Abstract

Along with the popularity and widespread use of automated teller machines (ATMs), ATM frauds are also increasing drastically these days. Shoulder-surfing attacks, such as card skimming, PIN capturing using fake machines or fake PIN pads, are the most common methods used by adversaries to capture data from the magnetic stripe on the back of the ATM card. The main problem lies in the existing static PIN-based authentication mechanism which does not provide any security measure (besides displaying asterisks when an user enters a preassigned PIN to the ATM). In this paper, we give a novel approach called DynamicPIN for secure ATM authentication, which is resilient to shoulder-surfing attacks. DynamicPIN is very simple, does not require any hardware changes, and does not pose any significant overhead to the system. A realtime experimental study showed that DynamicPIN improves significantly the ATM authentication compared to the existing static PIN-based authentication mechanism.

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call