You are here: silicon.com > Software > Security Strategy

Security Strategy

By Jo Best

Published: Tuesday 01 February 2005


Name

MikeW


Location

Midlands, UK


Occupation

Developer


Comment

A problem with some Chip&PIN terminals - the card is apparently swiped by the retailer, then the customer is asked to key the PIN into a keypad.

Making this behaviour acceptable to the customer is idiotic.

A disreputable retailer could swipe-read the card magstripe, then obtain the PIN from the keypad entry, giving him everything required to access an ATM, since ATMs don't yet appear to have Chip readers.

Customers should only ever enter their PIN into the keypad reading their card - the card should NEVER be swiped if you are entreing your PIN.

Marks and Spencer have this kind of terminal, and the manufacturers should be reprimanded for failing to appreciate the potential for security breach that they might be encouraging.



  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

The Round-Up The Weekly Round-Up: 03.12.09 'Ere guv, you'll never guess who I had in the back of my cab the other day…'

Stuart Roberts Shared services - how to get it right in your business Recession boosts uptake


Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.



Quick Sitemap Links: