Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

ATM Malware Protection

Escalating ATM Threat Landscape


• Prevents unauthorized scripts or malware from
Automated Teller Machine (ATM) systems are projected
executing a first-stage attack on the ATM or
to grow from 2 million to over 4 million worldwide by
running malware from a USB device or CD-ROM
2020, per industry analysts. This increases the risk for
used for maintenance.
banks and financial institutions to suffer financial and
reputation damage from the escalation of sophisticated • Does not rely on scanning, detection, or signature
cybersecurity threats. The majority of breaches now identification to provide protection, thus reducing
involve fileless malware (53% according to the 2016 system overhead.
Verizon Data Breach Report) and other undetectable
attacks. The attackers leverage Windows PowerShell to • Always protects without requiring updates or
load the malware directly into memory rather than patches, reducing risks from ATM system
maintenance delays.
writing it to the disk. These attacks are typically
undetectable by next generation anti-virus, Versatile, Scalable, Manageable.
machine-learning tools, endpoint detection and
AppGuard is recognized by prominent industry
response (EDR), breach detection systems (BDS),
analysts as the leading next generation endpoint
whitelisting, and other conventional means that rely on
protection. It works to prevent unauthorized ATM
signatures, frequent updates, and constant monitoring.
intrusions from any malware-based attack. Existing
Most conventional protection methods are not
enterprise System Management tools can be used to
compatible with legacy ATMs running older operating
distribute the software and collect AppGuard Event
systems that cannot be upgraded and do not have the
logs from the ATM Windows Event Viewer. Default
capability to support the large overhead inherent in
policies are simple to manage and incorporate the
most detection and response protections.
ever-changing vendor images.
Our Solution Conclusion
AppGuard software has demonstrated the ability to AppGuard provides breakthrough capability to
prevent endpoint breaches undetectable by other protect against advanced threats undetectable by
conventional protection methods. It disrupts malware other conventional cybersecurity approaches. It is
attacks at the earliest stages, stopping breach attempts engineered to deliver an effective, compatible,
before a compromise can occur, without requiring scalable, and affordable cybersecurity defense to
detection, scanning, or updates. It is compatible with address even unknown and undetectable threats to
Windows XP SP3 through Windows 10, mitigating risks prevent breaches now and in the future.
for new generation and legacy ATM systems. AppGuard
features include:
A new family of malware known as WinPot
is using a slot machine-like interface to
empty ATMs at targeted financial
institutions.
- SecurityIntelligence

Hackers used phishing emails to ATMitch operates by reading commands


break into a Virginia bank in two contained within a local text file labeled
separate cyber intrusions over an command.txt. The commands are simple,
eight-month period, making off one-letter characters such as ‘O’ for open
with more than $2.4 million total. dispenser, ‘D’ for dispense, and ‘E’ for Exit. Once
- Krebs on Security an ATM is infected, threat actors can upload
specific instructions to the command.txt file.
- NJCCIC

“AppGuard has a completely new method “AppGuard should be�on every Windows�
for delivering threat protection and breach system in the world.”
prevention. I'm a true believer, and that's - Robert Bigman, former CISO, CIA
why I've joined the AppGuard team.”
- Hiro Higuma, Former President of Symantec
Japan, Current Chief Strategy Officer, AppGuard

sales@blueridgenetworks.com
1-800-722-1168
BlueRidgeNetworks.com
linkedin.com/company/blue-ridge-networks
@BlueRidge
©2018 Blue Ridge
Robust Networks.
by Default: All Rights
Trust-Based Reserved. Network Segmentation
Autonomous 4

You might also like