div class="MsoNormal"><span lang="DE">Deutschland</span></div>

<div class="MsoNormal"><span lang="DE">Telefon: +49 (33)</span></div>

<div class="MsoNormal"><span lang="DE">5310967</span></div>

<div class="MsoNormal"><span lang="DE">Email:</span></div>

<div class="MsoNormal"><span lang="DE">utebachmeier at</span></div>

<div class="MsoNormal"><span lang="DE"><a href="http://gmail.com" \
target="_blank">gmail.com</a></span></div>

<div class="MsoNormal"><span lang="DE">Site:</span></div>

<div class="MsoNormal"><span lang="DE"><a href="http://flug.airego.de" \
                target="_blank">http://flug.airego.de</a>
- Billige Flüge vergleichen</span></div></div></div></div><br>_______________________________________________<br>
 The Web Security Mailing List<br>
<br>
WebSecurity RSS Feed<br>
<a href="http://www.webappsec.org/rss/websecurity.rss" \
target="_blank">http://www.webappsec.org/rss/websecurity.rss</a><br> <br>
Join WASC on LinkedIn <a href="http://www.linkedin.com/e/gis/83336/4B20E4374DBA" \
target="_blank">http://www.linkedin.com/e/gis/83336/4B20E4374DBA</a><br> <br>
WASC on Twitter<br>
<a href="http://twitter.com/wascupdates" \
target="_blank">http://twitter.com/wascupdates</a><br> <br>
<a href="mailto:websecurity@lists.webappsec.org">websecurity@lists.webappsec.org</a><br>
 <a href="http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org" \
target="_blank">http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org</a><br>
 <br></blockquote></div>



_______________________________________________
The Web Security Mailing List

WebSecurity RSS Feed
http://www.webappsec.org/rss/websecurity.rss

Join WASC on LinkedIn http://www.linkedin.com/e/gis/83336/4B20E4374DBA

WASC on Twitter
http://twitter.com/wascupdates

websecurity@lists.webappsec.org
http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic