Cash machines infected with malicious USB sticks

Hacker
An inside job? Surely bankers have enough money

Criminals have targeted cash machines, a report says, by cutting hole in the fascia to infect the machine with malicious code via USB sticks. The infected ATMs were then able to spit out notes on command.

Speakers at the hacker-themed Chaos Computing Congress in Hamburg described the attacks, which infected an unnamed European bank that noticed several cash machines were emptied entirely without the safe being damaged.

The bank in question increased security after the first attacks and were able to spot the gang drilling holes in the front of the machines before inserting a USB flash drive. Once the malware had been transferred they patched the holes up. This allowed the same machines to be targeted several times without the hack being discovered.

Profound knowledge

The gang would then return at a later date and instruct the compromised machine to dispense a specific amount of cash. They used a 12 digit code, followed by what was believed to be a failsafe to prevent individuals in the group from stealing money themselves. The correct response varied each time and the thief could only obtain the right code by phoning another gang member and telling them the numbers displayed.

Researchers, who asked not to be named, found that the software then showed how many of each denomination of banknote were in the machine, and asked how much of each it should dispense. This enabled the attackers to focus on the highest value banknotes and minimise their exposure.

They said that the gang must have had a "profound knowledge" of the workings of cash machines in order to develop and successfully install the software in such an efficient manner. However, they added that the approach did not extend to the software's filenames - the key one was called 'hack.bat'.

Latest in Security
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Representational image depecting cybersecurity protection
Cisco smart licensing system sees critical security flaws exploited
Latest in News
Ray-Ban Meta Smart Glasses
Samsung's rumored smart specs may be launching before the end of 2025
Apple iPhone 16 Review
The latest iPhone 18 leak hints at a major chipset upgrade for all four models
Quordle on a smartphone held in a hand
Quordle hints and answers for Monday, March 24 (game #1155)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Monday, March 24 (game #386)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Monday, March 24 (game #652)
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)