Security Analysis of Smartphone Point-of-Sale Systems

نویسندگان

  • WesLee Frisby
  • Benjamin Moench
  • Benjamin Recht
  • Thomas Ristenpart
چکیده

We experimentally investigate the security of several smartphone point-of-sale (POS) systems that consist of a software application combined with an audio-jack magnetic stripe reader (AMSR). The latter is a small hardware dongle that reads magnetic stripes on payment cards, (sometimes) encrypts the sensitive card data, and transmits the result to the application. Our main technical result is a complete break of a feature-rich AMSR with encryption support. We show how an arbitrary application running on the phone can permanently disable the AMSR, extract the cryptographic keys it uses to protect cardholder data, or gain the privileged access needed to upload new firmware to it.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Review of Coupon Systems

Coupons are very effective way of promoting products and widely used by merchants. As smartphones became indispensable to life and are carried by almost everybody, mobile coupons are replacing traditional paper coupons. Group coupon is one of the coupon sale types where sold coupons are money refunded unless the number of buyers reach to certain predetermined number. Groupon is an American onli...

متن کامل

BlueWallet: The Secure Bitcoin Wallet

With the increasing popularity of Bitcoin, a digital decentralized currency and payment system, the number of malicious third parties attempting to steal bitcoins has grown substantially. Attackers have stolen bitcoins worth millions of dollars from victims by using malware to gain access to the private keys stored on the victims’ computers or smart phones. In order to protect the Bitcoin priva...

متن کامل

Identifying Educational Contents and Technical Features of a Self-Management Smartphone Application for Women with Breast Cancer

Background and Objective: Breast cancer patients need a variety of skills and abilities to deal with the consequences of the illness. Self-management is one of the operational strategies that leads to disease acceptance, treatment adherence, and improving the quality of life. The use of smartphone applications (apps) can play a pivotal role in the support and self-management of breast cancer pa...

متن کامل

Relationship Between Smartphone Addiction and Stress and Life Satisfaction in Medical Students

Background: Students, as the first adopters of new technologies are more exposed to smartphone addiction than other groups in society, and consequently problems, such as biopsychological and academic conditions.  Objective: This study aimed to explore the relationship between smartphone addiction and stress and life satisfaction in the medical students of Guilan University of Medical Sciences....

متن کامل

Security Considerations for Retail System OEMs

Original equipment manufacturers (OEMs) of retail systems, such as point-of-sale (POS), ATMs and self-service terminals, play a unique role in helping retailers understand and incorporate the latest security technologies. OEM product managers, in particular, are responsible for ensuring the systems they bring to market can protect against security threats and comply with standards bodies, such ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2012