Announcement

Collapse
No announcement yet.

Auth.net warning email

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Auth.net warning email

    Anything to worry about?



    Dear Authorize.Net Merchant:

    On the evening of March 21, 2016, between 4:13 PM and 11:49 PM Pacific time, an error occurred following an Authorize.Net system update that resulted in some merchants receiving transaction responses that contained their customers' full, unmasked card number associated with the transaction, rather than the masked, last four digits (Ex. XXXX 1234) normally included in the response. Our internal team identified and resolved the issue.

    Our records indicate that some of your transactions may have been affected. As with all your transaction processing, these responses were returned via a secure, encrypted connection. However, it is recommended that you immediately contact your e-commerce/shopping cart provider or web developer to determine whether you typically store the card number field from the transaction response data you receive from Authorize.Net. Please refer to the FAQs below for further details regarding the card number field and its location in the transaction response.

    If you determine that any transaction responses from the timeframe above were stored in your systems and contain a full, unmasked card number (rather than just the last four digits), it's recommended you delete the full card number or take appropriate steps to securely store or mask the data to maintain your level of Payment Card Industry Data Security Standard (PCI DSS) compliance. Please contact your Merchant Service Provider or PCI DSS assessor for further information on PCI compliance or refer to the PCI DSS website.

    If you have any questions regarding this notice, please review the FAQs below or contact Customer Support.

    We apologize for any disruption this may have caused and thank you for being an Authorize.Net merchant.

    Sincerely,
    Authorize.Net
    Jason Fancett
    America's SPA-MART - "Where Spa Owners Shop SMART!"
    Check us out for all of your hot tub needs including spa covers, spa filters, spa chemicals and more.
    Miva Merchant forum users can use coupon code MIVAFORUM to receive $5 off your first order of $30 or more.

    #2
    Our CTO told me that the last four digit masking that Miva Merchant does is done internally and not by expecting that data to come back from the gateway, so if the entire card did come back, that field would not have been used or stored.
    David Hubbard
    CIO
    Miva
    [email protected]
    http://www.miva.com

    Comment

    Working...
    X