Full Disclosure mailing list archives

Re: Re: Fedex Kinkos Smart Card Authentication Bypass


From: Michael Holstein <michael.holstein () csuohio edu>
Date: Wed, 01 Mar 2006 09:10:49 -0500

According to Fedex Kinko's:
"Our analysis shows that the information in the article is inaccurate
and not based on the way the actual technology and security function.
Security is a priority to FedEx Kinko's, and we are confident in the
security of our network in preventing such illegal activity."

Presumably they're depending on the ever-vigilant eye of the highschool copyjocky behind the counter to notice somebody inserting a card that's trailing some ribbon cable into one of the readers.

Actually, a lot of "security protocols" depend on just such things :)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: