Scworld ATM Security Flaws Exposed: Nine Vulnerabilities in Crypto Software
Article Content
- •Nine vulnerabilities found in CryptWare CryptoPro Secure Disk software used in ATMs.
- •Diebold Nixdorf disputes the severity of the vulnerabilities, claiming minimal real-world risk.
- •Over 700 jackpotting incidents reported in 2025, emphasizing the need for enhanced ATM security.
A researcher has identified nine vulnerabilities in the CryptWare CryptoPro Secure Disk software, which is used by ATM manufacturers and corporations. Matt Burch from Atredis Partners will present these findings at Black Hat USA 2026. The vulnerabilities involve pre-boot decryption flaws and insecure storage of sensitive information, potentially allowing attackers to execute code and steal cash through jackpotting techniques. Diebold Nixdorf, a major ATM manufacturer, disputes the impact of these vulnerabilities, claiming they pose little risk to their systems. However, they acknowledge that some components of CryptoPro are used in their security suite. The vulnerabilities highlight the need for improved security in ATM software, as over 700 jackpotting incidents were reported in 2025 alone, resulting in over $20 million stolen. The situation remains under scrutiny as the debate continues over the real-world applicability of the findings.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…