Security Analysis of Smartphone Point-of-Sale Systems
نویسندگان
چکیده
We experimentally investigate the security of several smartphone point-of-sale (POS) systems that consist of a software application combined with an audio-jack magnetic stripe reader (AMSR). The latter is a small hardware dongle that reads magnetic stripes on payment cards, (sometimes) encrypts the sensitive card data, and transmits the result to the application. Our main technical result is a complete break of a feature-rich AMSR with encryption support. We show how an arbitrary application running on the phone can permanently disable the AMSR, extract the cryptographic keys it uses to protect cardholder data, or gain the privileged access needed to upload new firmware to it.
منابع مشابه
Review of Coupon Systems
Coupons are very effective way of promoting products and widely used by merchants. As smartphones became indispensable to life and are carried by almost everybody, mobile coupons are replacing traditional paper coupons. Group coupon is one of the coupon sale types where sold coupons are money refunded unless the number of buyers reach to certain predetermined number. Groupon is an American onli...
متن کاملBlueWallet: The Secure Bitcoin Wallet
With the increasing popularity of Bitcoin, a digital decentralized currency and payment system, the number of malicious third parties attempting to steal bitcoins has grown substantially. Attackers have stolen bitcoins worth millions of dollars from victims by using malware to gain access to the private keys stored on the victims’ computers or smart phones. In order to protect the Bitcoin priva...
متن کاملIdentifying Educational Contents and Technical Features of a Self-Management Smartphone Application for Women with Breast Cancer
Background and Objective: Breast cancer patients need a variety of skills and abilities to deal with the consequences of the illness. Self-management is one of the operational strategies that leads to disease acceptance, treatment adherence, and improving the quality of life. The use of smartphone applications (apps) can play a pivotal role in the support and self-management of breast cancer pa...
متن کاملRelationship Between Smartphone Addiction and Stress and Life Satisfaction in Medical Students
Background: Students, as the first adopters of new technologies are more exposed to smartphone addiction than other groups in society, and consequently problems, such as biopsychological and academic conditions. Objective: This study aimed to explore the relationship between smartphone addiction and stress and life satisfaction in the medical students of Guilan University of Medical Sciences....
متن کاملSecurity Considerations for Retail System OEMs
Original equipment manufacturers (OEMs) of retail systems, such as point-of-sale (POS), ATMs and self-service terminals, play a unique role in helping retailers understand and incorporate the latest security technologies. OEM product managers, in particular, are responsible for ensuring the systems they bring to market can protect against security threats and comply with standards bodies, such ...
متن کامل