Mastercard's New Strategy: Ditching Card Numbers For Enhanced Online Security - Check Details

Mastercard Inc. is spearheading a major shift in online payment security with its latest initiative to phase out traditional credit card numbers . This move, reported by Bloomberg, aims to combat rising online fraud by implementing advanced tokenization technology.
Hero Image


In a recent interview, Mastercard 's CEO Michael Miebach revealed that the company now processes 1 billion tokenized transactions weekly. This milestone comes a decade after Mastercard first introduced the token technology, which replaces card numbers with secure tokens. Miebach noted that it took three years for the company to process its first billion transactions using this technology.

Looking ahead, Mastercard plans to further integrate this technology by incorporating biometric authentication methods, such as fingerprints and facial recognition, to enhance security. This shift is in response to a growing concern within the financial industry about online payment fraud, which is projected to exceed $91 billion by 2028.


Miebach highlighted that, "Ten years back, the common thing was to safeguard transactions and data through passwords if you want to keep it safe." He added, "It worked for some time but then it began to become the weakness rather than effective security and safety." The introduction of tokenization technology by Mastercard, alongside Visa Inc., was a direct response to high-profile data breaches at major retailers like Best Buy Co. and Target Corp., which saw millions of customer credit card details stolen.

Initially, tokenization focused on replacing card numbers with tokens that could only be decrypted by the payment networks, rendering them useless to hackers. This technology, which has been supported by services like Apple Pay, has proven effective in reducing in-store fraud. However, with a surge in e-commerce, fraudsters have increasingly targeted online transactions, particularly those requiring manual entry of card details.


Miebach pointed out that, "Criminals are now targeting e-commerce websites that require customers to enter their card information manually in order to make a purchase." He noted that hackers are exploiting vulnerabilities in one-time passwords used by banks and retailers, making these security measures increasingly susceptible to theft.

To address this issue, Mastercard is collaborating with global payment providers and banks to replace one-time passwords with token-based systems that utilize biometric data. This initiative has already seen implementation in India, in partnership with PayU and Axis Bank Ltd. Miebach emphasized that the key issue is data exposure, which can be exploited if accessed by malicious actors. He underscored that "the risk of fraud, data breaches, and other things is holding back the growth of the digital economy," and believes that tokenization is a crucial tool for mitigating these risks.

Mastercard envisions a future where tokenization becomes the standard for all e-commerce transactions in Europe by the end of the decade.