How Cyberthieves Stole $45 Million from ATMs and How You Can Protect Your ATM Card

How Cyberthieves Stole $45 Million from ATMs and How You Can Protect Your ATM Card

How Cyberthieves Stole $45 Million from ATMs and How You Can Protect Your ATM Card

With a goofy, gangster-style grin across his face, Emir Yasser Yeje points to a stack of cash held by Elvis Rafael Rodriguez. (Which by-the-way, blows my mind that the thieves would take a picture, probably with their 'smart' phone, documenting that they were involved. Too bad they weren't 'smart'!)

Yeje and Rodriguez are two of the seven individuals arrested in the U.S. accused of operating a global network (supposedly in 27 countries), stealing an astonishing $45 million in mere hours from cash/ATM machines. Replacing black ski masks and guns with laptops and the Internet, the cyberthieves worked in unison to rob ATMs of their paper money.

Here's how it worked:
  1. Hackers breached the bank databases, eliminated withdrawal limits on pre-paid debit cards and created access codes.

  2. Others involved loaded the data onto any plastic card with a magnetic stripe (hotel room access cards, out dated credit cards, gift cards).

  3. A network of operatives fanned out, rapidly withdrawing money in multiple cities across the world.

  4. Each person would take a cut of the money, launder it and/or ship it to global ringleaders.

According to Brooklyn U.S. Attorney Loretta Lynch, it appears that the thieves plundered funds held by banks to back up prepaid credit cards. So, individuals and business accounts did not lose any of their funds.

With this event happening less than a week ago and with the security industry a bit shaken to say the least, how can you keep your magnetic-striped, ATM card(s) safe?

  1. Try to use ATMs at your local bank’s branch. According to the U.S. Department of Financial Services, “It may be easier for criminals to tamper with a machine that is in a non-bank location.”

  2. Use your body or hand to create a shield on the ATM keyboard when entering your PIN number. Small buttons can be installed on the surveillance cameras focused on ATMs that allow thieves to steal your pin number.

  3. Be sure to look out for people standing in your “personal space” while entering your PIN number. That person may be trying to memorize your PIN number.

  4. Check the ATM. Make sure the card slot does not have an attachment, there is no sticky residue on the machine and that the keypad isn’t resistant when pushing the buttons. These could all be signs that thieves are copying your card or have tampered with ATMs.

  5. Keep usage of the ATM to a minimum, so plan ahead of time. Approach the machine with card in hand, and do not open your wallet once you are near the machine.

  6. Do not count the distributed cash near the ATM. Instead, take all the cash, and put it directly into an envelope.

  7. Do not use ATMs after dark. Try to opt for day-only transactions. If you must use an ATM after dark, make sure to use one that is in a well lit area.

Sources:

http://blogs.wsj.com/indiarealtime/2013/05/13/atm-heist-how-to-protect-your-card/

http://news.yahoo.com/global-network-hackers-steal-45m-atms-072335721.html

About the Author

Ginger Hill is Group Social Media Manager.

Featured

  • 12 Commercial Crime Sites to Do Your Research

    12 Commercial Crime Sites to Do Your Research

    Understanding crime statistics in your industry and area is crucial for making important decisions about your security budget. With so much information out there, how can you know which statistics to trust? Read Now

  • Cybersecurity Awareness Month: Top Five Action Items to Elevate Your Data Security Posture Management and Secure Your Data

    October is Cybersecurity Awareness Month, and every year most tips for security hygiene and staying safe have not changed. We’ve seen them all – use strong passwords, deploy multi-factor authentication (MFA), be vigilant to spot phishing attacks, regularly update software and patch your systems. These are great recommended ongoing tips and are as relevant today as they’ve ever been. But times have changed and these best practices can no longer be the bare minimum. Read Now

  • Boosting Safety and Efficiency

    Boosting Safety and Efficiency

    In alignment with the state of Mississippi’s mission of “Empowering Mississippi citizens to stay connected and engaged with their government,” Salient's CompleteView VMS is being installed throughout more than 150 state boards, commissions and agencies in order to ensure safety for thousands of constituents who access state services daily. Read Now

  • Live From GSX: Post-Show Review

    Live From GSX: Post-Show Review

    This year’s Live From GSX program was a rousing success! Again, we’d like to thank our partners, and IPVideo, for working with us and letting us broadcast their solutions to the industry. You can follow our Live From GSX 2023 page to keep up with post-show developments and announcements. And if you’re interested in working with us in 2024, please don’t hesitate to ask about our Live From programs for ISC West in March or next year’s GSX. Read Now

    • Industry Events
    • GSX

Featured Cybersecurity

Webinars

New Products

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions. 3

  • Luma x20

    Luma x20

    Snap One has announced its popular Luma x20 family of surveillance products now offers even greater security and privacy for home and business owners across the globe by giving them full control over integrators’ system access to view live and recorded video. According to Snap One Product Manager Derek Webb, the new “customer handoff” feature provides enhanced user control after initial installation, allowing the owners to have total privacy while also making it easy to reinstate integrator access when maintenance or assistance is required. This new feature is now available to all Luma x20 users globally. “The Luma x20 family of surveillance solutions provides excellent image and audio capture, and with the new customer handoff feature, it now offers absolute privacy for camera feeds and recordings,” Webb said. “With notifications and integrator access controlled through the powerful OvrC remote system management platform, it’s easy for integrators to give their clients full control of their footage and then to get temporary access from the client for any troubleshooting needs.” 3

  • XS4 Original+

    XS4 Original+

    The SALTO XS4 Original+ design is based on the same proven housing and mechanical mechanisms of the XS4 Original. The XS4 Original+, however, is embedded with SALTO’s BLUEnet real-time functionality and SVN-Flex capability that enables SALTO stand-alone smart XS4 Original+ locks to update user credentials directly at the door. Compatible with the array of SALTO platform solutions including SALTO Space data-on-card, SALTO KS Keys as a Service cloud-based access solution, and SALTO’s JustIn Mobile technology for digital keys. The XS4 Original+ also includes RFID Mifare DESFire, Bluetooth LE and NFC technology functionality. 3