Insider attacks on PIN generation
Igor Mozolevsky
mozolevsky at gmail.com
Wed Feb 22 11:41:43 GMT 2012
On 22 February 2012 11:37, Ian Batten <igb at batten.eu.org> wrote:
> I have a memory of being told of an insider attack at a bank where
> programmers managed to force the system to issue PINs drawn
> from a very small set, so that with a stolen card they had a better
> than 50% chance of guessing the correct PIN within three attempts.
> But I can't find it in the literature. Anyone find it rings a bell?
http://www.arx.com/files/Documents/The_Unbearable_Lightness_of_PIN_Cracking.pdf
?
Cheers,
--
Igor M.
More information about the ukcrypto
mailing list