Issue No.06 - November/December (2007 vol.5)
pp: 25-31
Kjell J. Hole , University of Bergen, Norway
Vebjørn Moen , University of Bergen, Norway
André N. Klingsheim , University of Bergen, Norway
Knut M. Tande , University of Bergen, Norway
This case study focuses on real-world ATM card misuse, illustrating how too much secrecy led to a deterioration of PIN-based authentication procedures, and why a bank's refusal to share technical information is a threat to a customer during a conflict.
ATM system, DES encryption, PIN codes, security
Kjell J. Hole, Vebjørn Moen, André N. Klingsheim, Knut M. Tande, "Lessons from the Norwegian ATM System", IEEE Security & Privacy, vol.5, no. 6, pp. 25-31, November/December 2007, doi:10.1109/MSP.2007.168
