Kids with operators manual alert bank officials: “We hacked your ATM”

  • 9 June 2014
  • 1 reply
  • 304 views

Userlevel 7
Badge +54
This is ridiculous really being able to find an operators manual on-line with all the relevant details to get into the operator mode, I wonder what the six character password was, probably 123456 in this case.
 

Bank of Montreal gets schooled by teens who accessed owners' manual online.

by Dan Goodin - June 9 2014
 
 
Two 14-year-old Canadians hacked a Bank of Montreal ATM after finding an operators manual online. The manual showed how to gain administrative control of the device, according to a media report published over the weekend.
 
When Matthew Hewlett and Caleb Turon tested the instructions against an ATM at a nearby supermarket, the ninth graders didn't expect them to work, The Winnipeg Sun reported Sunday. To their surprise, the machine quickly prompted them for a password. Even more surprising, their first guess—a six-character password that's common among default settings—let them in. The boys then reported their lunch-hour caper to bank employees, who at first thought the duo had merely acquired the PINs of an ATM customer.
 
Full Article
 

1 reply

Userlevel 7
Badge +62
Asked for proof, teenagers change welcome screen to 'This ATM has been hacked'
By Darren Pauli, 12 Jun 2014
Two Canadian kids have made a mockery of bank security by hacking into an automatic teller machine during a break between classes. The 14 year old duo Caleb Turon and Matthew Hewlett broke into a Bank of Montreal ATM during school lunch by following an online manual for accessing the machine's administrator functions. The security charade continued when the pair, after being asked by the bank's head of security for proof of their hack, simply broke back into the machine and printed off information including transaction data, surcharge profits and the total cash held in the unit. Turon and Hewlett gained access to that data by guessing the administrator password on their first attempt, indicating the ATM had default settings enabled. The rascals took it upon themselves to perform a civic duty by dropping the surcharge for transactions to one cent and changing the welcome display screen to: "Go away. This ATM has been hacked".
          Full Article:         http://www.theregister.co.uk/2014/06/12/kids_hack_canuck_bank_atm_during_lunch_break/

Reply