Hacker News new | ask | show | jobs
by rrobukef 3618 days ago
By storing the public key of your unique debit card and you only have the PIN inside the chip. This limits attacks to physical access and trained professionals in chip deconstruction.

This however needs a way to send your initial PIN over an insecure channel. To limit the attack surface go to the secure website to receive your PIN (no humans) (either an old card/digital state ID) or go in person and force a new PIN.

1 comments

Thanks for the reply. Interesting, I didn't think of this possibility.