Improving PIN Processing Security

Riccardo Foccardi, Flaminia Luccio, Matteo Centenaro and I have been investgating ways of improving the security of PIN processing APIs used in HSMs in the cash machine network. In particular, we've been looking at ways to secure against so-called differential attacks, where non-confidential parameters to PIN processing commands are manipulated in order to force the leak of information about the real value of the PIN.

