Insider attacks on PIN generation

Igor Mozolevsky mozolevsky at gmail.com
Wed Feb 22 11:41:43 GMT 2012


On 22 February 2012 11:37, Ian Batten <igb at batten.eu.org> wrote:
> I have a memory of being told of an insider attack at a bank where
> programmers managed to force the system to issue PINs drawn
> from a very small set, so that with a stolen card they had a better
> than 50% chance of guessing the correct PIN within three attempts.
> But I can't find it in the literature.  Anyone find it rings a bell?


http://www.arx.com/files/Documents/The_Unbearable_Lightness_of_PIN_Cracking.pdf
?


Cheers,

-- 
Igor M.



More information about the ukcrypto mailing list