<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: ATM Skimmers, Part II</title> <atom:link href="http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/feed/" rel="self" type="application/rss+xml" /><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/</link> <description>In-depth security news and investigation</description> <lastBuildDate>Fri, 30 Jul 2010 04:29:12 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.0</generator> <item><title>By: L.T.</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-6312</link> <dc:creator>L.T.</dc:creator> <pubDate>Tue, 01 Jun 2010 15:27:48 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-6312</guid> <description>When I was looking to buy a downtown coffee shop location (and thereby graduate from IT) I had located some refurbished IBM POS machines and a Linux-based OS/POS system.  Multi-tasked, handled the printer, the screen (keyboard entry), could remap keyboard fairly easily. It made the older machines work quick like a bunny, which was the important during the morning go-to-work coffee rush.</description> <content:encoded><![CDATA[<div
style="background-color:#FFFFCC !important"><p>When I was looking to buy a downtown coffee shop location (and thereby graduate from IT) I had located some refurbished IBM POS machines and a Linux-based OS/POS system.  Multi-tasked, handled the printer, the screen (keyboard entry), could remap keyboard fairly easily. It made the older machines work quick like a bunny, which was the important during the morning go-to-work coffee rush.</p></div><p>Well-loved. Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-6312" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('6312', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-6312-up" style="font-size:12px; color:#009933;">5</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-6312" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('6312', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-6312-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: AlphaCentauri</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-6213</link> <dc:creator>AlphaCentauri</dc:creator> <pubDate>Fri, 28 May 2010 07:01:12 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-6213</guid> <description>http://news.softpedia.com/news/Romanian-Authorities-Shut-Down-ATM-Skimmer-Manufacturing-Operation-143204.shtmlRomanian authorities conducted raids May 27 and rounded up a number of the people manufacturing skimmers.</description> <content:encoded><![CDATA[<p><a
href="http://news.softpedia.com/news/Romanian-Authorities-Shut-Down-ATM-Skimmer-Manufacturing-Operation-143204.shtml" rel="nofollow">http://news.softpedia.com/news/Romanian-Authorities-Shut-Down-ATM-Skimmer-Manufacturing-Operation-143204.shtml</a></p><p>Romanian authorities conducted raids May 27 and rounded up a number of the people manufacturing skimmers.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-6213" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('6213', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-6213-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-6213" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('6213', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-6213-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Rod</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-5670</link> <dc:creator>Rod</dc:creator> <pubDate>Sat, 08 May 2010 23:08:25 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-5670</guid> <description>This post makes me recall back in 2005 when a friend of mine in Aguascalientes, Mexico had to go at night to the ATM to get some cash, he went and after returning he was admired of a &#039;new&#039; ATM (1 of 3) available at that specific bank, he mentioned things like having just used a new ATM system with a color display and touchscreen capabilities...  he was completely unsuspected at the time. To make the story it short, of course he got no money at the time and days later he found 2 grand to be missing from his account. Weeks later a band of Venezuelans was arrested in the area.Greetz to Germy Muñoz.</description> <content:encoded><![CDATA[<p>This post makes me recall back in 2005 when a friend of mine in Aguascalientes, Mexico had to go at night to the ATM to get some cash, he went and after returning he was admired of a &#8216;new&#8217; ATM (1 of 3) available at that specific bank, he mentioned things like having just used a new ATM system with a color display and touchscreen capabilities&#8230;  he was completely unsuspected at the time. To make the story it short, of course he got no money at the time and days later he found 2 grand to be missing from his account. Weeks later a band of Venezuelans was arrested in the area.</p><p>Greetz to Germy Muñoz.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5670" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5670', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-5670-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5670" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5670', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-5670-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: dot</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-5606</link> <dc:creator>dot</dc:creator> <pubDate>Thu, 06 May 2010 06:51:55 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-5606</guid> <description>SHUT UP!</description> <content:encoded><![CDATA[<p>SHUT UP!</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5606" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5606', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-5606-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5606" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5606', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-5606-down" style="font-size:12px; color:#990033;">4</span></p>]]></content:encoded> </item> <item><title>By: Jack</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-5189</link> <dc:creator>Jack</dc:creator> <pubDate>Wed, 21 Apr 2010 14:40:26 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-5189</guid> <description>This was a very informative article. I saved it with the pics so I can show it to my family.Another thing the banks need to do is to have telephone numbers posted on or somewhere near the ATM machine so that people can call from their cell phones right away if they see anything suspicious.I drove up to the ATM on the side of my bank bldg one day and noticed that it looked irregular. The card slot was crooked and not properly affixed so I didn&#039;t use it.  I looked for a phone number to call. I also looked around to see if there was anyone loitering in the area. I found a piece of paper in my car, wrote a note warning people not to use it (or go to the walk up ATM instead) and stuck this in the opening until the bank or police had a chance to look into this. I went home and called my bank but wasn&#039;t able to leave a message so I called the police dept after that and reported it to them.</description> <content:encoded><![CDATA[<p>This was a very informative article. I saved it with the pics so I can show it to my family.</p><p>Another thing the banks need to do is to have telephone numbers posted on or somewhere near the ATM machine so that people can call from their cell phones right away if they see anything suspicious.</p><p>I drove up to the ATM on the side of my bank bldg one day and noticed that it looked irregular. The card slot was crooked and not properly affixed so I didn&#8217;t use it.  I looked for a phone number to call. I also looked around to see if there was anyone loitering in the area. I found a piece of paper in my car, wrote a note warning people not to use it (or go to the walk up ATM instead) and stuck this in the opening until the bank or police had a chance to look into this. I went home and called my bank but wasn&#8217;t able to leave a message so I called the police dept after that and reported it to them.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5189" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5189', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-5189-up" style="font-size:12px; color:#009933;">2</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5189" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5189', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-5189-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: SR6</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-4877</link> <dc:creator>SR6</dc:creator> <pubDate>Thu, 08 Apr 2010 18:17:49 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-4877</guid> <description>What&#039;s really scaring is many ATMS, checkout machines, etc are still using NT.</description> <content:encoded><![CDATA[<p>What&#8217;s really scaring is many ATMS, checkout machines, etc are still using NT.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4877" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4877', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-4877-up" style="font-size:12px; color:#009933;">3</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4877" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4877', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-4877-down" style="font-size:12px; color:#990033;">1</span></p>]]></content:encoded> </item> <item><title>By: DarwinSurvivor</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-4042</link> <dc:creator>DarwinSurvivor</dc:creator> <pubDate>Wed, 17 Mar 2010 03:23:58 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-4042</guid> <description>Do you have any links to verify this claim? Since the screen (which is handled by the OS) displays feedback when keys are hit, i&#039;d be interested to know exactly what the keypad DOES tell the OS. The same keypad is also used for numbers (pin) and selections (enter, cancel, etc) so unless the keypad (which appears to be one piece) is physically split inside, I would instinctively think the OS is doing the encryption.</description> <content:encoded><![CDATA[<div
style="background-color:#FFFFCC !important"><p>Do you have any links to verify this claim? Since the screen (which is handled by the OS) displays feedback when keys are hit, i&#8217;d be interested to know exactly what the keypad DOES tell the OS. The same keypad is also used for numbers (pin) and selections (enter, cancel, etc) so unless the keypad (which appears to be one piece) is physically split inside, I would instinctively think the OS is doing the encryption.</p></div><p>Well-loved. Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4042" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4042', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-4042-up" style="font-size:12px; color:#009933;">5</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4042" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4042', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-4042-down" style="font-size:12px; color:#990033;">1</span></p>]]></content:encoded> </item> <item><title>By: Anon</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-4034</link> <dc:creator>Anon</dc:creator> <pubDate>Wed, 17 Mar 2010 02:41:40 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-4034</guid> <description>Malware only attack would not work as the OS at no point sees the users PIN. The PIN is encrypted upon entry in the PIN entry device, which is a tamper resistant security module, and is not decrypted until it reaches the issuing bank. You would need some sort of hardware modification (keypad overlay, camera) to record the PIN.</description> <content:encoded><![CDATA[<p>Malware only attack would not work as the OS at no point sees the users PIN. The PIN is encrypted upon entry in the PIN entry device, which is a tamper resistant security module, and is not decrypted until it reaches the issuing bank. You would need some sort of hardware modification (keypad overlay, camera) to record the PIN.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4034" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4034', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-4034-up" style="font-size:12px; color:#009933;">1</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4034" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4034', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-4034-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Marcus</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-3688</link> <dc:creator>Marcus</dc:creator> <pubDate>Fri, 12 Mar 2010 00:51:48 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-3688</guid> <description>I have to be honest, if I found one of these I would probably pull it off and take it home to reverse engineer it. The whole faceplate model changed my perception of what to look for</description> <content:encoded><![CDATA[<p>I have to be honest, if I found one of these I would probably pull it off and take it home to reverse engineer it. The whole faceplate model changed my perception of what to look for</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-3688" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('3688', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-3688-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-3688" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('3688', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-3688-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: geo mer</title><link>http://krebsonsecurity.com/2010/02/atm-skimmers-part-ii/#comment-3356</link> <dc:creator>geo mer</dc:creator> <pubDate>Sat, 06 Mar 2010 18:49:40 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=859#comment-3356</guid> <description>Recent WI pin read fraud involving 2 stores (currently known of within Hancock Fabric chain).   So, having made a recent fabrics purchase at a competitor&#039;s chain, called &quot;that&quot; chain and spoke with a mgr. who has &quot;head in sand&quot; and feels as &quot;her&quot; staff is &quot;bonded&quot; that nothing like this could &quot;ever&quot; happen &quot;there!&quot;    (I didn&#039;t take the time to explain there is always a % of &quot;honest&quot; persons who are &quot;not&quot;; the mgr. will have to find that out the &quot;hard way.&quot;)    Found your site, checking out pin reader fraud (also the sig.oth. does &quot;not&quot; understand how this could &quot;ever&quot; happen!).    Looks as tho there needs to be &quot;business mgmt.&quot; and &quot;educ. to the public, to protect us (from mgrs. having &quot;head in sand.&quot;).   g.</description> <content:encoded><![CDATA[<p>Recent WI pin read fraud involving 2 stores (currently known of within Hancock Fabric chain).   So, having made a recent fabrics purchase at a competitor&#8217;s chain, called &#8220;that&#8221; chain and spoke with a mgr. who has &#8220;head in sand&#8221; and feels as &#8220;her&#8221; staff is &#8220;bonded&#8221; that nothing like this could &#8220;ever&#8221; happen &#8220;there!&#8221;    (I didn&#8217;t take the time to explain there is always a % of &#8220;honest&#8221; persons who are &#8220;not&#8221;; the mgr. will have to find that out the &#8220;hard way.&#8221;)    Found your site, checking out pin reader fraud (also the sig.oth. does &#8220;not&#8221; understand how this could &#8220;ever&#8221; happen!).    Looks as tho there needs to be &#8220;business mgmt.&#8221; and &#8220;educ. to the public, to protect us (from mgrs. having &#8220;head in sand.&#8221;).   g.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-3356" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('3356', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-3356-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-3356" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('3356', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-3356-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using memcached
Page Caching using memcached (user agent is rejected)
Database Caching 4/9 queries in 0.002 seconds using memcached

Served from: krebsonsecurity.com @ 2010-07-30 05:22:44 -->