The truth about online payment methods and who carries the risk

May 2004 Information Security

Online purchasing can become a confusing process for some shoppers - from finding the online store, to choosing the right product and then having to decide on which payment method to use.

Although there are different online payment methods available, with Internet fraud being covered extensively in the media, it sometimes seems like it is just not worth the effort. But let me assure you - it really is!

As an online shopper, you are not at risk when it comes to Internet fraud. I know that this is difficult to comprehend but hopefully with a better understanding of how online transactions really work, what risks are involved and who carries them, you will regain the confidence to continue with your shopping spree!

Different online payment methods

There are three types of online payments available. Credit card payments are the most popular, followed by Internet transfers and third party payments. An Internet transfer is where you pay directly through your online banking system into the online store's account. A third-party payment involves a third party such as a bank, eBucks, Icanonline or Autopay, which enables you to make a payment directly into the online store's bank account. Although similar to Internet transfers, third party payments occur at the same time that you make your online purchase.

From a shopper's point of view, each payment method has its advantages and disadvantages, but regardless of the payment method used, a shopper does not carry any risk when it comes to online fraud.

Credit card

Paying by credit card is probably the least understood payment method. It is very easy to be misled as to where the risks lie in using your credit card online. When you give the online store your credit card details, it is more secure than giving your credit card to a waiter in a restaurant. Just giving the online store your credit card number is not enough for them or anyone else to start processing payments for which you will be liable.

In most cases, the risk of the credit card transactions failing lies with the online store. The reason is simple: the online store does not see the credit card and so cannot verify the shopper's identity or signature. This means that should the transaction fail, the bank requests the details of the transaction from the online store. If the online store cannot provide enough evidence that a shopper made the transaction, the bank will remove the money from the online store's bank account and reimburse the shopper. Online stores protect themselves from this eventuality by doing credit checks on their shoppers, telephone interviews or requesting identification on delivery.

Internet transfers

An Internet transfer is one of the easiest ways to make a secure payment and your details are kept confidential. Fraud is impossible when you pay directly from your bank account into the online store's bank account. From the online store's point of view, once the money is in the bank, they are no longer at risk.

With most transactions, it is important to make sure both parties are legitimate. If a shopper finds an online store but has no way of verifying that it is legitimate, then my immediate reaction is: do not do the transaction. Although the website may offer a cheaper service or product, there is a greater chance that you will not receive your goods if you cannot verify that it is legitimate.

The most important advice I can offer potential online buyers is to check that there is a contact number on the website. An easily accessible phone number is a good indicator of how serious the online business is about customer service. If there is no phone number, it will be difficult to follow up on any enquiries. If the phone number is a cell number, do not make the transaction. The reason for this is that it requires no personal information to acquire a cell number and there is no address associated with it. In most cases, a cell number should ring an alarm bell for fraud.

Third-party payments

Third-party payments require a shopper to set up an account beforehand with the third party vendor. A good example is eBucks where a shopper registers with eBucks and is then able to shop at any website where eBucks has enabled the online store, which shows that eBucks considers that online store to be legitimate. The shopper can then go through the normal purchasing process with the online store but when it comes to payments, the shopper will be taken through a few screens which will 'tell' eBucks to process the payment. Now the transaction is complete for the shopper. The online store feels safe it can process the order without delays.

Shop with safety

Online shopping can be easy, fun and safe. I have been an online shopper for years and to date I have not experienced any serious problems. Often the best deals can be found on the Internet and there are many online stores that are hungry for your business and are willing to go the extra mile to make sure that you have an enjoyable and safe shopping experience. Give them a try!

For more information contact Digital Planet, 011 783 8088, [email protected]





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Cybersecurity needs actual intelligence before artificial intelligence
Information Security AI & Data Analytics
Cybersecurity depends on interpretation. A tool can tell you that something unusual has happened, but people need to determine whether it is a genuine risk, the business impact, and how to respond without causing unnecessary disruption.

Read more...
Duxbury Cybersecurity sharpens reseller offering
Duxbury Networking Information Security News & Events
Duxbury Networking has strengthened its Duxbury Cybersecurity business unit by adding WatchGuard and Cynet, giving South African resellers broader, more integrated coverage for the security risks customers are now asking them to address.

Read more...
NEC XON detects and stops ransomware attack
NEC XON Information Security IoT & Automation
Ransomware attacks rarely begin with chaos. More often, they start quietly, with probing, mapping, and patient reconnaissance inside a target’s network. That was the situation facing a global recruitment firm when cybercriminals attempted to navigate its systems.

Read more...
Sara AI Pentesting available in South Africa
Information Security News & Events
Synack and Wolfpack Information Risk are offering Sara AI Pentesting to organisations across South Africa, helping companies move from point-in-time testing to continuous security validation with AI and human expertise.

Read more...
Sophos establishes South African legal entity to strengthen local operations
News & Events Information Security
Global cybersecurity company, Sophos, has announced the formation of its local legal entity, which will support local invoicing, partner enablement, compliance requirements and expanded regional investment.

Read more...
Cybersecurity in a digitally connected security industry
SA Technologies Information Security IoT & Automation
As more organisations move towards digital visitor management, cloud-based access control, mobile applications, biometric verification, and connected security platforms, cybersecurity must be viewed as part of the full security environment.

Read more...
Enterprises must prepare for digital conflict
Information Security
Cyberattacks can be launched remotely and at scale. A coordinated attack launched from anywhere in the world can disrupt supply chains, shut down utilities, or expose millions of customer records within minutes.

Read more...
71% of organisations suffered an identity breach
News & Events Information Security
The State of Identity Security 2026 report from Sophos finds human error and poor non-human identity management are the root causes of most attacks, as agentic AI accelerates the risk.

Read more...
Cyber resilience is the real defence
Security Services & Risk Management Information Security Infrastructure
Cyber resilience has evolved into a form of strategic agility, ensuring that when an interruption occurs, the business does not just survive; it snaps back into place before the market even notices a pause.

Read more...
You will not get your files back with VECT
Information Security
If the newbie to the ransomware scene, VECT, comes knocking at your organisation’s door, do not pay the ransom! The decryption keys simply do not exist. They were discarded at the moment of encryption by the malware itself.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.