Тёмный

35C3 - Truly cardless: Jackpotting an ATM using auxiliary devices. 

media.ccc.de
Подписаться 210 тыс.
Просмотров 25 тыс.
50% 1

media.ccc.de/v...
Pursuit of “good customers’ experience“ not only leads to new customers, but also attract criminals of all sorts. Presentation will give overview of current security situation of ATMs with different auxiliary devices allowing cardless transactions. Cardless is new sexy for criminals.
Era of ATMs has started in London in 1967. Since time, when the “hole-in-the-wall” cash machine used radiocarbon paper cheques, ATMs became more complex and smart, providing opportunity to withdraw money without cards. Vendors, in accordance to banks and consumer’s demand, create ATMs that replace plastic cards and PINs with smartphones or QR codes.
Cash withdrawal from an ATM now easier than never before not only for clients, but also for attackers. Jackpotting an ATM via malware or black box are pretty familiar. Countermeasures against such attacks are already in place in many banks. Thus, attackers need to discover new (or well-forgotten) ways to achieve their evil goals.
We will not chew the fat, telling stories about the old days, because new functionality provides new possibilities. Migration from Windows XP to Windows 7/10 means there is always PowerShell on the ATM. “New” types of input devices allow BadBarcode-like attacks. Legitimate auxiliary device connected to the ATM in pursuit of so-called good customers’ experience may lead to ejection of all money from ATM.
Olga Kochetova Alexey Osipov
fahrplan.event...

Опубликовано:

 

28 дек 2018

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии    
Далее
35C3 -  What The Fax?!
46:55
Просмотров 25 тыс.
35C3 -  Internet of Dongs
32:41
Просмотров 21 тыс.
А я с первого раза прошла (2024)
01:00
How many can you smash?🍫 IB : Florin
00:19
Просмотров 2,9 млн
35C3 -  Modchips of the State
36:52
Просмотров 40 тыс.
Hacking Next-Gen ATMs: From Capture to Cashout
33:04
Просмотров 66 тыс.
Edward Snowden: How Your Cell Phone Spies on You
24:16
35C3 -  The Mars Rover On-board Computer
43:19
Просмотров 67 тыс.
35C3 -  The Layman's Guide to Zero-Day Engineering
57:04
35C3 -  Smart Home - Smart Hack
51:22
Просмотров 197 тыс.
35C3 -  Security Nightmares 0x13
1:11:33
Просмотров 172 тыс.