openPR Logo
Press release

Acunetix Publishes PCI Compliance Guide

05-30-2007 03:29 PM CET | IT, New Media & Software

Press release from: Acunetix Ltd

The paper aims to help companies meet impending PCI requirements

London, UK – May 30, 2007 – Businesses that rely on payment by credit cards are required to comply with the PCI security standards by September 2007. Non compliance could result in loss of merchant account, severe fines and lawsuits. In view of these new regulations, Acunetix has published a PCI Compliance Guide to help companies understand the concept behind the Payment Card Industry as well as documenting the steps needed to reach compliance.

PCI Compliance at a glance
PCI Compliance is a structured security checklist which aims at securing financial data, and helps to distinguish the secure and reliable businesses from the risky ones. The Payment Card Industry Data Security Standard was created in a joint effort by the major credit card companies: American Express, Visa, MasterCard and Discover to monitor and develop the PCI standard. Consumers who use credit/debit cards online to purchase products or services risk suffering financial losses when businesses process their transactions through systems which are not secure. The PCI standard aims to stop the cause of online financial and identity theft from its source by ensuring the systems which process and store customer details are secure.

The Compliance Regulations
The PCI compliance specification describes a set of requirements which participating businesses must observe to ensure that correct measures are taken to secure all data, both internal and externally exposed. The Acunetix PCI Compliance Guide describes the following categories in detail:

1. Secure Network Design and Maintenance
2. Cardholder Data Protection
3. Vulnerability Management Program Maintenance
4. Strong Access Control Measures Implementation
5. Regular Network Testing and Monitoring
6. Information Security Policy Maintenance

Security Assessment Tools
All businesses which apply the PCI compliance procedure must use the services of approved companies to perform compliance security scans. The results of these scans are issued in detailed compliance reports which are then used for approval by the specific card company requirements. The PCI Compliance specification is more than just a rule-set to which organizations must abide. It is also a guideline which provides a method to trace and secure all the potential security flaws which might be exploited. Detecting these potential exploits is made easier by using tools such as web vulnerability scanners and network scanners.

The PCI Compliance Guide is available at: http://www.acunetix.com/websitesecurity/PCI-Compliance.pdf

About Acunetix Web Vulnerability Scanner
Acunetix Web Vulnerability Scanner ensures website security by automatically checking for SQL injection, Cross site scripting and other vulnerabilities. It checks password strength on authentication pages and automatically audits shopping carts, forms, dynamic content and other web applications. As the scan is being completed, the software produces detailed reports that pinpoint where vulnerabilities exist. Acunetix WVS Reporting Application allows security alerts to be presented in a document which abides by the PCI specification.

All product and company names herein may be trademarks of their respective owners.

About Acunetix
Acunetix was founded to combat the alarming rise in web attacks. Its flagship product, Acunetix Web Vulnerability Scanner, is the result of several years of development by a team of highly experienced security developers. Acunetix is a privately held company with headquarters based in Europe (Malta), a US office in Seattle, Washington and an office in London, UK. For more information about Acunetix, visit: http://www.acunetix.com; http://www.acunetix.de.

For more information:
Please email Tamara Borg: tamara@acunetix.com

Acunetix Ltd
Communications House
26 York Street
W1U 6PZ, London
UK

Tel: (+44) 0845 6126712
Fax: (+44) 0845 6126716
URL: http://www.acunetix.com.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Acunetix Publishes PCI Compliance Guide here

News-ID: 21406 • Views:

More Releases from Acunetix Ltd

New WebsiteDefender Service Guards Your Website Against Malware and Hackers
New WebsiteDefender Service Guards Your Website Against Malware and Hackers
Acunetix Launches New Online Service that Scans Your Website for Malware, Vulnerabilities and Provides Automated Backup & Restore London, UK, June 5 2012 – Acunetix, a pioneer in web security and the developer of Acunetix Web Vulnerability Scanner, today announced the release of WebsiteDefender – an online security monitoring service which helps you secure your websites or blogs against malware and hacker activity. Cybercrime and web malware is on the
For the fourth time in a row, Acunetix Web Vulnerability Scanner Voted Windowsec …
February 23, 2011 – Leading Windows Security resource site, WindowSecurity.com, announced today that Acunetix Web Vulnerability Scanner was selected the winner in the Web Application Security category of the WindowSecurity.com Readers’ Choice Awards. “Our Readers’ Choice Awards give visitors to our site the opportunity to vote for the products they view as the very best in their respective category,” said Sean Buttigieg, WindowSecurity.com manager. “WindowSecurity.com users are specialists in their field
Cross-Site Scripting ranks first in top security risks
Acunetix calls for regular website auditing to guard against attackers’ new preferred flaw London, UK – 19 September, 2006 – In recent years, buffer overflows topped the list as the most popular vulnerability used by hackers to compromise websites. However, the latest report from Mitre Corp., a US government funded research organization, clearly indicates that hackers are moving away from acts of vandalism to the more lucrative exploits of data theft.
Hackers Steal 19,000 Personal Customer Details from AT&T Online Store
Acunetix calls for regular website auditing to guard against the loss of personal sensitive data through web vulnerabilities London, UK – 06 September, 2006 – Last weekend, hackers pilfered the personal data of nearly 19,000 DSL equipment customers through a vulnerability in AT&T’s online store. The affected site was shut down within hours of the attack being launched. In a statement, AT&T attributed the motive of the attack to a criminal

All 5 Releases


More Releases for PCI

Analog control via PCI/PCI Express with electrical isolation
Maisach/Munich/Germany. With the analog output modules MDA16-2i/-4i/-8i, the manufacturer of measurement technology BMC Messsysteme GmbH (bmcm) launches a module series for isolated, analog control via the PCI or PCI Express bus. If for the control of power supplies, frequency converters, or engines - potential differences between two circuits can lead to sudden discharges and cause heavy damages. Galvanic isolation is the solution here. With the new plug-on modules MDA16-2i, MDA16-4i, and MDA16-8i
BeroNet Launches Berofix With PCI-Express
Berlin, January 8, 2010 – beroNet GmbH, a leader in Voice-over-IP (VoIP) technologies that accelerate the deployment and enable the management of next generation Line-Interface-Cards, announced its newest berofix PCI-Express cards. With berofix PCI-Express card, the latest addition to the card series of berofix, the VoIP experts from Germany demonstrate their practical experience again. PCI Express (Peripheral Component Interconnect Express), officially abbreviated as PCIe (or PCIe, as it is commonly called),
eRevMax receives PCI compliance certification
London/ Kolkata, December 10, 2009 – eRevMax has received Payment Card Industry Data Security Standard (PCI DSS) certification from the PCI Security Standards Council, proving the presence of secure and robust systems within the eRevMax portfolio. The company has ensured its products are compliant with international security best practices and principles which further prove its standing in the industry as a provider of premium quality and secure services. eRevMax has implemented
Measuring via PCI-Express
Maisach/Munich/Germany. With the PCIe-BASE, BMC Messsysteme GmbH (bmcm) is one of the first few manufacturers of measurement technology to come out with a competitive data acquisition card for the PCI Express interface. PCI Express (Peripheral Component Interconnect Express), "PCIe" for short, is a PC interface allowing for the communication of peripheral components with the master processor of the PC. In the long term, PCIe will replace the PCI slots in
Fanless Intel Atom Embedded Computer Offers Wide Power Input Range, Extended Ope …
(Taipei, Taiwan - May 12, 2009) Lanner Electronics, Inc., a leading designer and ODM manufacturer of advanced embedded computing platforms for commercial and industrial applications, today announced the release of the Lanner LUGE LEC-2010 – a small form factor, fanless embedded system based on the Intel® Atom™ processor designed for a broad range of industrial and mobile computing applications. The LEC-2010 expands on Lanner’s growing line of Atom-based small form
Kontron KISS PCI 759: Multi-core industrial servers for PICMG 1.0 based PCI/ISA …
Eching, Germany, May 29, 2008 – Today, Kontron announced its latest range of 2U and 4U KISS industrial servers that bring Intel® Core™2 Duo processor performance to PICMG 1.0 based PCI/ISA applications. These long term available, ultra quiet ( < 35 dB) industrial servers are especially designed for applications that require high data processing performance without the need for high-speed PCI Express features. Designed around the Intel® 945G chipset with