Saturday, July 4, 2009

Mobile Payment Systems in Malaysia : It's potential and consumer's adoption stratergies .

0 comments

What is mobile payment ?

Mobile payment is new and rapidly-adopting alternative payment method – especially in Asia and Europe. Instead of paying with cash, check or credit cards, a consumer can use a mobile phone to pay for wide range of services and digital or hard goods such as:

  • Music, videos, ringtones, online game subscription or items, wallpapers and other digital goods.

  • Transportation fare (bus, subway or train), parking meters and other services

  • Books, magazines, tickets and other hard goods.

There are four primary models for mobile payments:

  • Premium SMS based transactional payments

  • Mobile web payments(WAP)

  • Direct Mobile Billing


Premium SMS based transactional payments

This is where the consumer sends a payment request via an SMS text message to a short code




and a premium charge is applied to their phone bill. The merchant involved is informed of the payment success and can then release the paid for goods.



Since a trusted delivery address has typically not been given these goods are most frequently digital with the merchant replying using a Multimedia Messaging Service to deliver the purchased music, ringtones, wallpapers etc.

A Multimedia Messaging Service can also deliver barcodes which can then be scanned for confirmation of payment by a merchant. This is used as an electronic ticket for access to cinemas and events or to collect hard goods.

Transactional payments have been popular in Asia and Europe but are now being overtaken by other mobile payment methods such as mobile web payments (WAP) and Direct Mobile Billing for a number of reasons:

  1. Poor reliability - transactional payments can easily fail as messages get lost

  2. Slow speed - sending messages can be slow and it can take hours for a merchant to get receipt of payment. Consumers do not want to be kept waiting more than a few seconds.
  3. High cost - There are many high costs associated with this method of payment. The cost of setting up short codes and paying for the delivery of media via a Multimedia Messaging Service and the resulting customer support costs to account for the number of messages that get lost or are delayed.
  4. Low payout rates - operators also see high costs in running and supporting transactional payments which results in payout rates to the merchant being as low as 30%.
  5. Low follow-on sales - once the payment message has been sent and the goods received there is little else the consumer can do. It is difficult for them to remember where something was purchased or how to buy it again. This also makes it difficult to tell a friend.


Direct Mobile billing

This is where the consumer uses mobile billing option during checkout at an ecommerce site such as an online gaming site to make a payment. After two-factor authentication involving PIN and One-Time-Password, the consumer's mobile account is charged for the purchase. It is true alternative payment method that does not require use of credit/debit cards or pre-registration at online payment solution such as PayPal, thus bypassing banks and credit card companies altogether. This type of mobile payment method, which is extremely prevalent and popular in Asia, provides the following benefits:
  1. Security - two-factor authentication and risk management engine prevents fraud.

  2. Convenience - No pre-registration and no new mobile software is required.

  3. Easy - It's just another option during a checkout process.

  4. Fast - Most transactions are completed in less than 10 seconds.

  5. Proven - 70% of all digital content purchased online in some parts of Asia uses Direct Mobile Billing method
Mobile Web Payments ( WAP)





This is where the consumer uses web pages displayed or additional application s/he downloaded and installed on his/her mobile phone to make a payment. It uses WAP (Wireless Application Protocol) as underlying technology, thus inherits all the advantages and disadvantages of WAP. However, using a familiar web payment model gives a number of a few proven benefits:


  1. Follow-on sales where the mobile web payment can lead back to a store or to other goods the consumer may like. These pages have a URL and can be bookmarked making it easy to re-visit or share with friends.

  2. High customer satisfaction from quick and predictable payments

  3. Ease of use from a familiar set of online payment pages

However, unless mobile account is directly charged through mobile network operator, use of credit/debit card or pre-registration at online payment solution such as PayPal is still required just as in desktop environment.

Mobile web payment methods are now being mandated by a number of mobile network operators.

A number of different actual payment mechanisms can be used behind a consistent set of web pages.

Friday, July 3, 2009

A review on a post on e-tailing

0 comments

Nowadays, almost everything can be traded online. This applies to very subjective things such as music, reservation and even information. Due to technology changes, we now isn’t limited to just purchasing, we can also customize things online.
E-Tailing or also known as sales of product over the internet has been a trend of business in this high tech era. It helps exploit a whole new market of through the internet without imposing much constraint to operate.



In Malaysia they even sell fish online, Fishermen in Tanjung Dawai have preceded auction for their catches via the internet. Other than that, other recent examples would be touch’n’go ready to impose pre-load cash purchase with their card in fast food restaurants. It is been a trend in countries like Hongkong to use such pre-load cards in their daily shopping activity and proven successful.



Online banking should be another form of E-commerce which we should be very familiar of. In recent years, stock trading online had been actively used as a form of E-tailing by major banks to encourage convenience to the consumers. Maybank, as one of the largest bank to offer online stock trading even reduce its transaction cost to encourage usage of the facility.



In US, reservation for restaurant seats are made easy by the website called Opentable.com. This website offers reservation online in just a few clicks for more than 6000 restaurants alone in New York. It is a proven effective concept and should be more effectively implemented in other countries.




Furthermore, E-tailing could be used as a way to promote a countries’ tourism for example Malaysia’s http://www.tourism.gov.my/ which gives information on Major tourism spots, graphical illustration etc. Foreign tourist could visit the website to determine where to visit in Malaysia.



Conclusion is that life is becoming more and more convenient. I believe in near future everything can be done online. That’s awesome!

The application of pre-paid cash card for consumers

0 comments

Nowadays pre-paid cash card is getting more and more popular in aligned with the development of e-commerce. Pre-paid cash card is a card like credit card which can use to purchase goods and services. Pre-paid means pay in advance which also means that the card needs to be reloaded with money before consumers can use it. They can only spend the balance that has been pre-loaded onto the card.




An example of the application of pre-paid cash card in our country is Touch n Go card. It is a quite popular card that uses contactless and smartcard technology. This is introduced in Malaysia to increase the efficiency of public transport service. With this card, consumers do not need to queue for buying tickets especially during peak hours which is really a waste of time. Besides that, it is applicable for all highways tolls users too. Positive feedbacks obtained after the implementation of Touch n Go card as it helps consumers to save up a lot of time as well as it is very convenient to use.


Another widely used pre-paid cash card is the debit card. It is usually issued by the debit card companies or banks. Consumers can use this card to purchase their goods and services either in malls or through online transactions. For internet banking, they are required to key-in their password, debit card number and the amount of money for the transaction to take place. When using it for shopping at supermarket, consumers just simply hand the card to the cashier and will be asked to sign on the payment slip. The total amount will be deducted from the card immediately and the transaction is completed by then. Moreover, i-Talk pre-paid IDD card is a service provided by Telekom Malaysia that allows people to make local or international calls at low rates.



As in other country, one of the most successful applications of this pre-paid cash card is the Octopus Card in Hong Kong which is like a trademark for all Hong Kong citizens. It was the first contactless smart card system in the world. At first, it aims to provide a simple and easy way to pay fares on public transport in Hong Kong. Today it is also used for payment in convenient stores, supermarkets and car parks. It makes life much simpler and easier.

Apart from that, pre-paid cash card also can use for paying bills, topping up mobile phone, purchasing movie tickets and withdrawing cash from ATM machine. On the other hand, the main advantages of pre-paid card include it is an ideal way to control your spending. There is no chance of over spending as consumers are limited to the amount they put on the card. Furthermore it is very convenient because the pre-paid cash card can be used abroad or travelling to overseas and it is always safer to bring along a card rather than cash.

To sum up, pre-paid cash card is indeed a very useful item and contribute a lot in our daily transaction. Most of the teenagers are having a pre-paid cash card now as they are not eligible to apply for a credit card. Nevertheless some consumers still prefer credit card in terms of security.

References :
http://www.moneysupermarket.com/c/prepaid-cards/guide/

http://prepaidcreditcardapplication.info/

Saturday, June 27, 2009

Threat of online security

0 comments

Nowadays, many companies as well as individual regardless of the size of the companies, use computer to process and store their important information. Thus, computer securities are very important to make sure that their information have not been misused by others, damage and loss. Similarly, online securities are also very important when an individual or company dispose their information online. For example if a company has their own designed website, they have to protect their website from potential threats, such as phishing, security hacking, information theft, virus, worms and etc.

However, the increasing development of technologies has also sarcastically increase the risk that every computer user has to face. Hacking means gaining unauthorized access to computer files. Everyone who expose to the internet is able to equip themselves with 'hacking' knowledge by making some research online. Internet provides the opportunities for users to share the knowledge without filtering the content. Therefore, everyone can learn the skill that may jeopardize online security via internet and therefore increase the online security risk.Nowadays, the few most famous threats are cybercrime, phishing, internet and network attacks such as computer viruses, worms, Trojan horses and back doors.

Cybercrime is known as online internet-based illegal acts. Hackers, crackers and corporate spies is part of cybercrime, who have advanced computer and network skills that access into computers and networks illegally with the intention to destroy data, stealing proprietary data and information.

An image on cybercrime

Phishing is a scam in which a perpetrator send an official looking email that attempts to obtain your personal information and financial information. In other words, this method is to collect information through fake websites. For example, some phishing email messages ask you to reply with your information, or a pop up window that looks like a website, that collects the information. The damages caused by phishing can be crucial. The following case illustrate potential thereat caused by phishing. One good example of this threat is a case which happened in year 2007. Click here to know in detail.

Images on phishing

Internet and network attack that jeopardize security include macro virus, worm, and Trojan horse.Macro virus is a piece of code that is secretly introduced into a system in order to corrupt it or destroy data. Macro virus such as Melissa and ILOVEYOU were propagated through Microsoft outlook email and whose payloads were delivered as Visual Basic for Application (VBA) programs attached to email messages. Virus attack can damage the operating system, causing the loss of data and other possible losses.

A Worm is a program that runs independently, copies itself repeatedly and consuming the resources of its host in order to maintain itself which it is capable of propagating a complete version of itself onto another machine. The repeatedly copied files use up the available space and slow down a computer operating speed.

Examples of worm

Trojan horse is a program that appears to have a useful function but that contains a hidden function that presents a security risk. Trojan may arrive in the form of file that looks like an interesting game or program. When this program is run, the Trojan program is installed and executed every time the attacked computer is turned on. This particular Trojan horse enable the perpetrator to capture user Ids and passwords, to display, delete messages and upload files on the affected computer.

Examples of Trojan horse

A back door is a set of instruction in a program that allow users to bypass security control when accessing a program, computer, or network. Once perpetrators gain access to unsecured computers, they often install a back door or modify an existing program to include a back door, enabling them to continue access the computers remotely without user's knowledge.

Examples of back door

In conclusion, risks exposed by computer users are increasing with the development of technology. therefore, safeguards developer must be always be up to date to enhance the defenses against online security threats. In the same time, users must be informed about the crucial damages and losses caused by imposing online online security threats.

Phishing : Examples and its prevention methods

0 comments

Phishing, this word is quite new to me and it sound like fishing! Phishing is defined by Webopedia is the act of sending an e-mail to a user falsely claiming to be an established legitimate enterprise in an attempt to scam the user into surrendering private information that will be used for identity theft. The e-mail directs the user to visit a Web site where they are asked to update personal information, such as passwords and credit card, social security, and bank account numbers, that the legitimate organization already has. The Web site, however, is bogus and set up only to steal the user’s information.


EXAMPLES
One example would be if you received an e-mail that appears to be from your bank requesting you click a hyperlink in the e-mail and verify your online banking information. Usually there will be a repercussion stated in the e-mail for not following the link, such as "your account will be closed or suspended". The goal of the sender is for you to disclose personal and account related information. This type of e-mail scam is also called phishing.

Let me shows another example of what a phishing scam e-mail message might look like.


Example of a phishing e-mail message, including a deceptive URL address linking to a scam website. To make these phishing e-mail messages look even more legitimate, the scam artists may place a link in them that appears to go to the legitimate Web site (1), but it actually takes you to a phony scam site (2) or possibly a pop-up window that looks exactly like the official site.
These copycat sites are also called "spoofed" Web sites. Once you're at one of these spoofed sites, you might unwittingly send personal information to the con artists.

PREVENTION STEPS!
After much study about examples and articles on phishing, this fraud action can be considered a dangerous online activity because they are usually used in targeting banks or other financial organizations that can allow the attackers to earn a considerable amount of money. Therefore, we need to be aware of this kind of fraud and must able to identify it before you get into trouble. So, here are some prevention tips to help you to avoid from getting “fished”!

1. Don't reply to email or pop-up messages that ask for personal or financial information, and don't click on links in the message. Don't cut and paste a link from the message into your Web browser — phishers can make links look like they go one place, but that actually send you to a different site.

2. Some scammers send an email that appears to be from a legitimate business and ask you to call a phone number to update your account or access a "refund." Because they use Voice over Internet Protocol technology, the area code you call does not reflect where the scammers really are. If you need to reach an organization you do business with, call the number on your financial statements or on the back of your credit card.

3. Use anti-virus and anti-spyware software, as well as a firewall, and update them all regularly.

4. Don't email personal or financial information.

5. Review credit card and bank account statements as soon as you receive them to check for unauthorized charges.

6. Be cautious about opening any attachment or downloading any files from emails you received, regardless of who sent them.

7. Forward phishing emails to spam@uce.gov – and to the company, bank, or organization impersonated in the phishing email. You also may report phishing email to reportphishing@antiphishing.org. The Anti-Phishing Working Group, a consortium of ISPs, security vendors, financial institutions and law enforcement agencies, uses these reports to fight phishing.

8. If you've been scammed, visit the Federal Trade Commission's Identity Theft website at ftc.gov/idtheft
references:

How to safeguard our personal and financial data?

0 comments

Last year researcher held a survey to monitor trends in identity fraud and according to the Federal Trade Commission, identity theft is the most reported form of fraud. This happened not only in our country but the whole wide world as well. It involved physical (lost wallet, phone sale) and online (phishing, e-mail scam) methods.

It is crucial for consumers to understand some simple and effective methods to protect themselves against identity theft. Below is a list of precautions which I can think of.

First and foremost, do not carry unnecessary information along during outings. For example, remove excess credit card from your wallet or purse since many of us like to put all the cards inside our wallet. Second, put passwords on all your accounts and do not use common terms such as your birthday date or phone number. Try to make up a fictitious word. It is suggested to combine both numeric and alphabetic characters when creating a password. Third, be cautious on the phone. Do not disclose your personal information over the phone if you do not recognize who is on the line unless you could positively confirm the caller’s identity. If there is any suspicion, confirm with the related organization or institution on how they store your personal information and why it is needed for any application. Do ensure that the information is dispose in a proper way.

Apart from that, avoid from creating the same password all the time. Double-check that all of your utility accounts and financial services have different passwords. If one of the accounts has security breached, it will prevent all of your accounts from being hijacked. Furthermore, please do not store your sensitive data on a mobile computer like laptop or PDA. However if you find that it is necessary to do so, encrypt the information with proper software. Next, report lost or stolen cards immediately and cancel all inactive accounts. Also, do not keep open credit cards that remain unused and unmonitored. If you had applied for a new card and do not receive it in a timely manner, contact your financial institution immediately. Be sure to sign the new cards upon receipt too. Besides that, consumers can also monitor their credit card and account statements online weekly to keep an eye on their transaction. It can prevent from unknown transaction occurs.

On the other hand, if your job is involve in creating documents like secretary or admin staff, do take the responsibility to protect client’s personal and financial data by shred the sensitive documents after using it. This is to ensure information is not accessible when you get rid of it. Moreover, staff should install anti virus software on all computers and change password regularly. All these are to make sure that office information systems such as computer network will not become target for identity thefts.

Last but not least, be aware of e-mail attachments. Even if you are certain they are virus-free, it can cause you to lose data too. The best way is to ignore all these e-mail attachments and junk mails. As a saying goes, prevent is better than cure. Hence hope the above precautions could help to safeguard our personal and financial data.

Thursday, June 25, 2009

Review of a post on Internet Security from My E-Commerce blog

0 comments

Internet security is really important to me because I had been using the online banking service. I heard from some of my friend saying about their online bank account being hacked and losses in terms of cash occurred. It’s Horrible! So I wish to share some information for that.

Have u ever encounter spam messages in your e-mail or instant messaging device such as MSN, Yahoo Mail etc? There are solutions for all these irritating spams which disturbs your online activities namely anti-spams, which would give a peace of mind. Somehow, these spams may manage to outsmart the anti-spam softwares giving headache to users again. Below are some tips to avoid during daily online activities.

1. Do not open any attachments from an unknown user especially PDF files to prevent PDF Spam
2. Delete any greeting cards from an unknown user to prevent greeting card spam
3. Do not run any emails having .com or .exe at the end of the file name

I believe many of us had been watching free movies and listening to music online for some time. This had been a trend of youngsters nowadays and hackers see this as an opportunity to obtain user’s private data from personal computers

Internet security plays a vital role especially in such unsafe internet surfing environment. More than 1million computer viruses, worms, Trojans and malware were reported by Symantec according to their virus database. Efficient anti-virus software may be required to prevent unnecessary data losses. Known anti-virus software such as Kaspersky lab, Avira, AVG Trendmicro,Symantec and so on are recommended and trusted among user groups.

Since our E-commerce requires us to create a blog for our assignment then I share some info that Bloggers may have to take into consideration some of the security precautions as below to prevent blogs from being hacked

1. Must always keep your personal information private
2. Avoid using same password for all accounts
3. Use 'Alpha-Numeric' passwords ( password consist of word and number)
4. Don't use a password that can be found in your blog.
5. Avoid using public computers (cyber café) for important website
6. Use Anti-Virus software on your computer ( Avira is recommended by me)
7. Register and use your own domain name ( Be unique)
8. Always back-up all your post / content