Security Expert to Reveal ATM Vulnerabilities

Posted on 06 May 2010 by jjkomplett in General

The rather wonderfully named Barnaby Jack is set to deliver a rather interesting speech at this July’s Black Hat conference in Las Vegas. The security researcher says he plans to reveal security vulnerabilities of two types of ATM along with a new ATM rootkit.

Jack was originally due to give the talk, called Jackpotting Automated Teller Machines, at Black Hat USA 2009. TG Daily reports that that original speech was pulled due to concerns from one of his employers though, according to TG, “he’s now got a new employer who’s a little less uptight about its contents”.

Getting firmly in our good books with an excellent pop culture reference, Jack said of the upcoming speech: “I’ve always liked the scene in ‘Terminator 2’ where John Connor walks up to an ATM, interfaces his Atari to the card reader and retrieves cash from the machine. I think I’ve got that kid beat.”

He continued by saying the upside of the delay in making the Red Hat presentation is that  there has been an additional year to research ATM attacks. “I’m armed with a whole new bag of tricks,” he added.

Most attacks on ATMs involve the use of card skimmers, or the physical theft of the machines themselves. Targeted attacks on the underlying software are rare. “Last year, there was one ATM; this year, I’m doubling down and bringing two new model ATMs from two major vendors,” promised Jack.

“I will demonstrate both local and remote attacks, and I will reveal a multi-platform ATM rootkit. Finally, I will discuss protection mechanisms that ATM manufacturers can implement to safeguard against these attacks.”

Should be an interesting one to watch out for. In the meantime I’ve just made a mental note to watch ‘Terminator 2’ this weekend, as well as a further one to never watch the third or fourth installments again.

Comments are closed.