For all Portal Support and PCI DSS enquiries, please contact our dedicated PCI DSS team.
New PCI DSS 4.0 Requirements – JavaScript Monitoring
August 1, 2024
New PCI DSS V4.0 Requirements 6.4.3 & 11.6.1 require merchants to implement strong security controls to
prevent eSkimming attacks by monitoring JavaScript on your eCommerce website.
These requirements are best practice until 31 March 2025, after which they will become mandatory.
Act now to run a 90 day free trial of Vectra’s JavaScript monitoring solution for your payment page.
For more information, please see the Resource section below and speak to the Vectra PCI DSS Service Desk.
The most talked about and concerning new requirements in PCI DSS 4.0 fall under sections 6.4.3 and 11.6.1. For the first time, merchants are required to implement security controls to prevent eSkimming attacks. These new requirements require control of all scripts running on merchant eCommerce website.
Important Note: These requirements are best practice until 31 March 2025, after which they will be required and must be fully considered during a PCI DSS assessment.
This comprehensive guide provides a step-by-step walkthrough for businesses to effectively assess and scan their systems in compliance with PCI DSS standards. From initial assessment stages to final reporting, our guide ensures you have all the resources at hand for a successful audit.
Access and download a copy of our v4.0 Information Sheet here.
Click on the link below to request a quote for penetration testing services.
The official website for the PCI Security Standards Council offers a wealth of information on data security standards, best practices, and the latest updates in the industry. It’s a vital resource for any organisation aiming to maintain the highest standards in payment card security.