Open A Service Order 800-423-3343 (EDGE)

Software Archives - Financial Equipment for Retail & Financial Institutions | Edge One LLC

ATM & ITM Hook and Chain Attacks are Not Going Away

Hook with Cash - Hook and Chain Attacks Cost You Money

A year ago, we featured a post that spoke to an increase in ATM hook and chain attacks. We wish we could tell you it is all behind us. However, these physical attacks on ATMs and ITMs have not stopped. We continue to see banks and credit unions suffer costly thefts and damages. Sometimes the thieves are successful at gaining access to the cash, sometimes they are not. But either way, damage is done. It is important that we continue to spread awareness of these hook and chain attacks and provide ways that financial institutions can remain diligent and protect their assets.

What happens during a hook and chain attack?

For an ATM hook and chain attack, criminals target freestanding outside lane drive-up units. This allows vehicles to pull close and hook through the depository and dispenser slots. The thieves attach a large hook through, attached with a heavy chain to the back of their vehicle. Once connected, they accelerate. The goal of these attacks is for the force of the acceleration to open the ATM and safe door. Regardless of whether the thieves gain access to the safe, the attempt rips the ATM from the island. This results in damages to the ATM or ITM beyond repair.
These attacks usually occur late at night or early morning hours. With the thieves ultimately abandoning the vehicle used in the attack, as it is either stolen or rented, and take off in another vehicle standing by. These hook and chain attacks take professional thieves less than 2 minutes to pull all the cassettes from an ATM.

Hook on Chain - ATM security to protect against hook and chain attacks

What can I do to protect my ATM or ITM?

Thieves continue to show determination to find ways to gain access to ATM cash stores. Fortunately, there are a couple of preventative measures that you can take to help deter would-be thieves from attempting an attack on your ATM or ITM. We will discuss a couple of Edge One’s product offerings that will provide your financial institution with an added layer of security.

NCR Safe Slot Reinforcement Kits - Protect your ATM from Hook and Chain Attacks

NCR Safe Slot Reinforcement Kits

Designed as a countermeasure to hook and chain attacks, these kits remove all available space around the depository and dispenser slots, while reinforcing the surrounding area. Each ATM requires two kits to ensure total protection.

Security Gate from TPI - Protect Your ATM

ATM Security Gate

There are a variety of security gates available designed to help protect your ATMs from theft. Depending on the manufacturer, the security gate can attach to the concrete island or a slimline enclosure, similar to a kiosk. These gates use strong materials that come in a variety of colors to coordinate with your institution’s existing structure.

Contact us today to secure your ATM or ITM

Don’t leave your ATMs or ITMs vulnerable to a costly physical attack. The expert team at Edge One can provide you a no-obligation risk assessment and help you establish a plan of action to ensure your machines are safe. For more information about these, as well as other security offerings, Contact the team at Edge One at 800-423-3343(EDGE).

ATM Jackpotting – What You Need to Know

ATM jackpotting isn’t new. Back in 2010, a security researcher named Barnaby Jack took to the stage at a Black Hat security conference to demonstrate this ATM exploitation, making two ATMs dispense fake paper currency. It would be 8 years later when the first ATM jackpotting attack would occur in the United States. Now, this form of ATM attack is on the rise. So, what exactly is jackpotting and what can you do to protect your ATM investment?

What is ATM Jackpotting?

With ATM Jackpotting, thieves typically target stand-alone or retail ATMs in locations that help them avoid a bank’s security. They will often dress as a service technician and access the ATM using force or keys that are purchased easily on the internet. Once they have gained access, the criminal can connect to the ATM and install malware that enables theft of the cash reserves. They will often have an accomplice that will visit the ATM once they have left to collect the cash.

Laptop Keyboard with Hacked Key - Protect your ATM from jackpotting with Edge One

How do I protect my ATM from jackpotting?

While cyber criminals continue to look for vulnerabilities, there are several things that an ATM owner can do to help mitigate their risk. These low-cost, simple practices can help avoid being left vulnerable to cyber jackpotting attacks.

Security camera - Secure your ATM

ATM Placement

These thieves are on the lookout for ATMs that allow them to get in and gain access without detection. Unfortunately, many retail establishments will leave their ATM in a dark area in the back of the store or restaurant. It is important to place your ATM in a well-lit area that is easily monitored by staff and security cameras. Be sure to place security cameras with angles that provide a clear view of both the back and the front of the machine.

Software Updates

ATM manufacturers release regular software updates and related modifications that ensure ATMs stay ahead of potential risks and emerging threats. Old, outdated ATM software leaves your machine open to a variety of issues, jackpotting included. It is important that you install software updates as soon as possible after release.

Know your technicians

Familiarize yourself with the company responsible for the maintenance, replenishment and updating of your ATMs. Get to know their vehicles, uniforms, and your assigned technicians. Do not be afraid to ask for identification. Your ATM management company should be forthcoming and communicative so that you can stay informed of any changes in schedule or assignments.

Contact Edge One to Protect Your ATM Assets

The Edge One team can provide you with a free risk assessment to determine any vulnerabilities that may be present. Our team of professionals will provide a plan of action to ensure your ATMs are up to date, safe, and secure. For more information, Contact the team at Edge One at 800-423-3343(EDGE).

Upcoming PCI / EPP Compliance Mandates

In 2019, PCI (Payment Card Industry) announced new revisions for PCI PIN security requirements. PCI’s function is to set standards that ensure secure handling of customer PINs and data. PCI planned for a phased implementation of updates to provide a more secure method of transferring encryption keys from an ATM’s host processor to the ATM. Circumstances, such as Covid-19, resulted in an update to the compliance deadline dates. The dates below reflect these changes.

PCI PIN Security Requirement Dates:

  • December 31, 2022: Replace ATMs or upgrade EPP for ATMs with PCI PTS v1 or older
    (v1 EPPs are Less secure technology)
  • January 01, 2025: EPP hardware, firmware and software uses TR31 Phase 3 “Key Blocks”

Are your ATMs compliant?

In order to ensure the integrity of your ATMs, the current hardware and software needs an update. Failure to do so leaves your ATMs vulnerable. These vulnerabilities include risk of fraud, security attacks, data compromises and loss of revenue. As an ATM owner, the ATM networks consider you liable for any fraud or data breach involving your ATM. You could assess penalties or have any non-compliant ATMs shut down.

What actions should you take to ensure your ATMs are ready?

Prior to January 1, 2025, all ATMs will require, at a minimum, a software update. In addition, you may be required to replace your electronic PIN pad (EPP) or your ATM entirely. If you own or operate an ATM, do not leave this to chance. Contact the team at Edge One at 800-423-3343(EDGE). We will help audit your ATM fleet to ensure you are updated and compliant.

,

The Shift to Software Subscriptions

Saas image - The Shift to Software Subscription

Consumer behavior is shifting, and many find the convenience of subscription appealing. From streaming television and music to meal preparation and household cleaning products, consumers now subscribe to almost everything. It is convenient. It is easy to just enter in your credit card and have a service delivered to you. Software is no exception. Over the last decade, we have seen software companies making the shift from traditional licensing to a subscription model. Experts are estimating that by 2023, 53% of all software revenue will come from subscriptions.

Why the shift?

It isn’t just the consumers driving this change. Companies are increasingly switching to a subscription-based revenue model. Subscriptions mean a consistent source of revenue that businesses can depend on. It isn’t just beneficial for businesses, however. Subscription based software also allows for affordability with a lower barrier to entry. Rather than a large sum paid out for a piece of software, you pay smaller amounts over time. Add in no-long term contracts, and it is easy to see the appeal of this software purchase option for the consumer.

Perpetual Licensing

Perpetual licensing is the more traditional model we are all familiar with. You pay a fee up-front for the right to use the software indefinitely. While this may sound like the more appealing option, there are limitations. Typically, the license may include some limited support and updates for a short time frame. Once that time is up, you no longer have access to those updates or support. Additionally, the software may be tied to a particular piece of hardware. If you upgrade that hardware, you are left having to re-purchase the same software. That can get expensive. Often a perpetual license comes at a large price tag. This barrier to entry can be cost prohibitive for small or start-up businesses.

Image of Software - ATM software from Edge One
computer-3219130_640

Subscription Licensing

With software subscriptions, consumers pay a monthly or yearly fee for access to the software. Sometimes there is a per-user fee. While subscribed, users can use the software and have access to support and updates, indefinitely. The subscription is typically tied to a user, not a piece of hardware. Meaning, you can continue using the software, even if you upgrade your hardware or change your system entirely. The up-front subscription fee is typically much lower than a traditional license, making it more affordable to get started.

ATM Software Subscription

With the move to software subscription happening everywhere, it should come as no surprise to learn that most major ATM manufacturers are doing the same thing. To streamline software offerings, subscription offers a much more common industry practice. Edge One always strives to be on the cutting edge with our hardware and software offerings. We have already begun updating some of our software offerings to reflect these changes. As always, we work to provide our customers with top-notch value and service.

Edge One’s Software Subscription Value

Simplification: Simpler product structures mean you only pay for what you use. No need to re-purchase every few years.

Entitlement: License transferability is now permitted on subscriptions. Licenses are no longer tied to individual hardware. this means there is no need to buy new licenses when hardware is replaced.

Flexibility: Simpler fleet management. Add/remove hardware, software options, or products. Adjust your subscription based on your needs. This provides a flexibility that legacy perpetual licensing didn’t have.

Choose Edge One for Your ATM Software

Edge One has always brought to the table a comprehensive list of offerings to keep your fleet in top shape. We have the latest in software offerings and software maintenance to keep you up to date and running smoothly. Our Compliance Audit Program ensures you remain PCI compliant. And, if you want to focus less on your ATMs functionality and more on running your business, Edge One’s ATM Management Program delivers. To find out more, Contact Us at 800-423-3343(EDGE)