I used to work for one of the major banks; VNC is a commonly used tool for support to update/manage ATMs, which run on Windows
-
-
-
so, prob legit. that screen shouldn't have shown up, but it's prob not a cause for concern (unless that bank doesn't use VNC)
-
sure, could be a legit install. I really don't like seeing the anonymous user ( especially because real VNC supports ldap )
-
I'd also wager it's an unnecessary tool at this point. Microsoft's suite is more then capable of proper mgmt.
-
VNC seems like an easy way to cause these systems to end up with wildly different settings, patch levels, configurations, etc.
-
sure, other software could be used, but business is slow to pivot and doesn't want to waste paid-for licenses.
-
and any company worth its weight would have proper update management, although it's not foolproof
- 4 more replies
New conversation -
-
-
I've done tech for a kiosk company, and while we used VNC, we had no way of accessing users cards or PINs.
-
do you mean data want not accessible /because/ of a security control or was there no tool for viewing data.
-
Security control. Also, no tool for viewing the data. And PIN keypads are encrypted!
End of conversation
New conversation -
-
-
This ATM vendor could optimise their configuration to avoid the “anonymous” reference or use our SDK for better integration
-
Absolutely. Integrating with LDAP would at least allow for a better audit trail.
End of conversation
New conversation -
-
-
Really hoping this is Photoshop
-
oh dear
End of conversation
New conversation -
-
-
That's horrifying. Where was this?
-
notification in progress. Will share when / if I can
End of conversation
New conversation -
-
-
you cannot intercept pin entry, can you?
-
depends. I'd the keypad is a HID device it's simple keyboard hooking
-
I think it is a dedicated device and no onscreen kb just because of that.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.