Quote:
Originally Posted by Oracle
.....I want to say that I prefer the smaller shop approach in which the cashier types the amount on the card reader and hands it to the client to insert or swipe the card to complete the transaction.
|
Would not have made a difference with this exploit.
Quote:
Originally Posted by Oracle
Regardless... always some chit that bad guys are infinitely smarter that the good guys. Places like Target will not invest to be offensive. Customers always get the short straw and the retailer a chuckle from the government.
|
What needs to happen is an upgrade in security / technology investment at the card level which I think you will now see.
The card presents its data in the clear, it has to be read before it can be encrypted / protected. As long as the cards themselves offer no security someone will always find a way to intercept them.