EV SSL - A New Weapon in Combating Internet Fraud

The internet has revolutionized our lives by makingwebsite. Once identity is established, SSL creates a
billions of pages of information available to us. It hassecure connection between the website and the
changed the way we work, do business, entertaincustomers. Websites are authenticated by their SSL
ourselves and shop for interesting products. Thecertificates that are issued by a trusted company
internet has done away with physical boundaries byknown as a Certificate Authority or CA. One of the
turning the whole world into a global marketplace. Themost trusted CAs in the world is Verisign. Despite all its
amount of business transactions involving credit cardmerits, SSL suffered from a serious flaw. Any website
details and other sensitive financial information iscould sign its own SSL certificates and thus make
staggering and numbers in the millions every day. Ititself appear genuine. The average internet user didn't
was understood long before the proliferation ofknow much about distinguishing between self-signed
e-commerce that the sensitive financial information ofand CA-signed SSL certificates. This allowed
customers can easily be compromised as it passesfraudulent websites to steal sensitive business
through dozens of computers all around the world toinformation from unwitting customers. The stealing of
reach its destination. To ensure the protection of thisinformation in this way is referred to as a phishing
sensitive information, a global standard for securityscam.
was developed by the name of Secure SocketsWith the rapidly increasing incidences of phishing
Layer or SSL.scams, consumer confidence in online transactions
SSL is a communication protocol that works bywas dangerously eroded to the extent that online
scrambling the sensitive data through a process calledbusinesses began to suffer substantially. The
encryption. Encryption allows only the authorizedExtended Validation SSL standard was developed to
parties to view the information. Hackers and otherwin back consumer confidence through stringent
criminals can still get their hands on encrypted data butcertificate verification and visual display in highly secure
it is basically useless to them. To extract the originalinternet browsers like IE7 and Firefox 3. When
information from the encrypted data, hackers have tocustomers visit a website using an EV SSL certificate,
use brute-force decryption methods. Fortunately, mostthe URL address bar of the browser turns green
secure websites support 128-bit SSL encryption. Thisindicating that the site can be trusted. The
encryption is strong enough so that it can takeorganizational identity and name of the CA such as
hundreds of years to decrypt it through brute forceVerisign is also shown next to the green bar to further
methods. SSL promised to allow people to share theirprovide proof that the website is not fraudulent. Since
credit card details on shopping websites and accessEV SSL certificates can only be acquired from a
their bank account information without having to worrywell-known CA, the chances of phishing scams have
about their financial information getting into the wronggreatly diminished and consumer confidence in online
hands.business transactions has been restored. All we need
SSL is used to validate the identity of the e-commerceto do now to protect ourselves from phishers is to
website so that the customers know for sure thatlook for the green bar and that's it.
their information won't be sent to some fraudulent