E-Commerce Servers

Web software that runs some of the main functions of an online storefront such as product display, online ordering, and inventory management. The software works in conjunction with online payment systems to process payments.

Definition. E-commerce servers tend to be at a higher echelon for risk and attacks. This is so because according to our definition, E-Commerce servers are responsible for the transaction of goods and services; and the payment for those goods and services over the Internet. Therefore, the physical place where all of these transactions occur is at the Sever level.

Threats to E-Commerce servers fall into two general categories:

(1)    Threats from an actual attacker(s); and
(2)    Technological failure. In terms of the former, the motivation is primarily psychological.

The direct threats to E-Commerce servers can be classified as either

(a)    Malicious Code Threats; and
(b)    Transmission Threats.

With the former, malicious, or rogue programming code is introduced into the server in order to gain access to the system resources. Very often, the intent of Malicious Code Attacks is to cause large scale damage to the E-Commerce server. With the latter, the threats and risks can be classified as either as active or passive. With passive threats, the main goal is to listen (or eavesdrop) to transmissions to the server. With active threats, the intent is t alter the flow of data transmissions or to create a rogue transmission aimed directly at the E-Commerce server.

