SardineCon SF/2026

Learn More

What is EMV?

SUBSCRIBE

EMV is the global chip-card standard that generates a unique one-time code for every in-person transaction. That single change made copied card data almost worthless at a chip terminal, which is why it slashed counterfeit fraud wherever chips took hold.

What is EMV, in plain English?

EMV, named for the three networks that created it, is the standard behind the chip in a modern payment card. When a chip card is inserted or tapped, the chip works with the terminal to produce a cryptogram, a one-time code unique to that transaction. Even if a criminal captures everything sent during the payment, that code cannot be replayed for a second purchase.

This is the core defense against counterfeiting. Magnetic-stripe data is static: copy it once and you can reuse it forever. The EMV cryptogram is dynamic, so a stolen copy is dead on arrival. In chip markets, that turned mass card cloning from an easy business into a losing one.

EMV covers card-present payments only, and it did more than block cloning. It also reshaped who pays for fraud through the liability shift, and it pushed criminals toward the online channel, where the chip offers no protection at all.

Magstripe versus EMV chip

What changes

Magstripe swipe

EMV chip

Data per transaction

Static, identical every time

A one-time cryptogram unique to each payment

If data is copied

Reusable to clone cards indefinitely

Useless, since the code cannot be replayed

Counterfeit risk

High, the basis of dumps and cloning

Very low at a chip terminal

Who pays fraud

Often the issuer

Shifted to the least chip-compliant party

What it looks like in practice

In practice

An issuer that finished its chip rollout watches in-store counterfeit losses fall to almost nothing. The cloned cards that used to drain accounts simply stop working, because the terminals now demand a cryptogram that a copied stripe cannot produce.

A year later the same team sees two new patterns. Online card-not-present fraud is climbing, since the criminals who lost the in-store channel moved to the web. And a trickle of losses comes from chip cards being swiped at older stripe-only terminals, where a damaged chip forced a fallback the fraudsters engineered on purpose.

Why it matters to operators

EMV is the single biggest reason card-present counterfeit fraud collapsed, but it did not reduce fraud overall. It relocated it. Losses that used to happen at store counters reappeared online, so a team that celebrated its chip win without strengthening its card-not-present controls simply handed the problem to a different queue.

EMV also changed the money question through the liability shift. When both parties are chip-ready, fraud liability follows the rules; when one is not, that party pays. Understanding EMV means understanding not just how it blocks cloning, but how it moves both the fraud and the bill.

What to watch in the data

  • Fallback abuse. Chip cards swiped by stripe, especially when the chip read is forced to fail, is leftover counterfeit risk.
  • Non-chip corridors. Transactions in regions or terminals that never adopted chip remain exposed to cloning.
  • Channel migration. A drop in card-present fraud paired with a rise in card-not-present fraud is the expected post-chip shift.
  • Liability surprises. Chargebacks landing on your side because a terminal or card was not chip-compliant point to a shift you misread.
  • Terminal capability. Merchants still running stripe-only hardware concentrate the residual counterfeit exposure.

Quick questions

Does EMV stop all card fraud?

No. It stops counterfeit card-present fraud at chip terminals by using a one-time code. It does nothing for online card-not-present fraud, which is where much of the fraud moved after chip adoption.

What is the EMV liability shift?

A rule that moves fraud liability to whichever party is least chip-compliant. If a merchant still runs a stripe-only terminal and takes a counterfeit hit, the merchant, not the issuer, often absorbs it.

What is magstripe fallback?

When a chip cannot be read, some terminals fall back to the stripe. Fraudsters deliberately damage or block the chip to force this and slip counterfeit stripe data through.

Why did online fraud rise after EMV?

Because criminals go where the defense is weakest. With in-store cloning shut down, they shifted effort to card-not-present channels, where the chip offers no protection.

Is a contactless tap also EMV?

Yes. Contactless payments use the same EMV cryptogram model, generating a one-time code per tap, so they carry the same protection against replay as an inserted chip.

Does EMV help against lost or stolen cards?

Partly. Chip plus PIN adds a knowledge factor, but chip alone mainly defeats counterfeiting. A physically stolen card can still be tapped or used until it is reported and blocked.

Go deeper

What to know alongside EMV