Skip to main content

Here’s why you should not type in a PIN while wearing a wearable

Apple Watch Wrist
Giuseppe Costantino/Shutterstock
Smartwatches and wearables may be great for alerting you to get on your feet and exercise, but you may not want to wear them when inputting secure PINs, like the one you punch in at the ATM.

A new paper, titled “Friend or Foe?: Your Wearable Devices Reveal Your Personal PIN,” shows that deciphering someone’s PIN isn’t that hard, though the paper doesn’t dive into the specific wearables that were used.

Written by researchers at the Stevens Institute of Technology and Binghamton University, the paper reveals that attackers can track the millimeter-level distances and directions of hand movements thanks to embedded sensors like accelerometers, gyroscopes, and magnetometers, in the wearable device. By tracking your exact movements, researchers were able to “derive the moving distance” of a person’s hand between key entries on key-based systems like a keyboard or ATM.

They successfully reverse-engineered the wearable’s sensors to track a person’s hand movements to see the PIN that was entered — that method is called the “Backward PIN-Sequence Inference algorithm.” The group tested more than 5,000 key-entry traces from 20 adults with different kinds of wearables. The technique provided an accuracy of 80 percent on one try, and that jumped to 90 percent with three tries.

Attackers can use this method in two ways — by installing malware directly onto the device, or by grabbing the data via the Bluetooth connection that bridges the wearable to the smartphone, according to Phys.org.

It all sounds awfully simple, but researchers do offer a solution to manufacturers and developers — insert some “noise data” to obscure the sensitive data. This solution sounds incredibly similar to differential privacy — a tool Apple is using in iOS 10 to make data-gathering more secure and anonymous. Google has also been using this technique in its Chrome browser for years.

We have reached out to the group to check which devices they tested with, but in the meantime, perhaps you should take off your wearable before you enter your secure PINs.

Updated on 07-07-2016 by Julian Chokkattu: Clarified that attackers use tracking data from the wearable to decipher PINs typed on physical key-based systems.

[amz_nsa_keyword keyword=”Portable VPN”]
Julian Chokkattu
Former Digital Trends Contributor
Julian is the mobile and wearables editor at Digital Trends, covering smartphones, fitness trackers, smartwatches, and more…
Is it time to shut your mouth? This smart wearable will let you know
wearable device for measuring vocal stress.

Vocal cord damage is a fairly common occurrence among music stars. From the likes of yesteryear icons such as Freddy Mercury and Julie Andrews to modern-day legends like Adele and Justin Timberlake, they all have had to battle vocal cord ailments — requiring surgeries to fix and weeks of not speaking to get their voice back to normal.

The folks over at Northwestern University have developed a sensor that warns you every time you speak loud enough that it stresses your vocal organs and the surrounding tissue. This could help avoid injuries that can permanently change your voice and give some much-needed relief to the voice box and other connected tissues that play a role in your speaking, reading, and singing abilities. It's the latest in a string of recent wearable health advances, following news of a smart necklace that can help you stop smoking.
There's a science to being quiet

Read more
Wearing this smart necklace could help you stop smoking forever
SmokeMon smart sensor

Whether you believe in the Big Tobacco theories or not, cigarette smoking has a very tangible impact on not just the personal health of people, but also the places they live in — costing the U.S. an astounding $600 billion in healthcare spending and loss of productivity due to illness and premature death, as per the Centers for Disease Control and Prevention. The health agency also says, “cigarette smoking remains the leading cause of preventable disease, disability, and death in the United States,” adding that a healthy number of smokers want to quit the harmful habit.

The latter is not always easy, especially without constant monitoring and supervision backed by proper data. Experts at Northwestern University aim to solve all the problems in one go with a wearable sensor that looks like a necklace. Not only does it detect when you start smoking, but will also collect a ton of other quantifiable data that can help medical experts offer better care and cut down on the chances of a relapse.

Read more
The best smartwatches and wearables of CES 2023
Fossil Gen 6 Hybrid Wellness Edition in black with a black strap.

Wondering about all the wearables and smartwatches at CES 2023? It’s often difficult to keep up with the announcements, so we’ve gathered all the most interesting new products here — including a new smart ring for women from Movano, a hybrid smartwatch from Fossil, and a simple Moto smartwatch for seniors.

Here are the best wearables and smartwatches we've seen at CES 2023!
Citizen CZ Smart Sport and CZ Smart Casual

Read more