Уровень 0 · материалов: 2
В кластер входят документы, касающиеся механизмов работы и безопасности PIN-кодов банковских карт, и не входят документы о защите SIM-карт.
Общие признаки: банковские карты, безопасность PIN-кодов, процесс верификации платежей
Группа выше: Платёжные карты: устройство и работа
Смысл: The main idea is that whether a PIN is requested during a card payment depends on the intersection of the Cardholder Verification Method (CVM) lists stored on both the EMV card (set by the issuer) and the POS terminal (set by the acquirer).
Payment verification (PIN vs. signature) is determined by matching the CVM lists of the EMV card and the POS terminal.
Смысл: The main idea is that while bank PIN codes are generally more random and secure than other digital passwords, a significant minority of users still rely on predictable patterns (like birthdays), creating a vulnerability that could be mitigated by banning common PIN combinations.
Research shows bank PINs are more secure than general passwords, but the prevalence of birthday-based codes remains a vulnerability that could be solved by banning the 100 most popular combinations.