OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] Re: Fedex Kinkos Smart Card Authentication Bypass

From: Michael Holstein (michael.holsteincsuohio.edu)
Date: Wed Mar 01 2006 - 08:10:49 CST


> According to Fedex Kinko's:
> "Our analysis shows that the information in the article is inaccurate
> and not based on the way the actual technology and security function.
> Security is a priority to FedEx Kinko's, and we are confident in the
> security of our network in preventing such illegal activity."

Presumably they're depending on the ever-vigilant eye of the highschool
copyjocky behind the counter to notice somebody inserting a card that's
trailing some ribbon cable into one of the readers.

Actually, a lot of "security protocols" depend on just such things :)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/