AFP: Hack attack hits ATM jackpots

Computer security researcher Barnaby Jack jokes that he has resorted to hiding cash under his bed since figuring out how to crack automated teller machines remotely using the Internet.

The New Zealand native on Saturday demonstrated his “ATM jackpotting” discovery for an overflow crowd of hackers during a presentation at the infamous DefCon gathering in Las Vegas.

“You don’t have to go to the ATM at all,” Jack told AFP after briefing fellow software savants. “You can do it from the comfort of your own bedroom.”

Jack proved his findings using two kinds of ATMs typically found in corner stores, bars or other “stand-alone” venues in the United States but said the flaw likely exists in machines at banks.

Banks use “remote management” software to monitor and control their ATMs, and Jack used a weakness in that kind of code to take control of machines by way of the Internet.

via AFP: Hack attack hits ATM jackpots.

Diebold 2Q Sales Fall, Probes Russian Ops Compliance – WSJ.com

Diebold Inc. (DBD), which posted lower sales data as financial institutions continued to show hesitation in spending on new automated teller machines, said it is conducting an internal review of its compliance with international corruption standards after finding potential irregularities at its Russian subsidiary.

Diebold, which manufactures ATMs and provides related security and outsourcing services, said Thursday that its Russian unit may have run afoul of the Foreign Corrupt Practices Act’s books and records provisions. Diebold said it identified “certain transactions and payments” in Russia while conducting due diligence in connection with a potential acquisition there.

The company is now conducting a review of its global Foreign Corrupt Practices Act compliance and is reporting its findings to the U.S. Department of Justice and the Securities and Exchange Commission.

via UPDATE: Diebold 2Q Sales Fall, Probes Russian Ops Compliance – WSJ.com.