Skip to main content
  1. Home
  2. Emerging Tech
  3. Legacy Archives

Infrared cameras can be used to steal PINs from ATMs

Add as a preferred source on Google
Image used with permission by copyright holder

Cameras, fake card readers, you name it… the list of schemes used to steal customer PINs at ATM machines is endless. Now it’s time to add another possible technique. Researchers at the University of California, San Diego recently presented the results of a study in which they found infrared cameras could be used to steal a PIN even after the customer left the ATM.

Led by Keaton Mowery, a doctoral student in computer science, the team found that they could measure the residual heat of ATM users’ fingers on the keypad. Using custom software that automated the camera’s heat-seeking abilities, they had 21 volunteers try out 27 random four-digit PINs on both plastic and brushed metal keypads.

Recommended Videos

The plastic pads were more insecure. If used immediately after the user entered his or her PIN, the team’s cameras accurately found the four digits in the PIN 80 percent of the time. After a minute, the success rate was still 50 percent.

With metal’s higher thermal conductivity, heat dissipated from those keypads almost instantly, making stealing numbers nearly impossible.

An additional issue is the fact that, while the team was able to find the digits users pressed, it wasn’t feasible to regularly discover their order. Still, that’s only 24 possible combinations to test out versus the 10,000 a thief would have to work through if he or she started from scratch. Also, with the concept already proven, it’s possible that further refinements could measure the heat difference between the button pressed first and those following, although that’s yet to be shown.

So should you just completely give up ATMs, force your employer to pay you in cash and walk around with stacks of twenties in your pockets? Well, you can if you want, but it’s probably not necessary. One, as a rule it’s not a good idea to use an ATM with camera guys lurking around anyway, and this is no exception. Two, using a metal keypad pretty much eliminates the possibility of this scam working unless a hidden camera was filming the whole time. In that case, it’s already prudent practice to cover the keypad while you enter your PIN. Common sense and a preference for metal keypads should protect the average Joe from this particular scheme, but you’re more than welcome to ice your fingertips beforehand if it makes you feel safer. 

Photo credit: Keaton Mowery, via PhysOrg

Derek Mead
Former Digital Trends Contributor
Everything is not okay with DuckDuckGo and its AI
A coordinated Reddit campaign appears to have tricked multiple AI search assistants into spreading false information.
The DuckDuckGo logo.

DuckDuckGo has built its reputation on privacy-first search, but this week, its AI assistant landed in hot water for an entirely different reason. Apparently, Duck.ai confidently claimed that U.S. President Donald Trump had died of rabies earlier this month, complete with fabricated details about Vice President JD Vance, Robert F. Kennedy Jr., and fake supporting news reports. None of it was true.

A fake Reddit campaign managed to fool Duck's AI

Read more
Stanford scientists built an AI that can design healthier, greener burgers
The new system balances nutrition, taste, cost, and environmental impact to create better recipes.
Burger, Food, Food Presentation - Man picking a burger

Artificial intelligence has already helped write code, discover drugs, and generate videos. Now, it's trying to make a better burger. Researchers at Stanford University have unveiled BurgerAI, a new AI system that designs burger recipes by balancing taste, nutrition, sustainability, and cost. The surprising part? In blind taste tests, diners liked some of the AI-created burgers just as much as, and in some cases more than, a popular fast-food burger.

BurgerAI is designed to invent recipes, not copy them

Read more
OpenAI reveals its most advanced GPT-5.6 model, but you can’t access it yet
GPT-5.6 brings new reasoning, autonomy, and cybersecurity capabilities, but its rollout is currently limited to government-approved customers.
OpenAI ChatGPT 5.6 Sol Terra Luna Announced

OpenAI has officially taken the wraps off GPT-5.6, its most advanced family of AI models to date. There's just one catch: unless you're one of a handful of approved customers, you won't be able to try it anytime soon. Instead of a broad launch, the company is beginning with a tightly controlled preview while it works through a new U.S. government review process.

GPT-5.6 is here, but only a few people can use it

Read more