2010
DOI: 10.1007/978-3-642-16074-5_7
|View full text |Cite
|
Sign up to set email alerts
|

Secure Upgrade of Hardware Security Modules in Bank Networks

Abstract: Abstract. We study the secure upgrade of critical components in wide networked systems, focussing on the case study of PIN processing Hardware Security Modules (HSMs). These tamper-resistant devices, used by banks to securely transmit and verify the PIN typed at the ATMs, have been shown to suffer from API level attacks that allow an insider to recover user PINs and, consequently, clone cards. Proposed fixes require to reduce and modify the HSM functionality by, e.g., sticking on a single format of the transmi… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2011
2011
2024
2024

Publication Types

Select...
2
2
1

Relationship

1
4

Authors

Journals

citations
Cited by 5 publications
(2 citation statements)
references
References 13 publications
0
2
0
Order By: Relevance
“…This will be the subject of section 4.3. As upgrading the bank network HSMs worldwide is complex and very expensive in [30] the authors have proposed a method for the secure upgrade of HSMs in wide networked systems. This method incrementally upgrades the network so to obtain upgraded, secure subnets, while preserving the compatibility towards the legacy system.…”
Section: Pin Processingmentioning
confidence: 99%
“…This will be the subject of section 4.3. As upgrading the bank network HSMs worldwide is complex and very expensive in [30] the authors have proposed a method for the secure upgrade of HSMs in wide networked systems. This method incrementally upgrades the network so to obtain upgraded, secure subnets, while preserving the compatibility towards the legacy system.…”
Section: Pin Processingmentioning
confidence: 99%
“…Also, the HSM hardware allows executing cryptographic operations in a trusted environment. On top of that, the HSM device is equipped with a fully self-protecting circuit, so if tamper sensors detect a possible attack, all critical keys are immediately destroyed and the HSM device becomes permanently inoperable [5].…”
Section: Introductionmentioning
confidence: 99%