Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Fake ATM doesn't last long at hacker meet

Fraudulent device planted at hotel is discovered by security expert in attendance
By Robert McMillan , IDG News Service , 08/02/2009
  • Share/Email
  • Tweet This
  • Comment
  • Print

Criminals running an ATM card-skimming scam made a big mistake this week: They tried to hit the Defcon hacker conference in Las Vegas.

As the conference was kicking off a few days ago, attendees noticed that at ATM placed in the Riviera Hotel, which plays host to the annual event, didn't quite look right, according to a senior conference organizer who identified himself only as Priest. "They looked at the screen where there would normally be a camera," he said. "It was a little bit too dark, so someone shined a flashlight in there and there was a PC."

What is credit-card skimming?
10 of the worse moments in network security history

The ATM looked like a working system, but when people would put their cards in the machine, it would scan their card information and record the PIN numbers they entered. He didn't know how long the ATM had been at the Riviera.

Conference organizers notified local law enforcement who hauled away the machine on "Thursday or Friday," said Priest, who said he works as a "civil servant" in his day job.

Credit card skimmers -- small devices installed on top of card readers to steal information -- and fake ATM machines are a common problem. Once the criminal records the card information and PIN number, he can use that to create a fake ATM card and then empty the victim's account.

Previously unsophisticated criminal gangs are increasingly using these devices, Priest said. "They're realizing that this is a great way to make money without getting caught."

The criminals probably didn't realize that they were installing their ATM in a hotel that was soon going to be flooded with more than 8,000 security professionals, he added.

They were smart enough to place the machine in one of the few spots in the hotel where there was no security camera to catch them, Priest said. "It was literally right next to the hotel security entrance."

  • Share/Email
  • Tweet This
  • Comment
  • Print

Comments (3)
Login
Forgot your account info?

Fake ATMBy Anonymous on August 4, 2009, 6:34 pmThis would have been a great way for the CIA/FBI to get infrormation on the people attending the conference....

Reply | Read entire comment

Fake ATM - Physical securityBy Anonymous on August 4, 2009, 9:39 pmSo how did it get there in the first place? Doesn't speak much for the physical security at the hotel.

Reply | Read entire comment

Social engineering at its finestBy Anonymous on August 5, 2009, 2:20 pmYou would think by now that with all the press coverage the hotel people would have checked someone leaving a device capable of holding enough explosive to blow...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed