[LINK] RFC: 'A Risk Assessment Framework for Mobile Payments'

Craig Sanders cas at taz.net.au
Sun Jan 27 13:33:56 AEDT 2008


On Sat, Jan 26, 2008 at 03:54:38PM +1100, Roger Clarke wrote:
> Any thoughts, corrections, pointers, references much appreciated!
>
>
>            A Risk Assessment Framework for Mobile Payments
>       http://www.anu.edu.au/people/Roger.Clarke/EC/MP-RAF.html
>
> Progress in Mobile Commerce is heavily dependent upon effective and 
> reliable payment mechanisms.  Security concerns loom as a major impediment 
> to widespread and rapid adoption, and there is accordingly an urgent need 
> for a framework within which security issues in mobile commerce can be 
> evaluated.  This paper presents such a framework and reflects lessons from 
> prior payment mechanisms.  It provides insights into the use of the 
> framework by performing a test application. Implications for policy, 
> practice and research are drawn.

my only thought is that i hope this kind of thing isn't done via some
behind-closed-doors deal between mobile phone manufacturers, telcos,
and retailers so that it's automatically enabled for anyone who has a
compatible phone.

i don't *EVER* want to buy things or have fees charged to my phone
bill just because my mobile phone is within range. not under any
circumstances. i want every transaction involving me to require specific
positive action on my part.

my bet, though, is that that is exactly how it will be introduced. and
it will be touted as a convenience feature (and most idiot consumers
will believe that's a Good Thing because the nice smiling suit
tells them it is). and opting out will be difficult and subject to
bureaucratic delays and "accidental" re-enabling every so often.


craig

-- 
craig sanders <cas at taz.net.au>

In the future, there will be fewer but better Russians.
		-- Joseph Stalin



More information about the Link mailing list