Inducing Authentication Failures to Bypass Credit Card PINs
Offered By: USENIX via YouTube
Course Description
Overview
Explore a critical security vulnerability in credit card transactions using the EMV standard in this conference talk from USENIX Security '23. Learn how researchers from ETH Zurich discovered a flaw in the offline data authentication mechanism that allows bypassing PIN verification for high-value Mastercard transactions. Understand the technical details of how integrity checks using RSA signatures and keyed MACs can be exploited, and see a demonstration of an Android app that modifies unprotected card-sourced data to trick real-world terminals. Gain insights into the potential risks of this vulnerability and the researchers' recommendations for addressing this security issue in payment systems.
Syllabus
USENIX Security '23 - Inducing Authentication Failures to Bypass Credit Card PINs
Taught by
USENIX
Related Courses
Computer SecurityStanford University via Coursera Cryptography II
Stanford University via Coursera Malicious Software and its Underground Economy: Two Sides to Every Story
University of London International Programmes via Coursera Building an Information Risk Management Toolkit
University of Washington via Coursera Introduction to Cybersecurity
National Cybersecurity Institute at Excelsior College via Canvas Network