Recommended Posts

on the topic of safety at the ATM am I the only one who looks for a bank that has them inside before using an ATM?

Looks like it. I always check the ATMs outside and inside to see where the line is shorter to get things done quickly. And most of the times, the lines are shorter inside. Sometimes you only have people standing in line at the ATM outside and no one inside, as people are too lazy to get inside the bank to use the ATM there.

Two tricks they use alongside a skimmer is for a man to stand behind you with a mobile in his hand as you enter the pin and just note it onto the device,hence the introduction in the UK of the [useless] yellow box near the ATM.The other more subtle is the placing of a downward facing camera on the housing above the keypad which films your keystrokes as you make them.

Which is why you should cover your hand as you enter your pin.

This guy obviously doesn't have a clue how smart cards (bank cards) work then, they're pretty similiar to SIM cards in that you have 3 attempts to input the correct pin, the bank machine transmits the PIN to the card, if it is wrong, it is not the bank machine that logs it but the smart card, after 3 wrong attempts, the smart card refuses to accept any more pin numbers and locks itself out (there is no PUK code for bank cards as there are SIM cards) and so the machine keeps it. Older cards would just refuse to accept any more PIN attempts but keep all the data in the smart card, newer cards destroy all data on the card when 3 attempts have been failed, because you can in theory reset the count or read off the data using a very powerful microscope though you'd have to know exactly where to look.

Depends on the country. In the US ATM cards don't use smart cards and as such don't have this layer of "protection".

I wrapped protection in quotes because the smart card may be duplicated rendering this security moot.

Only old ATMS eat the cards, the new ones are swipe only. However most block the card after 3 attempts.

You sure about that? My bank just upgraded their machines within the past year and they are not swipe only. The only places I've seen that are swipe only are ATM machines in shopping centers and such. Usually these are 3rd party ATMs.

You sure about that? My bank just upgraded their machines within the past year and they are not swipe only. The only places I've seen that are swipe only are ATM machines in shopping centers and such. Usually these are 3rd party ATMs.

Read my previous posts! that was my first post.

Most people if they get their cookies cleared can't remember their passwords to log back into sites. Most people first chance they get use a dictionary word as their password. When ever i'm helping someone set something up I ask them for a password they would want to use. First thing they said a word out of the dictionary. I tell them...uh no ..lets add something to that. People are HORRIBLE at security.

This one highschool kid got his facebook account hacked into. I walked them through resetting his password. I asked him ... "So what was your password"... he said "Football"

Most of the places I see the "swipe" machines rather than the "swallow" machines are in malls, supermarkets, public places. Meaning where the likelihood of the engineer being available is low. Places you don't want your card swallowed.

Hah, so weird, swipe cards?

I haven't seen a card being swept for at least 10 years now. Over here in Belgium everything is done with the chip and a PIN. I don't even think transactions with the magnetic strip are still possible, at least not national.

Although I have always used the same pin, it has absolutely no significance to anything in my life, and would be pretty hard for anyone to guess, even if they knew me. Like everything else it's a simple matter of common sense.

Berry says a whopping 26.83% of all passwords could be guessed by attempting just 20 combinations of four-digit numbers (see first table). "It's amazing how predictable people are," he says.

Not at all.

What is really amazing is that multi billionaire banking companies use a 4 numerical digits system as security.

Well, my bank doesn't allow double digits for one. Meaning pins like 0112 or 3699 wouldn't work. I guess it's all a matter of what each bank enforces?

People will just create password using the 4 corners or things like that.

Why not an alphanumerical keyboard and variable length passwords including caps and symbols ? Then even if someone has 123456789 as password you still have to guess how many digits were used. And you have 3 tries to guess it or the account is frozen and the owner of the card has to show in his bank to unfreeze it.

Probably makes just too much sense ... and is probably too much expensive for multi billionaire companies.

Dont blame the users. Blame the security ... or lack of.

Not at all.

What is really amazing is that multi billionaire banking companies use a 4 numerical digits system as security.

Yes ... my father still has a 4 digit pin with CIBC.

I'm with Desjardins for over 10 years, always had a 5 digit pin.

If you give out 8 digit pin, too many people will forget.

Yes ... my father still has a 4 digit pin with CIBC.

I'm with Desjardins for over 10 years, always had a 5 digit pin.

If you give out 8 digit pin, too many people will forget.

Problem with more digits on a pin is you need compatibility.

For example in the UK, you'd need ALL banks and building societies to switch to using longer pins which would require new bank machines or at least a firmware upgrade, plus all the database infastructure would need upgrading.

That would cost BILLIONS. As they say, 'if it ain`t broke, don`t fix it'.

Not really anything to be worried about unless the PIN actually is 1234, 1111, or 0000. You only get a couple tries before the ATM eats the card, so chances are the code won't be cracked in any timely manner.

Not all ATM's consume the card until the transaction is completed. Several models are swipe style.

Is this USA based only, or are there crazy banks in other countries that don't have a security feature on the ATMs that just "eats" the card if you input the wrong pin three times and the only way to get the card back is to go to the bank?

My bank does this. It doesn't physically take your card but it does disable the card if the wrong pin is entered too many times. Happened to me once when I forgot my pin :/

This topic is now closed to further replies.
  • Posts

    • Microsoft launches Godot Sample to streamline Xbox PC game development on the engine by Pulasthi Ariyasinghe Microsoft today announced a new endeavor that aims to make it simpler for Godot developers to get their products into the Xbox PC ecosystem. Dubbed the "XBOX Godot Sample," this is a new public reference for developers using the open-source engine. This is set to serve as an example of how Microsoft GDK, Xbox Services, and PlayFab can be integrated into their projects. The sample is available now on GitHub as a working example. This covers key features in gaming projects that developers may need to release their projects on Xbox PC, with everything from matchmaking and game sign-in to gamepad compatibility with Godot being covered. This release is being called the first step in giving Godot developers the tools to bring their games over to Xbox PC, with more changes to come based on feedback and issue reports. However, the company was clear that this is not related to bringing Godot projects to Xbox consoles. The engine's open development model stops it from accessing console SDKs due to the requirement of NDAs and legal contracts. Here's how it explained this Godot sample project's focus: This is a source-only sample, not a product. It's MIT-licensed at the wrapper layer; the GDK and PlayFab dependencies still require their own installs and license acceptance, consistent with our other XBOX samples. There is no set update cadence for support or maintenance. We’ll watch the repo, monitor issues, and iterate where it makes sense, but this isn't a commercial release. That said, we’re excited to hear your feedback and see any community PRs, as we evolve this together. This is the first step in bringing Godot for XBOX on PC. We plan to evolve it over time based on what the community tells us is most valuable. This sample is built specifically for XBOX on PC. It doesn’t include support for XBOX Series X|S or XBOX One. If you’re already building for XBOX Series X|S or XBOX One, please talk with your XBOX representative. If not, you can get started by signing up here. Game developers can find the XBOX Godot Sample by heading to GitHub over here. Documentation on how to get started with Godot for building an Xbox PC project can be seen here.
    • I don't understand the vision. Do people really want to buy a new computer from Dell with 6 browsers installed? We all keep asking for Microsoft to stop having so much junk on their OS, and adding a bunch of browsers seems to go against that. Ideally, we would just be asked what browser we want during OOBE but Google is just going to pay Dell a bunch of money to include Chrome. Additionally, would you want your phones to start including all the browsers too when you get them? The only thing I ever wanted was to be able to uninstall IE or edge and I believe you are now able to. I do agree that microsoft needs to chill with their "are you sure you don't want to try edge before you install chrome" ads when going to download chrome.
    • It is notable that around 70% of web browser users choose Google Chrome. However, it is puzzling why anyone on Windows would opt for Chrome when Microsoft Edge is often superior in many aspects and comes pre-installed. Edge collects less data, uses less RAM, and is more optimized for Windows as a native Microsoft product. While some may point to bloat in Edge, much of it can be removed with simple tools, requiring no more effort than installing Chrome. Meanwhile, Chrome reportedly downloads large amounts of AI data (4 GB) without explicit consent. I'm sure you Chrome users love that, or? Here is one example of a tool that doesn't even need to be installed to be able to use: https://github.com/TheBobPony/MSEdgeTweaker Although Microsoft’s aggressive promotion of Edge may be questionable, the browser’s current advantages make it a preferable choice over Chrome today, even if Chrome may have been better in the past.
    • JetBrains rolls out IntelliJ IDEA update with Markdown preview fixes and more by David Uzondu Image via JetBrains IntelliJ 2026.1.3 from JetBrains has landed, bringing several highly requested bug fixes that target common UI glitches and terminal rendering issues. If you run tmux inside the integrated terminal, the IDE no longer renders the cursor above the active line. The Markdown preview bug, which was fixed in this release, had annoyed developers for quite some time, as the preview pane failed to render images saved outside the project directory. Instead of displaying the actual image, the IDE simply showed a broken image icon, a problem that stuck around for two years before this update. Over on Windows, developers running WSL can now use wsl.exe to spin up their environments without losing terminal functionality. In previous builds, launching a terminal shell with something like wsl.exe -d ubuntu inside a Windows-based project broke both shell integration and active process detection. Other bug fixes in this release include: An issue where Gradle sync incorrectly reported success as a failure on WSL when using Gradle 9.5.0. A syntax highlighting bug that flagged valid Java for-loop initialization blocks with multiple statements as incorrect. A warning bug that triggered a false non-null local variable alert when using JSpecify annotations. A database generation bug that hid the option to use a DELETE statement instead of a TRUNCATE checkbox. A Kotlin highlighting failure where an assertion error in the Gradle redundant library inspection broke error highlighting. A UI bug where the ComboBox popup lacked a maximum height restriction. A Snowflake syntax error where DataGrip failed to support the "create temp" command. A Svelte syntax parsing failure that incorrectly flagged quotes inside inline expressions. A VCS repository manager deadlock that triggered thread pool exhaustion. A memory leak where the LazyTree component kept all previous versions of a tree in memory. IntelliJ 2026.1.3 is the third bug fix release for the IntelliJ 2026.1 series. The first one landed back in April with a fix for the WSL Python interpreter freeze, another fix for guest participants using Emmet abbreviations, and corrected WildFly server deployment errors.
  • Recent Achievements

    • Collaborator
      Asgardi earned a badge
      Collaborator
    • Conversation Starter
      mobandz earned a badge
      Conversation Starter
    • Apprentice
      fernan99 went up a rank
      Apprentice
    • One Month Later
      nothanks earned a badge
      One Month Later
    • One Month Later
      B2Proxy earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      469
    2. 2
      PsYcHoKiLLa
      243
    3. 3
      Skyfrog
      79
    4. 4
      FloatingFatMan
      73
    5. 5
      Michael Scrip
      60
  • Tell a friend

    Love Neowin? Tell a friend!