Tag Archives: payment terminals fraud

Poor security decisions expose payment terminals to mass fraud

Cryptographic key reuse is rampart in European payment terminals, allowing attackers to compromise them en masse

The debugging of the HSM in a payment terminal through active JTAG. Credit: Security Research Labs
Some payment terminals can be hijacked to commit mass fraud against customers and merchants, researchers have found.

The terminals, used predominantly in Germany but also elsewhere in Europe, were designed without following best security principles, leaving them vulnerable to a number of attacks.