Auriga, the software solutions provider, warned that FiXS, the new variant of ‘malware’ could soon arrive in Spain, and called for alertness, since has been wreaking havoc in Mexico and other countries in the Americasbeing the main threat in terms of cybersecurity for ATMs in the year 2023.
According to a review by the Europa Press news agency, This new malware physically installs itself in ATMs to illegally and irregularly extract cash by gaining illegitimate access to the XFS (Extended Financial Services) middleware that controls ATM hardware devices and thus send orders directly to the ATM dispenser to withdraw cash without going through the transaction authorization process.
Juan Ramón Aramendía, Director of Cybersecurity Product Engineering at Aurigaexplained that although there is no evidence of the authorship of these attacks, Russian metadata has been found which, in the analyzes carried out by the attacked entities, suggests that they could be agents of that nationality.
On the other hand, for the contribution of solutions, Auriga points in favor of the ‘Zero Trust’ trendthe most current for prevention when operating at an ATM, and based on the premise “never trust, always verify”. In other words, it consists of making a series of suspicious assumptions about the vulnerability of the infrastructure that manages the devices, such as: that it can be manipulated, that the ‘software’ distribution system can be used to deploy ‘malware’, that the service technician or end user may be attackers or the hard drive may be stolen for reverse engineering.
In this sense, Aramendía has stressed that any organization that operates a network of ATMs is a potential target for ‘Jackpotting’ attacks, therefore, the application of robust and efficient cybersecurity countermeasures became a “basic need”.
Disclaimer: The information and/or opinions expressed in this article do not necessarily represent the views or editorial line of Cointelegraph. The information presented here should not be taken as financial advice or investment recommendation. All investment and commercial movement involve risks and it is the responsibility of each person to do their due research before making an investment decision.
It may interest you:
Investments in crypto assets are not regulated. They may not be suitable for retail investors and the entire amount invested may be lost. The services or products offered are not directed or accessible to investors in Spain.