Vulnerability Research - ATM Attack Talk Canned at Black Hat - eWeek Security Watch

ATM Attack Talk Canned at Black Hat

Written By
Brian Prince
Brian Prince
Jul 1, 2009
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Last year, three MIT students got banned from presenting their research on hacking the Boston subway system at DefCon. This year, it is Juniper Networks’ turn to get the boot.

Responding to pressure from an ATM vendor, Juniper has agreed to pull a talk originally scheduled for both the Black Hat and DefCon security conferences on ATM vulnerabilities. The talk in question – titled “Jackpotting Automated Teller Machines” – belonged to Juniper Staff Security Researcher Barnaby Jack, and was supposed to be presented first July 30 at the Black Hat conference in Las Vegas.

“Juniper believes that Jack’s research is important to be presented in a public forum in order to advance the state of security,” Steve Manzuik, senior manager of security research at Juniper, said in a statement. “However, the affected ATM vendor has expressed to us concern about publicly disclosing the research findings before its constituents were fully protected. Considering the scope and possible exposure of this issue on other vendors, Juniper decided to postpone Jack’s presentation until all affected vendors have sufficiently addressed the issues found in his research.”

According to a description of the talk on the DefCon Web site, Jack found a vulnerability in the underlying software used to run a line of ATM models. His research is not the first to deal with ATM vulnerabilities. Just recently, in fact, Trustwave uncovered an attack targeting ATMs in Eastern Europe, and indicated that the attack may be making its way to other parts of the world.

For its part, Juniper says it is committed to responsible disclosure, and is reaching out to other ATM vendors to assist them in addressing security risks. As for Jack’s research, however, it seems that for now it will remain on the cutting room floor.

Black Hat will run from July 25-30, with its sister conference DefCon going from the July 30 to Aug. 2.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.