You’re protecting data in transit and data at rest, but criminals have shifted their focus to stealing data at the most sensitive point – the point of input. They are issuing new techniques to conduct client-side (browser side) attacks.
The issue is so pronounced that the PCI Council made protecting data at the point of input a focus in PCI DSS 4.0. Sections 6.4.3 and 11.6.1 specifically call for preventative measures to close the security gaps that facilitate client-side attacks.
Join Randy Paszek, Solution Engineer, Office of the CTO for Source Defense, and Bill Nguyen, QSA Associate Manager of Payment for Tevora for a deep dive into how these attacks occur, a breakdown of the current technical environment surrounding client-side security, and an analysis of the guidance found in 6.4.3 and 11.6.1 that will help you easily get on the path to protecting data at the point of input.
Key takeaways: