- if I then immediately use the real PIN (without withdrawing), it should *not* also show me 1K. If it does, someone will then know that this second PIN is the real one. Another sum, not the real balance, should be shown. Perhaps 10% of the distress PIN (it wouldn't make sense to show a balance greater than or equal to the distress PIN).
I think what Wesley means is that after the reverse/distress PIN has
been used, it doesnt matter what other permutation of the PIN is used;
the system smells a thug and from then on only shows the balance to be
10% of the victim's real balance. But then again this would work only
if the thugs themselves are not familiar with the security measure.
--
Ndungi Kyalo