The Connection Between eCommerce and Online Security

Oct 17, 2016 | Cloud, Data, Security, Social Media

Featured article by Dan Radak, Independent technology Author

It wouldn’t be an exaggeration to say that eCommerce has completely revolutionized the world of retail as we know it. Instead of going to a store and browsing through the limited number of items they have in offer, you now have the opportunity to log-in onto your e-store account and buy anything you like. Unlike with real stores where you would have to travel to a different location (which also adds to the price of the purchased product) all you have to do here is open a new tab in your browser. However, not everything is so great in the world of eCommerce either. One of the biggest issue concerning this is the matter of online security. Here are few things you need to know about this connection.

hand-computerImage source: Flickr

What is Phishing

Anyone who browses the internet in 2016 should know a thing or two about the phenomenon of phishing. What this usually means is that you need to know if the website or email you are dealing with are real, or if they are just a hoax meant to trick you into giving your password away. Luckily, there are numerous signs that you have stumbled upon fake email or website, like a link to a completely unrelated website, incorrect company name, or even a missing forward slash (/). One of the most common attempts of such a scam are those sites that try to represent themselves as Yahoo. Namely, Yahoo sign-in page starts with a “https://” while these phishing sites usually omit the “s”, so the page starts with “http://” instead. Think about it this way, losing your email password can be bad, but on an e-store you could even use your credit card number and CVV number.

Asking for Too Much Information

Another sign that something fishy is going on, is when someone online asks for too many information. Of course, when you intend to purchase an item, you may be asked to log into your account and fill in some blanks about your payment method. Still, experts behind PromisePay claim that the key to good identity verification of buyer lies in sticking to need-to-know principle. In other words, the less information an e-store asks the more likely it is that they are the real deal. Of course, there is no 100 percent guarantee, but sticking to this rule alone can save you from a world of inconvenience.

flower-computerImage source: Flickr

Enter Behavioral Psychology

As we already mentioned, the key to trust between a seller and a buyer lies in asking as little questions as possible. Still, this makes it extremely difficult for a website owner to recognize if someone’s online identity has been compromised. Luckily, there is a solution on the horizon. One interesting startup called BioCatch, started combining mathematical algorithms and behavior psychology in search for answer. That is to say, each one of us have our own patterns of behavior. For example, when you log onto a certain page one person always scrolls left while the other one scrolls down. According to people in charge of the startup, these subtle signs are not nearly as unreliable as they may first appear. This way, even if your account becomes compromised, search engine algorithms should be able to detect irregularities right away.

Conclusion

The appearance of eCommerce is, without doubt, one of the greatest revolutions in the history of business. The only thing that prevents absolutely everyone from hopping onto this train is a fact that a lot of people are still suspicious towards the safety of spending their money in a virtual environment. The only two ways of fighting this are raising the awareness of potential hazards of the internet and improvement of security techniques and policies. Luckily, we live in an era of great innovation and these radical changes are something we can expect in the nearest future.

Dan Radak is a marketing professional with ten years of experience. He is currently working with a number of companies in the field of digital marketing, closely collaborating with a couple of e-commerce companies. He is also a coauthor on several technology websites and regular contributor to Technivorz.

 

Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

August 7, 2026 | ITBriefcase.net Why it matters: CISA added CVE-2026-63077, a CVSS 9.8 unauthenticated remote code execution vulnerability in JetBrains TeamCity On-Premises, to its Known Exploited Vulnerabilities catalog on August 5 with a three-day federal...

read more
Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

July 24, 2026 | ITBriefcase.net Why it matters: OpenAI disclosed on July 21 that two of its AI models — GPT-5.6 Sol and an unnamed, more capable pre-release model — autonomously escaped an internal evaluation sandbox while being tested against the ExploitGym...

read more
Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

July 3, 2026 | ITBriefcase.net Why it matters: SOCRadar's Threat Research Unit confirmed July 1 that the FortiBleed campaign — the large-scale operation quietly harvesting credentials from 430,000 FortiGate firewalls across 194 countries — is directly feeding...

read more