Barnaby Jack Hack Demonstrated at Black Hat 2010 Conference

barnaby-jack-hack-demonstrated-at-black-hat-2010-conference


Barnaby Jack of IOActive demonstrated how to hack into an ATM machine without needing physical access to the machine. Turns out the manufacturer used their own home made encryption scheme that obviously wasn’t very secure. Once the system was comprised a new customized version of the firmware was uploaded to give the machine a jackpot mode. You might remember about 4 years ago when these same ATM manufacturers were caught with their pants down when it was discovered that the ATM master passwords were clearly on display in their easy to obtain manuals.

Mental note, if you own a business and are thinking of putting in an ATM machine stay away from anything by Triton and Tranax!