Hack the Bank

Typical attacks on ATMs include sensitive information disclosure and unauthorized money withdrawal.

The competition will be divided into two phases.

During first phase attendees will be able to intercept and analyze different types of the traffic (network and USB).

During second phase competitors will be given access to the USB interfaces to issue commands to ATM devices and network interface to conduct MiTM attack.

The goal of the competition is to show different approaches to affect ATM.

Be sure to pre-register for Hack the Bank to reserve your spot and make the most of it! Just use the Registration button to your right and fill in the details.

Goal of the Competition

/ Disclosure of sensitive card information.

/ Unauthorized cash out.
Transactions tampering via

/ USB/Network (cash out, cash in, PIN pad).

Rules of Engagement

/ Each attendee/team that takes part in the contest will be given bank card and means to obtain network and USB traffic;

/ Any attendee is welcome to participate in the competition, just bring yourself and a laptop to our Hack the Bank ATM;

/ Denial of Service is not allowed;
Report discovered approach for obtaining sensitive information and money withdrawal to the Competition’s Team Members;

/ Points will be given based on the complexity of the finding;
Extra points will be given for attacks over USB;

/ Use tools and scripts of your liking;

/ Any dispute will be resolved on-site by the Competition’s Team Members, who has final decision;

/ Disrespecting any of these rules as well as any offensive action taken against any other participants will result in immediate disqualification;

Terms & Conditions are available here.


/ Yard Stick One’ USB Transceiver & 915MHz antenna

/ Hak5 Bash Bunny + Field Guide

/ Raspberry Pi 4 – 4GB RAM


/ Alexey Osipov, Head of Penetration Testing at Kaspersky Lab

/ Olga Kochetova, Senior Application Security Specialist at Kaspersky Lab


Other Competitions

Null Your Warranty Village

Overview Back to Contests Null Your Warranty Village Null Your Warranty Village was created with a hands-on ..

Hack the Secure Open Vote Election Reporting ..

Overview Back to Contests Hack the Secure Open Vote Election Reporting System At DEF CON 26 BiaSciLab hacked ..

Ariadne’s Thread 5.0

You may think that you don’t have what it takes to work in cyber-security, you may not have seen the job ads..

Sponsors & Partners

They help us make this conference possible.


At Orange Business Services, we help our customers transform their industries, reimagine their services, create a positive impact and unleash the power of their data into an amazing and trusted resource.

With the dual expertise as a global operator coupled with the agility of an end-to-end integrator, Orange Business Services is a global network-native, digital services company. From connectivity, smart mobility services and the cloud to artificial intelligence (AI), analytics and cybersecurity, Orange Business Services helps businesses at every stage of their data management. Orange Business Services is represented in Romania by the business division of Orange Romania and helps large companies, SMEs and public authorities to transform their organizations through the use of technology and digital information.


Platinum Partners

Gold Partners

pentest tools defcamp

defcamp 2022 booking holdings

Silver Partners

siemens defcamp 2022

huawei defcamp 2022

Bronze Partner

zitec defcamp