♫musicjinni

BSides Lisbon 2016 - From your PC to your nearest ATM: a history of the sneakiest financial malware

video thumbnail
The traditional way of milking dry a bank's automated teller machine (ATM) was to blow it up. Literally, steel and everything... but there's a new kid on the block. Modern criminal gangs around the world have now figured out that deploying ATM malware is an easy shortcut to jackpot up to the latest banknote inside. In this talk, we describe all the reasons that have led the criminals to develop their new golden goose, the strategies they use and each of the main malware families in this new battlefield as well as the criminal organizations responsible for this new threat. The challenge these malware writers face is accessing the special hardware of these machines: pinpad, card reader and the cash cassettes. Different malware families solve this their own particular way. The paper describes each family in detail as well as the geographical area it comes from. An overview of the criminal organizations behind these threats is presented. We will conclude with some lessons learned and recommendations on how to protect these very special machines.

About the Speaker:
David Sancho joined Trend Micro in 2002, having fulfilled a variety of technical security-related roles. Currently, his title is Senior Anti-Malware Researcher, and he specializes in web threats and other emerging technologies. In his more than 17 years of experience in the security field, David has written and published a number of research papers on malware tendencies, has been featured in the media, and has participated in customer events where he has presented on business issues and malware-related topics. His interests include web infection methods, vulnerability exploitation, and white-hat hacking in general.

BSides Lisbon 2016 - From your PC to your nearest ATM: a history of the sneakiest financial malware

BSides Lisbon 2016 - I for one welcome our new Cyber Overlords! An intro to ML in cybersecurity

BSides Lisbon 2016 - Memory Corruption is for Wussies! by Pedro Vilaça

ATM Malware, Malware for Money, Mohamed Enab

BSides Lisbon 2016 - Lessons Learned from a Bug Bounty Operator by Jonathan Claudius

My thoughts on BSides Lisbon

BSides Glasgow 2018 - Andy Gill and Brian Higgins - The Internet of Death

My thoughts on 8dot8 security conference

2017-016-Fileless_Malware, and reclassifying malware to suit your needs

7 Critical CyberSecurity Protections EVERY Law Firm Must Have In Place NOW

DEF CON 31 - Growing the Community of AI Hackers w Generative Red Team - Cattell, Chowdhury, Carson

2017-12-06 CERIAS - Penetration Testing: What\? Why\? How\?

Innovation Meets Cybersecurity - Tim Maurer

'Is your toaster watching you?' - EDPS Trainees conference

Disclaimer DMCA