-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512


On 2/2/2015 7:48 PM, David Lang wrote:

> I also wonder if they started getting worried about number
> exhaustion. I'm sure that when they started that they thought that
> 10 or so digits was enough to last forever, but unless they re-use
> numbers (at which point they now have much more interesting
> recordkeeping about who had what card number when), a different
> number for each purchase by a large number of people will run
> through numbers rather quickly.

Keep in mind that the card-issuers already add an additional 3-4
digits of entropy into that equation via the CVV. And while the
merchant isn't keeping track of that you can bet your sweet bippy the
card-issuer is.

And they know that they can reissue 4123-4567-8901-2345/CVV444 to a
new cardholder, years from now, as 4123-4567-8901-2345/CVV555.



- -- 
I prefer to use encrypted mail. My public key fingerprint is FD6A 6990
F035 DE9E 3713 B4F1 661B 3AD6 D82A BBD0. You can download it at
http://www.megacity.org/gpg_dballing.txt

Learn how to encrypt your email with the E-Mail Self Defense Guide:
https://emailselfdefense.fsf.org/en/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0
Comment: GPGTools - https://gpgtools.org
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=ZXR/
-----END PGP SIGNATURE-----
_______________________________________________
Discuss mailing list
[email protected]
https://lists.lopsa.org/cgi-bin/mailman/listinfo/discuss
This list provided by the League of Professional System Administrators
 http://lopsa.org/

Reply via email to