{"id":440,"date":"2016-08-10T12:40:18","date_gmt":"2016-08-10T11:40:18","guid":{"rendered":"http:\/\/www.dataleaklawyers.co.uk\/blog\/?p=440"},"modified":"2016-08-31T14:08:11","modified_gmt":"2016-08-31T13:08:11","slug":"atm-chip-pin-hack-revealed-black-hat-conference","status":"publish","type":"post","link":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference","title":{"rendered":"ATM Chip and Pin hack revealed at Black Hat conference"},"content":{"rendered":"<p>While chip and pin is widely used in Europe, the US has only just started to use the technology.<\/p>\n<p>Concerns across the pond are that this makes them a new target for hackers, according to researchers at the Black Hat conference in Las Vegas.<\/p>\n<p>They demonstrated how hackers were able to use mostly unmodified ATM machines to dispense hundreds of dollars -similar to how hackers would possibly use the machines.<br \/>\n<!--more--><br \/>\nTom Beardsley, security manager for Rapid7, who oversaw the hack, said:<\/p>\n<div class=\"well text-center\">\n<div style=\"width: 100%; padding-bottom: 7px;\"><em>&#8220;In the US we have finally caught up to the rest of the world who are using chip and pin&#8221;<\/em><\/div>\n<div style=\"width: 100%;\"><em>&#8220;The state of chip and pin security is that it&#8217;s a little oversold.&#8221;<\/em><\/div>\n<p>&nbsp;<\/p>\n<\/div>\n<h2>About the hack<\/h2>\n<p>The story is quite a concerning one as the &#8220;hack&#8221; was able to get ATMs to spit money out!<\/p>\n<p>Rapid7 disclosed the vulnerabilities of the hack at the conference to major banks and ATM makers. Specifics were not shared in order to prevent the same technique being used, and whilst this story stems from the move in the U.S. to use chip and pin, we should all be concerned &#8211; especially since we use it so much over here in the UK.<\/p>\n<p><strong>The hack is a two stage process&#8230;<\/strong><\/p>\n<p>The criminals first modify the point-of-sale machines by adding a device which sits between the victims chip and the receptor in the machine where the card is inserted. This device is known as a shimmer.<\/p>\n<p>The shimmer then reads the chip when the card is inserted. It also reads the pin that is entered and all of this information is sent to the criminals.<\/p>\n<p>For the second part of the hack, criminals then download the information from the stolen card to a Smartphone which can basically recreate the card in any ATM.<\/p>\n<p>The chip and pin is meant to add more security compared to people swiping\u00a0the magnetic strip, which allowed criminals to copy the information on the cards and have unlimited access to the card information.<\/p>\n<p>The chip and pin only provides a small window of opportunity making it harder for the criminals.<\/p>\n<p>The ATM can be instructed to withdraw cash constantly, and at any point. This mean that criminals could have a vast collection of modified points of sale system that allows them to have a constant stream of cash.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>While chip and pin is widely used in Europe, the US has only just started to use the technology. Concerns across the pond are that this makes them a new target for hackers, according to researchers at the Black Hat conference in Las Vegas. They demonstrated how hackers were able to use mostly unmodified ATM &hellip; <a href=\"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">ATM Chip and Pin hack revealed at Black Hat conference<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[12],"class_list":["post-440","post","type-post","status-publish","format-standard","hentry","category-hacking-news","tag-bank-hacks"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>ATM Chip And Pin Hack Revealed At Black Hat Conference<\/title>\n<meta name=\"description\" content=\"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"ATM Chip And Pin Hack Revealed At Black Hat Conference\" \/>\n<meta property=\"og:description\" content=\"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference\" \/>\n<meta property=\"og:site_name\" content=\"Data Leaks, Breaches &amp; Hacks\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/YourLawyersUK\/\" \/>\n<meta property=\"article:published_time\" content=\"2016-08-10T11:40:18+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2016-08-31T13:08:11+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/2016\/08\/wolverhampton_council_data_leak_large.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"http:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/2016\/08\/wolverhampton_council_data_leak_large.png\" \/>\n<meta name=\"twitter:creator\" content=\"@YourLawyers_\" \/>\n<meta name=\"twitter:site\" content=\"@YourLawyers_\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Estimated reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference\"},\"author\":{\"name\":\"Author\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#\\\/schema\\\/person\\\/fc9f019d474c54972e7d226989280bfd\"},\"headline\":\"ATM Chip and Pin hack revealed at Black Hat conference\",\"datePublished\":\"2016-08-10T11:40:18+00:00\",\"dateModified\":\"2016-08-31T13:08:11+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference\"},\"wordCount\":401,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#organization\"},\"keywords\":[\"bank hacks\"],\"articleSection\":[\"Hacking News\"],\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference\",\"url\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference\",\"name\":\"ATM Chip And Pin Hack Revealed At Black Hat Conference\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#website\"},\"datePublished\":\"2016-08-10T11:40:18+00:00\",\"dateModified\":\"2016-08-31T13:08:11+00:00\",\"description\":\"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference#breadcrumb\"},\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/atm-chip-pin-hack-revealed-black-hat-conference#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"ATM Chip and Pin hack revealed at Black Hat conference\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/\",\"name\":\"Data Leaks, Breaches & Hacks\",\"description\":\"Latest News, Articles &amp; Opinions\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-GB\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#organization\",\"name\":\"Data Leak Lawyers\",\"url\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/wp-content\\\/uploads\\\/yl_dll_amp.png\",\"contentUrl\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/wp-content\\\/uploads\\\/yl_dll_amp.png\",\"width\":288,\"height\":70,\"caption\":\"Data Leak Lawyers\"},\"image\":{\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/YourLawyersUK\\\/\",\"https:\\\/\\\/x.com\\\/YourLawyers_\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/#\\\/schema\\\/person\\\/fc9f019d474c54972e7d226989280bfd\",\"name\":\"Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g\",\"caption\":\"Author\"},\"url\":\"https:\\\/\\\/www.dataleaklawyers.co.uk\\\/blog\\\/author\\\/maisie\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"ATM Chip And Pin Hack Revealed At Black Hat Conference","description":"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference","og_locale":"en_GB","og_type":"article","og_title":"ATM Chip And Pin Hack Revealed At Black Hat Conference","og_description":"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.","og_url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference","og_site_name":"Data Leaks, Breaches &amp; Hacks","article_publisher":"https:\/\/www.facebook.com\/YourLawyersUK\/","article_published_time":"2016-08-10T11:40:18+00:00","article_modified_time":"2016-08-31T13:08:11+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/2016\/08\/wolverhampton_council_data_leak_large.png","type":"image\/png"}],"author":"Author","twitter_card":"summary_large_image","twitter_image":"http:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/2016\/08\/wolverhampton_council_data_leak_large.png","twitter_creator":"@YourLawyers_","twitter_site":"@YourLawyers_","twitter_misc":{"Written by":"Author","Estimated reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference#article","isPartOf":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference"},"author":{"name":"Author","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#\/schema\/person\/fc9f019d474c54972e7d226989280bfd"},"headline":"ATM Chip and Pin hack revealed at Black Hat conference","datePublished":"2016-08-10T11:40:18+00:00","dateModified":"2016-08-31T13:08:11+00:00","mainEntityOfPage":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference"},"wordCount":401,"commentCount":0,"publisher":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#organization"},"keywords":["bank hacks"],"articleSection":["Hacking News"],"inLanguage":"en-GB","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference","url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference","name":"ATM Chip And Pin Hack Revealed At Black Hat Conference","isPartOf":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#website"},"datePublished":"2016-08-10T11:40:18+00:00","dateModified":"2016-08-31T13:08:11+00:00","description":"At a recent Black Hat conference in Las Vegas, an ATM Chip and Pin hack was demonstrated which has highlighted serious security concerns.","breadcrumb":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/atm-chip-pin-hack-revealed-black-hat-conference#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.dataleaklawyers.co.uk\/blog"},{"@type":"ListItem","position":2,"name":"ATM Chip and Pin hack revealed at Black Hat conference"}]},{"@type":"WebSite","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#website","url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/","name":"Data Leaks, Breaches & Hacks","description":"Latest News, Articles &amp; Opinions","publisher":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.dataleaklawyers.co.uk\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-GB"},{"@type":"Organization","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#organization","name":"Data Leak Lawyers","url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/yl_dll_amp.png","contentUrl":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-content\/uploads\/yl_dll_amp.png","width":288,"height":70,"caption":"Data Leak Lawyers"},"image":{"@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/YourLawyersUK\/","https:\/\/x.com\/YourLawyers_"]},{"@type":"Person","@id":"https:\/\/www.dataleaklawyers.co.uk\/blog\/#\/schema\/person\/fc9f019d474c54972e7d226989280bfd","name":"Author","image":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/secure.gravatar.com\/avatar\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/81ea840bcfd73a45a8ad425b8e37aa8677eb68d5842c5b86b0101776ca2a5d8e?s=96&d=mm&r=g","caption":"Author"},"url":"https:\/\/www.dataleaklawyers.co.uk\/blog\/author\/maisie"}]}},"_links":{"self":[{"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/posts\/440","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=440"}],"version-history":[{"count":8,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/posts\/440\/revisions"}],"predecessor-version":[{"id":598,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/posts\/440\/revisions\/598"}],"wp:attachment":[{"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=440"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=440"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dataleaklawyers.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=440"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}