Thermal Cameras' Downside

A new paper from three UC San Diego researchers shows how someone with a thermal camera can easily determine a bank customer's ATM PIN code by using the camera soon after that code is typed in. "Heat of the Moment: Characterizing the Efficacy of Thermal Camera-Based Attacks," written by Keaton Mowery, Sarah Meiklejohn, and Stefan Savage, explains that this method is, unfortunately for ATM users, superior to simply observing the transaction and hoping to memorize the code as the keypad is used or by filming it and watching the video later.

"This attack has the advantage over using a conventional camera that the codes do not need to be captured while they are being typed and can instead be recovered for a short period afterwards," their abstract states. "To get the broadest sense of how effective such an attack might be, we consider a number of variables: the material of the keypad, the user entering the code, the distance from the camera to the keypad, and the possible methods used to analyze the data....

"As we will see, both human and automated attacks are by and large successful in recovering the keys present in the code, even a full minute after they have been pressed; both methods are also able to determine the exact code (i.e., including the order in which the keys were pressed) for a smaller fraction of codes. Even without ordering, however, the search space of possible keys is still vastly reduced by knowing the keys pressed; for example, the search space is reduced from 10,000 possible codes to approximately 24 for a 4-digit code."

Metal ATM keypads are the best defense because they retain heat from a customer's fingers only briefly, the authors reported.

Posted by Jerry Laws on Aug 18, 2011


Product Showcase

  • Full Line of Defense Against Combustible Dust Nilfisk

    Nilfisk provides a comprehensive range of industrial vacuums meticulously crafted to adhere to NFPA 652 housekeeping standards, essential for gathering combustible dust in Class I, Group D, and Class II, Groups E, F & G environments or non-classified settings. Our pneumatic vacuums are meticulously engineered to fulfill safety criteria for deployment in hazardous surroundings. Leveraging advanced filtration technology, Nilfisk ensures the secure capture of combustible materials scattered throughout your facility, ranging from fuels, solvents, and metal dust to flour, sugar, and pharmaceutical powders. Read More

  • The MGC Simple Plus

    The MGC Simple Plus is a simple-to-use, portable multi gas detector that runs continuously for three years without being recharged or routinely calibrated after its initial charge and calibration during manufacturing. The detector reliably tests a worksite’s atmosphere for hydrogen sulfide, carbon monoxide, oxygen and combustible gases (LEL). Its durability enables the detector to withstand the harshest treatment and environments, hence earning it an IP 68 rating. The MGC Simple Plus is also compatible with a variety of accessories, such as the GCT External Pump. Visit gascliptech.com for more information. Read More

  • SECUPRO MARTEGO

    FOR HIGHEST DEMANDS. A cutting tool in which function and design go hand in hand. Meet the SECUPRO MARTEGO, our prize-winning squeeze-grip safety knife with fully automatic retractable blade for safety. • Ergonomically friendly trigger mechanism to engage the blade • Durable body made of aluminum • Safer alternative to fixed blade utility knives for general cutting tasks • 9 mm Cutting depth • Easy, tool free blade change Dimensions: L 6.10" L x 0.71" W x 1.91" H Weight: 3.70 oz Cutting Depth: 9 mm Read More

Featured

Artificial Intelligence

Webinars