-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
What is Microsoft talking about when they mention âsecurityâ?
,----[ Quote ]
| One man in Florida was arrested by federal authorities (the other two are
| presumably in Russia) after exploiting Microsoft Windows vulnerabilities in
| credit card processing terminals in places including 7/11 gas
| station/convenience stores. The men got away with stealing over 130 million
| credit and debit card numbers as well as detailed information of millions of
| people from their bank records that could be used to commit identity fraud.
|
| [...]
|
| When Microsoft talks about security initiatives, theyâre talking about the
| kind of âsecurityâ that makes them money. They arenât talking about securing
| your data from remote attacks, because they are not being held to account for
| this. Theyâre talking about âsecuringâ the RIAAâs music from âattackâ by you,
| theyâre âsecuringâ their Windows revenue stream from âattackersâ who crack
| the product activator and costing them money, and theyâre âsecuringâ the
| MPAAâs movies from you, the âattackerâ, who is trying to record them on his
| computer through Windows Media Center to watch later when you get home from
| work. If Microsoft put half as much work into securing your private and
| confidential information as they do circle jerking their pals over at the
| RIAA/MPAA, then maybe there wouldnât be so much identity theft.
`----
http://izanbardprince.wordpress.com/2009/08/18/what-is-microsoft-talking-about-when-they-mention-security/
US man 'stole 130m card numbers'
http://news.bbc.co.uk/1/hi/business/8206305.stm
Recent:
Data-sniffing trojans burrow into Eastern European ATMs
,----[ Quote ]
| Security experts have discovered a family of data-stealing trojans that have
| burrowed into automatic teller machines in Eastern Europe over the past 18
| months.
|
| [...]
|
| The SpiderLabs report said only that the targeted ATMs ran on the Windows XP
| operating system.
`----
http://www.theregister.co.uk/2009/06/03/atm_trojans/
Windows XP cash machines can steal your PIN
,----[ Quote ]
| The SpiderLabs team reports that it has been able to perform an analysis of
| the malware, which had been discovered on compromised East European cash
| machines running Windows XP.
|
| [...]
|
| I understand that the malware can be installed, and activated, by way of a
| Borland Delphi Rapid Application Development executable that replaces the
| original isadmin.exe utility file. Executing this dropper produces the
| malware file within the C:\WINDOWS directory of the machine.
`----
http://www.itwire.com/content/view/25484/1054/
Windows Trojan on Diebold ATMs
,----[ Quote ]
| Vanja Svacjer, a virus expert for Sophos, has reported his latest find in a
| blog entry: a Trojan that spies on PINs. The difference is that this example
| specialises in cash dispensers made by Diebold, which run Windows.
`----
http://www.heise.de/english/newsticker/news/134842
Related:
PINs stolen from Citibank ATMs
,----[ Quote ]
| The alleged thieves made off with about $2 million between October 2007 until
| March of this year. Officials believe they remotely broke into the back-end
| computers that approve cash withdrawals and grabbed the PINs as they were
| being transmitted from the ATMs to the transaction processing computers,
| which increasingly use Windows, the report says.
`----
http://news.cnet.com/8301-10784_3-9982500-7.html?part=rss&subj=news&tag=2547-1_3-0-20
Windows-based cash machines 'easily hacked'
,----[ Quote ]
| ATMs, or automated teller machines, today face the Internet-born threat of
| worms and denial-of-service attacks, as well as being at risk from malicious Â
| applications that can harvest customer data or hijack machines.
`----
http://news.zdnet.com/2100-1009_22-6233030.html
Bots rule in cyberspace
,----[ Quote ]
| USA TODAY REPORTS that on an average day, 40 per cent of the 800 million
| computers connected to the Internet are bots used to send out spam, viruses
| and to mine for sensitive personal data. Â
`----
http://www.theinquirer.net/gb/inquirer/news/2008/03/17/bots-rule-cyberspace
Brazilian banks look to Linux for ATMs
,----[ Quote ]
| Brazilian banking giant Banco do Brasil this year is preparing to start a
| massive migration of one of the worldâs biggest ATM fleets to the GNU/Linux
| operating system.
`----
http://www.atmmarketplace.com/article.php?id=9929&prc=12&page=42
Madness: ATMs Running Windows XP?
http://opendotdotdot.blogspot.com/2008/02/madness-atms-running-windows-xp.html
Pictures of ATM Machine Running Windows XP Crashing
,----[ Quote ]
| The other day I pulled up to an ATM and it was in the middle of crashing and
| so I was able to shoot these pics during the crash and reboot. The ATM never
| did come up fully so I was unable to get some cash. Â
`----
http://www.socialdailynews.com/2007/09/pictures-of-atm-machine-running-windows-xp-crashing/
ATM using un-activated Windows
,----[ Quote ]
| Ok, so lets be realistic for a moment here, first off, is 'Hackers Best
| Friend" MS Windows really the optimal choice for an operating system that
| spits out cash? Â
`----
http://www.itdrive.com/articles/177/1/ATM-using-un-activated-Windows/Page1.html
ATM with Pirated Windows [with photos]
,----[ Quote ]
| In Russian you can sometimes meet pirated copy of Windows even
| on ATM. It warns that this copy of Windows need activation and
| the work of ATM gets interrupted.
`----
http://englishrussia.com/?p=981#more-981
http://img505.imageshack.us/my.php?image=photo06091944fe5.jpg
Why not Embedded? ATM's Running XP Professional...
,----[ Quote ]
| This time, I happened to be there when it suddenly BSOD'd and began a
| reboot cycle. Obviously, to BSOD it needs to run Windows, and moments
| later, that was confirmed. But that's not the story here -- believe it or
| not, most ATMs run Windows nowadays, and there's absoloutely nothing
| wrong with that.
|
| [...]
|
| There's a million reasons why an ATM should must be RTOS, be it Linux or
| VxWorks or Windows CE, but even if you don't go with RTOS, Windows XP
| Professional most certainly isn't the answer. Especially if it's not even
| SP2.
`----
http://neosmart.net/blog/archives/287
ATMs hacked using MP3 player
,----[ Quote ]
| A criminal gang in the U.K. was able to steal confidential banking
| data by bugging ATMs with an MP3 player, The Times of London
| reported in its online edition Thursday.
`----
http://news.com.com/2061-10789_3-6135905.html
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iEYEARECAAYFAkqLAwMACgkQU4xAY3RXLo7xsACfahbGEaKs9uoShMD5+IrBQXM8
vSEAoKTiKJvLGrBu22zRkrBGdpSIhOqs
=Zarp
-----END PGP SIGNATURE-----
|
|