Заголовок
ptsecurity.com
7 sins of ATM
protection against logical attacks
Timur Yunusov
Senior expert
7 sins of ATM protection against logical attacks Timur Yunusov - - PowerPoint PPT Presentation
7 sins of ATM protection against logical attacks Timur Yunusov Senior expert ptsecurity.com whoami Positive Technologies (from 2009) Application security researcher (from 2009) Banking systems
Заголовок
ptsecurity.com
Timur Yunusov
Senior expert
Заголовок whoami
Заголовок whoami
10+ ATMs for the last year
Заголовок ATM security assessment
Заголовок 7 sins
Kiosk mode bypass
Hardware Network
OS
Заголовок Blackbox
Blackbox is dead
Заголовок Blackbox
Blackbox is dead
Заголовок Blackbox
Blackbox is (almost) dead (for researchers)
Have strong crypto btw dispenser and OS? BB is not possible BB is possible Yes
Заголовок Kiosk mode bypass
Kiosk mode bypass Windows XP/7
Заголовок Kiosk mode bypass
Заголовок Safe mode
Заголовок Hotkeys
Заголовок Hotkeys
http://www.techrepublic.com/blog/windows-and-office/the- complete-list-of-windows-logo-keyboard-shortcuts/
Заголовок AlwaysOnTop
This ATM is Out Of Service, Sorry for inconvenience
Заголовок AlwaysOnTop
This ATM is Out Of Service, Sorry for inconvenience
Заголовок P&P
Заголовок P&P
Заголовок P&P video/screenshot
Заголовок End of the story
Заголовок Privilege escalation techniques
Заголовок Privilege escalation techniques
Заголовок Privilege escalation techniques
Заголовок Privilege escalation techniques
Заголовок App control software bypass
Story so far…
ng_Application_Whitelisting.pdf
Заголовок Security software bypass
Заголовок Security software bypass
Заголовок Network
+ Firewall
VPN TLS MAC
Заголовок Network vulns
Заголовок Network/Hardware layer
http://blog.ptsecurity.com/2015/12/critical- vulnerabilities-in-3g4g-modems.html
Заголовок Network/Hardware layer
Заголовок Device mgmt
How to do all hacking stuff much easier?
Заголовок Device mgmt
Заголовок Booting process
The easiest way is…
Заголовок Booting process
Заголовок Logical vulns
How it happened?
Заголовок Logical vulns
Заголовок Logical vulns
Заголовок Logical vulns
Заголовок Logical vulns
Заголовок Logical vulns
Заголовок Summary
Windows 7 SP1 ATM Windows XP SP3 ATM
Kiosk bypass Hotkeys/Safe mode KeyboardDisabler bypass App control bypass 0day/Trusted soft Untrusted booting Privilege escalation 0day/MS15-051 Untrusted booting VPN/TLS disabling Misconfiguration/FS Untrusted booting Social Engineering Misconfiguration/FS
BIOS accessing from OS No password Network attacks MAC/TLS/VPN/App service MAC/TLS/VPN/OS services
Заголовок How all that happens?
mitigation measures like SIEM
Заголовок Greetz
Заголовок Contacts
http://uk.linkedin.com/in/tyunusov tyunusov@ptsecurity.com a66at
Заголовок
ptsecurity.com