07 February, 2007

UK Bank Card Hack

CNET is picking up on a Cambridge researchers hack on the new UK Bank Cards

It is a legitimate attack but I don't know that I would call it a hack. Any time you can own the hardware doing the processing it is possible to find a way to deceive the customer.

There was another attack earlier that was essentially possible due to the older data providing a Rosetta stone. I wouldn't call that one a failure of the new approach either.

I am going to come out and say I am a bit biased on this though because I know a few of the people that were involved in the project from the beginning. If anyone wants to dispute me please feel free to comment and I will move it up to the main page.

