Wierd thing is I've had whole blocks of passes stolen that are billed by epoch or netbilling but almost never the other 5 billers & gateways I have. So basically when you have 3rd party or gateway billers for your merch, you gotta worry about their security practices too.
I use securitymetrics.com to keep my nats servers PCI compliant which I'm hoping is enough to detect the nasties in addition to the host setups. If there is something better I'd love to hear!
__________________
Contact me: \\// E: webmaster /at/ unprofessional.com
|