opinion

Fighting Growing Ecommerce Fraud

Fighting Growing Ecommerce Fraud

Well, it’s that time of year again, and I am not talking about pumpkin spice lattes, leaves changing colors and the roving posses of trick-or-treaters, although that’s been happening too. Because of previous pandemic lockdowns, consumers have been advised to start their Christmas shopping early — which means the Christmas holiday shopping season has effectively been bumped up. As a small business owner, you should know what that means. In the past, this would be the time of year every business owner looks forward to. But it seems like small businesses cannot catch a break these days.

First, the good news: consumers have received stimulus checks, businesses are reopening and people are going back to work. As a result, consumer spending is rebounding and folks are ready to buy. The bad news: unfortunately, many stores have empty shelves due to shipping challenges and supply-chain bottlenecks.

Excessive chargebacks can easily cause you to lose your existing processing and you might find your business classified as high-risk, which will result in higher fees for you when you find a new processor.

Even with so much unpredictability, the holidays should be the “most wonderful time of the year” when it comes to sales, whether you have a brick-and-mortar business with an online presence, or your business is strictly internet-based. Unfortunately, while you are dealing with trying to get the product sold and in the hands of your customer, there are criminals out there that are going to do their best to cut into your profit margins.

WHAT IS ECOMMERCE FRAUD?

Ecommerce fraud is a broad topic that covers a wide range of situations. In a nutshell, ecommerce fraud is any fraud that occurs as the result of an online purchase. Identity theft can fall under this category, as well as the obvious credit card fraud, “friendly fraud” and refund fraud. As more businesses have transitioned to ecommerce, the instances of fraud have grown exponentially as have the methods of committing ecommerce fraud.

In the early days of the internet, a popular method of committing credit card fraud was “credit card banging.” In those days, card banging occurred when a website operator used a user's credit card information to enroll them in several subscriptions.

The main harm this caused is that people became wary of making online purchases. Today, this method has evolved to target the ecommerce merchant; you may know it as card testing, account testing or card checking. As you are likely aware, cybercriminals harvest credit card numbers and sell them on what is called the Dark Web. A couple of months ago, a new cybercriminal site reportedly leaked one million stolen credit card numbers to promote themselves to potential buyers.

As one might imagine, trying to verify whether one million credit cards are valid or not, with the correct CVV number, expiration date and zip code, would be quite time-consuming. However, scripts are available that will allow criminals to test hundreds of credit card numbers every hour. These stolen credit cards will be tested by purchasing hard goods, buying virtual services, paying bills and even making donations to charities. The reality is that if you accept credit cards over the internet, you are vulnerable to ecommerce fraud.

THE COST OF CARD CHECKING

Card checking can appear innocent enough; a customer is attempting to make a small purchase with their credit card and the card is denied for one reason or another, so your customer decides to use a different card, which works. Unless you are paying very close attention, you probably do not even know that your customer had one card denied; you just know that you made a sale.

The problem is that the merchant paid a small fee for both of those credit cards. If a cybercriminal runs a script that tests 20,000 credit cards, that would be $4,000 in fees charged to your account! Even if you did make a few sales from those tests, you can be sure that they will result in chargebacks and the associated chargeback fees. 

PROTECTING YOURSELF AGAINST CARD CHECKING

Virtually every merchant that accepts credit cards is a potential victim of card checking but it really is one of the easiest ecommerce fraud methods to prevent. You can do that by adding CAPTCHA to your checkout page. Any decent shopping cart should have this option available, and you should absolutely use it.

You can have the best-looking order form known to man, but if you do not set it up properly, it will not be of much use in minimizing fraud. Some countermeasures include requesting the CVV code, checking addresses and zip codes, limiting checkout attempts and blocking repeated transactions from the same IP address. 

If you find yourself hiring seasonal help that has access to the processing back end, be sure they get their own login credentials and when the seasonal work ends, terminate those logins. You should also make a monthly habit of changing the logins/passwords of your regular employees.

While you will want to be especially vigilant during the holiday season, the fact is that because of the pandemic, the growth of ecommerce is faster than ever and is unlikely to subside. This means it is more important than ever for you to maintain your PCI compliance and work with companies that have the experience to help you minimize these threats. This should be an especially profitable time of year; make sure it is you and not cybercriminals that are turning a nice profit. Good luck!

Jonathan Corona has over 15 years of experience in the electronic payments industry. As MobiusPay’s COO, Corona is primarily responsible for day-to-day operations as well as reviewing and advising merchants on a multitude of compliance standards set forth by the card associations. MobiusPay specializes in merchant accounts in the U.S., EU and Asia. Follow them @MobiusPay on Twitter, Facebook and IG.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More Articles

trends

AI Is Coming: A Look at What's Ahead and Its Implications

The AI era has dawned, and the impact of this technology is beginning to be felt in the online adult industry. We are already seeing a plethora of content, synthetic interactions and customizable avatars enabled by artificial intelligence.

Alejandro Freixes ·
opinion

Navigating Fraud Prevention in Credit Card Transactions

In the digital age, credit card transactions are essential to global commerce, providing unmatched convenience for consumers and businesses alike. With this convenience, however, comes the risk of credit card fraud, which can result in considerable financial losses and harm brand reputation.

Jonathan Corona ·
opinion

A Guide to Avoiding Scams in Hard Link Media Buying

‘If it sounds too good to be true, it probably is.” So cautionary wisdom reminds us, yet people still get scammed all the time. Fortunately, there are “red flags” you can watch for to help you identify scams and thereby avoid them.

Juicy Jay ·
opinion

The Dos and Don'ts of AI-Generated Content

AI is a hot topic. From automation to personal assistance to content generation, AI technology is already impacting our daily lives. Many industries, including adult, have had positive results using AI for customer support and marketing.

Cathy Beardsley ·
opinion

Strategic Upscaling of Non-4K Content

If content is king in adult, then technical quality is the throne upon which it sits. Technical quality drives customer acquisition and new sales, while cementing retention and long-term loyalty.

Brad Mitchell ·
profile

'Traffic Captain' Andy Wullmer Braves the High Seas as Spirited Exec

Wullmer networked and hobnobbed, gaining expertise in everything from ecommerce to SEO and traffic, making connections and over time rising through the ranks of several companies to become CEO of the mobile business arm of TrafficPartner.

Alejandro Freixes ·
opinion

To Cloud or Not to Cloud, That Is the Question

Let’s be honest. It just sounds way cooler to say your business is “in the cloud,” right? Buzzwords make everything sound chic and relevant. In fact, someone uninformed might even assume that any hosting that is not in the cloud is inferior. So what’s the truth?

Brad Mitchell ·
opinion

Upcoming Visa Price Changes to Registration, Transaction Fees

Visa is updating its fee structure. Effective April 1, both the card brand’s initial nonrefundable application fee and annual renewal fee will increase from $500 to $950. Visa is also introducing a fee of 10 cents for each settled transaction, and 10 basis points — 0.1% — on the payment volume of certain merchant accounts.

Jonathan Corona ·
opinion

Unpacking the New Digital Services Act

Do you hear the word “regulation” and get nervous? When it comes to the EU’s Digital Services Act (DSA), you shouldn’t worry. If you’re complying with the most up-to-date card brand regulations, you can breathe a sigh of relief.

Cathy Beardsley ·
opinion

The Perils of Relying on ChatGPT for Legal Advice

It surprised me how many people admitted that they had used ChatGPT or similar services either to draft legal documents or to provide legal advice. “Surprised” is probably an understatement of my reaction to learning about this, as “horrified” more accurately describes my emotional response.

Corey D. Silverstein ·
Show More