|
|
|
|
|
by NoMoreNicksLeft
1064 days ago
|
|
So the skimmer asshole pays some Target employee $100 to replace the very precise 3d object with one that hides the skimmer when no one's looking? I need a solution that lets me, the card holder, check these. This ain't it. Hell, some of the internal skimmers just solder jumper wires to pcb pins/testpoints don't they? There's nothing mechanical for a card to touch. Target's got so many telescreen cameras in the store, they could likely get the pin numbers straight from that, no need to intercept that. |
|
They replace the objects every 6 months. And there are multiples. So, yeah, I guess it's doable.
> I need a solution that lets me, the card holder, check these.
You could just print one and carry it with you.
> some of the internal skimmers just solder jumper wires to pcb pins/testpoints don't they?
At the point, there's no real security. If that's your threat model, you can just substitute the entire reader for a counterfeit one.
> Target's got so many telescreen cameras in the store, they could likely get the pin numbers straight from that
If you are as paranoid as you sound, you should be covering your hand putting the PIN in with your other hand.
You seem to not understand the threat threat models. A skimmer is a 3 second attack that requires no accomplice and can be done with slight of hand while people are watching. Making that scale to a multi-person operation with more physical construction, the need to swap out (and hide) a bunch of red plastic going in and out is a win. In much the same way that locking your jewelry in a small safe isn't going to stop determined thieves, but will make casual thieves abandon it.