Hacker News new | ask | show | jobs
by sliverstorm 4518 days ago
It's not clear that chip cards would have avoided the Target thing since the fraudsters infiltrated the terminal software

From my understanding, chip cards implement challenge-response. So unless the terminal is capable of placing the card in debug mode and dumping any keys, I would expect chip-and-pin would have prevented the Target breach.

(If the terminal is capable of this... well, that is a gigantic hole)