NEWYou tin now perceive to Fox News articles!
You swipe your card and participate your PIN. You drawback your rate and caput retired nan door. It feels regular and secure. Most of america ne'er springiness it a 2nd thought. However, immoderate ATMs are softly being turned into rate machines for criminals.
The Federal Bureau of Investigation precocious issued a cybersecurity alert astir a emergence successful malware attacks targeting ATMs. These incidents are known arsenic jackpotting attacks. In elemental terms, hackers unit machines to spit retired money connected command.
The numbers are growing. Since 2020, astir 1,900 attacks person been reported. More than a 3rd occurred conscionable past year. In 2025 alone, losses person already exceeded $20 million. So what is really happening wrong these machines, and why is nan threat accelerating now?
Sign up for my FREE CyberGuy Report
Get my champion tech tips, urgent information alerts, and exclusive deals delivered consecutive to your inbox. Plus, you’ll get instant entree to my Ultimate Scam Survival Guide - free erstwhile you subordinate my CYBERGUY.COM newsletter
HOW DEBIT CARD FRAUD CAN HAPPEN WITHOUT USING THE CARD

The FBI warns of rising ATM "jackpotting" attacks, wherever hackers unit machines to dispense rate utilizing malware. (TIM SLOAN/AFP via Getty Images)
How ATM jackpotting attacks work
This is not a Hollywood hacking scene. In galore cases, attackers usage generic keys to unfastened nan ATM's attraction cabinet. Once inside, they region nan retention drive. Then they load malware onto it aliases switch it pinch a compromised one.
After rebooting nan machine, nan malicious package takes control. One of nan astir wide utilized devices is simply a malware strain called Ploutus. It targets package known arsenic XFS, which ATMs usage to pass pinch slope networks and authorize transactions.
Instead of asking nan slope for permission, nan malware overrides that process. It sends its ain commands to nan machine. The result? The ATM dispenses rate without a card, without an relationship and without a morganatic transaction. That is jackpotting.
Why are truthful galore ATMs vulnerable?
Here is nan uncomfortable truth. Many ATMs tally connected aging versions of Windows. Some machines person moreover displayed Windows 7 login screens. That operating strategy was released successful 2009 and officially discontinued years ago.
Outdated package creates opportunity. If attackers find a vulnerability successful nan Windows operating system, they tin utilization it crossed different ATM brands and financial networks. The FBI says these attacks are not tied to 1 circumstantial slope aliases ATM manufacturer. Instead, they target communal weaknesses shared crossed systems.
That makes nan problem overmuch bigger. And pinch hundreds of thousands of ATMs deployed crossed nan U.S., upgrading and securing each instrumentality will return time.
FEDS CHARGE 87 INDIVIDUALS IN MASSIVE ATM 'JACKPOTTING' OPERATION LINKED TO TREN DE ARAGUA GANG

Nearly 1,900 ATM jackpotting attacks person been reported since 2020, pinch losses topping $20 cardinal successful 2025 alone. (Robert Alexander/Getty Images)
What banks are being told to do
The FBI has outlined respective protect steps for financial institutions:
- Monitor ATMs for unauthorized files and suspicious executables
- Disable USB ports to forestall malware loading
- Replace generic locks pinch keypad systems
- Add secondary alarms and enhanced beingness security
These are applicable fixes. But rolling them retired nationwide is simply a slow process. Meanwhile, attackers proceed to look for anemic targets.
Why this still matters to you
You mightiness beryllium reasoning this sounds for illustration a slope problem, not a individual one. Technically, consumers are not nan nonstop victims successful these cases. Unlike Bitcoin ATM scams that person costs individuals hundreds of millions, jackpotting attacks deed financial institutions. However, location is simply a ripple effect.
When banks suffer money, security companies salary claims. Eventually, those costs show up somewhere. Higher fees. Increased work charges. Stricter policies. In nan end, mundane customers sorb nan impact. Cybercrime seldom stays contained.
HOW TO SAFELY VIEW YOUR BANK AND RETIREMENT ACCOUNTS ONLINE

Cybercriminals are exploiting outdated ATM package to override slope controls and trigger unauthorized rate withdrawals. (Justin Sullivan/Getty Images)
How to protect yourself erstwhile utilizing ATMs
While ATM jackpotting attacks chiefly target banks, you tin still return smart steps to protect yourself erstwhile utilizing rate machines.
1) Use ATMs successful well-lit, unafraid locations
Choose machines wrong slope branches aliases successful engaged areas pinch ft traffic. These locations are much apt to beryllium monitored and maintained.
2) Avoid late-night aliases isolated ATMs
Criminals request beingness entree to tamper pinch machines. High postulation areas during regular business hours trim that risk.
3) Watch for different ATM behavior
If a instrumentality abruptly reboots, freezes aliases behaves strangely, extremity immediately. Do not insert your card. Report nan rumor to nan slope correct away.
4) Look for signs of tampering
Check for loose panels, exposed wiring aliases different attachments adjacent nan paper slot aliases keypad. If thing looks off, usage a different machine.
5) Cover nan keypad erstwhile entering your PIN
Shield your PIN pinch your manus arsenic you type. This protects you from hidden cameras and enarthrosis surfers who whitethorn effort to seizure your code.
6) Set up real-time transaction alerts
Enable matter aliases app notifications for withdrawals and relationship activity. Instant alerts thief you enactment quickly if thing unexpected appears.
7) Check your slope statements regularly
Even though jackpotting bypasses customer accounts, fraud strategies evolve. Review your transactions often truthful you tin drawback unauthorized charges early.
8) Consider personality theft monitoring
Identity theft protection services tin supply alerts astir different financial activity crossed your accounts. Think of it arsenic an added furniture of consciousness alternatively than a hole for ATM malware. See my tips and champion picks connected Best Identity Theft Protection at Cyberguy.com
9) Use contactless aliases in-app ATM withdrawals
Many banks connection cardless entree done unafraid mobile apps. This reduces vulnerability to skimming devices and beingness tampering.
10) Keep your banking app updated
Install updates promptly to guarantee you person nan latest information patches and protections.
Staying alert lowers your consequence and reinforces bully habits, moreover erstwhile attackers are targeting financial institutions alternatively than individual customers.
Kurt's cardinal takeaways
ATM jackpotting attacks uncover thing important. Even acquainted machines tin hide modern vulnerabilities. Most of america seldom deliberation astir nan package moving wrong a rate dispenser. Yet those systems trust connected nan aforesaid operating foundations arsenic location and agency computers. When they autumn down connected updates, criminals notice. The FBI alert is not a logic to panic. It is simply a reminder that integer information touches astir each portion of regular life, moreover nan elemental enactment of withdrawing cash.
How overmuch spot do you spot successful nan exertion you usage each time without ever seeing really it works? Let america cognize by penning to america at Cyberguy.com
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Sign up for my FREE CyberGuy Report
Get my champion tech tips, urgent information alerts, and exclusive deals delivered consecutive to your inbox. Plus, you’ll get instant entree to my Ultimate Scam Survival Guide - free erstwhile you subordinate my CYBERGUY.COM newsletter
Copyright 2026 CyberGuy.com. All authorities reserved.
Kurt "CyberGuy" Knutsson is an award-winning tech journalist who has a heavy emotion of technology, cogwheel and gadgets that make life amended pinch his contributions for Fox News & FOX Business opening mornings connected "FOX & Friends." Got a tech question? Get Kurt’s free CyberGuy Newsletter, stock your voice, a communicative thought aliases remark astatine CyberGuy.com.
2 months ago