Hack Your ATM with Friend's Raspberry.Py

By Alexey Osipov and Olga Kochetova
"At all times there have been bad guys, who tried to steal money. ATM machines containing vast amounts of money have always been attractive targets. Until recently, criminals were only using physical weaknesses. Skimmers and shimmers for stealing magstripe-tracking data, fake pin pads and cameras for stealing pin codes, and even fake ATMs were created.
Time passed and ATM software started to unify. Where there is unification, there are viruses. Trojan.Skimmer.*, Ploutus and other named or unnamed trojans.
And what did we see on the public scene? Vendors started discussing the skimmers problem only after they were detected in the wild. As you remember, Barnaby Jack presented ""Jackpotting Automated Teller Machines"" at Black Hat USA 2010. He used some vulnerabilities in ATM software. He showed that malware, was injected into the OS of the ATM via bootable flash drive or via remote management TCP port.
Barnaby Jack's work was based on assumptions that most vulnerabilities were concentrated in the host machine and that we can and should reuse software made by ATM vendors. And that's quite true, but... antiviruses, locked firmware upgrades, blocked USB connectors, and encrypted hard drives can mitigate such risks. But, what about connecting not to the host machine, but to devices themselves? What countermeasures exist, when we will try to impersonate ourselves as an ATM host? Hacking ATMs with small computer like Raspberry Pi should be impossible, but it isn't.
The point of our presentation is to draw attention to the problem, which has existed for quite a long time. The problem is usage of common interfaces (like RS232 or USB) and protocols of communication from host machine to such devices as card readers, pin pads and/or dispenser units."

Пікірлер: 15

  • @LemonChieff
    @LemonChieff8 жыл бұрын

    Are there any english subtitles ?

  • @max-zb1io

    @max-zb1io

    5 жыл бұрын

    yes

  • @sharifkhan4748
    @sharifkhan47485 жыл бұрын

    Can you tell me the device specifications.what device and software will support that?

  • @ashitavhazarika57
    @ashitavhazarika576 жыл бұрын

    what are the codes you typed in cmd

  • @peppercornsauce5067
    @peppercornsauce50673 жыл бұрын

    Unfortunately and even with subtitles I still cant understand half of what she is saying.

  • @MrLYN274
    @MrLYN2745 жыл бұрын

    only words i could hear : Cyka Blyat

  • @max-zb1io
    @max-zb1io5 жыл бұрын

    wie weeh do thisy thingsssss

  • @ivannik100
    @ivannik1005 жыл бұрын

    Бля, как его с таким английским к микрофону допустили?

  • @iAlexTube
    @iAlexTube5 жыл бұрын

    твой английский - идеальный для моего уха, очень легко узнать каждое произнесенное слово. думаю я тоже перейду на это произношение, чтоб не ломать себе голову и язык тупым британским произношением

  • @annonannony3560
    @annonannony35608 жыл бұрын

    help develop my ai

  • @user-gv6ll1og3g
    @user-gv6ll1og3g5 жыл бұрын

    мне одному кажется что чувак х..ню несет

  • @Sami-ff5zo
    @Sami-ff5zo10 ай бұрын

    What prevents me from completing this video is the awful English pronunciation, I felt like my ears are bleeding. 😞