Session

Make ATM Jackpotting Great Again, the Ocelot way!

The presentation "Make ATM Jackpotting Great Again, the Ocelot way!" focuses on the research and techniques used in offensive cybersecurity to exploit ATM vulnerabilities. It starts with the process of finding and preparing an ATM, including choosing the right model and setting it up for testing. The presentation then covers the challenges we went thru to be able to synchronize the cassettes with the dispenser or the XFS APIs we had to discover to be able to calibrate the cassettes via software, etc. It also explores advanced methods like Direct Memory Access (DMA) for controlling the ATM remotely, using own Shellcodes leveraging PCILeech Framework, including memory manipulation and code injection while avoiding detection. The final part of the presentation addresses strategies for bypassing security measures and achieving successful ATM jackpotting. This comprehensive guide is aimed at cybersecurity professionals looking to understand and test the vulnerabilities in ATM systems, highlighting both the technical intricacies and practical solutions involved in offensive cybersecurity research.

Jesus Dominguez

Offensive security researcher

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top