文件名称:Practical Attacks on the MIFARE Classic
-
所属分类:
- 标签属性:
- 上传时间:2020-07-01
-
文件大小:3.1mb
-
已下载:0次
-
提 供 者:
-
相关连接:无下载说明:别用迅雷下载,失败请重下,重下不扣分!
介绍说明--下载内容来自于网络,使用问题请自行百度
The MIFARE Classic is the most widely used contactless smart card chip in the world. Its
communication is based on the open ISO-14443-A standard, but the entire authentication and
encryption protocols are proprietary. Several academic researchers have cracked the encryption, and
even proposed attacks to recover the secret keys. However, none of their attacks have been released
so far. In this project, we analyse their attack descr iptions and implement three attacks on the
MIFARE Classic chip. The most critical attack recovers ANY secret key requiring wireless access
to just the card only in less than five minutes on inexpensive commercial off-the-shelf hardware
and without any pre-computation. Using our attacks, we expose the vulnerabilities of the Imperial
College’s access control system and show our ability to masquerade as any valid Imperial College
personnel. Most importantly, we crack the internal structure of the Oyster card and locate the
exact data bytes that represent the current credit and past transaction records. The impact of
our findings are so severe that London’s transport operators stand to lose millions of pounds if our
findings were made public.
communication is based on the open ISO-14443-A standard, but the entire authentication and
encryption protocols are proprietary. Several academic researchers have cracked the encryption, and
even proposed attacks to recover the secret keys. However, none of their attacks have been released
so far. In this project, we analyse their attack descr iptions and implement three attacks on the
MIFARE Classic chip. The most critical attack recovers ANY secret key requiring wireless access
to just the card only in less than five minutes on inexpensive commercial off-the-shelf hardware
and without any pre-computation. Using our attacks, we expose the vulnerabilities of the Imperial
College’s access control system and show our ability to masquerade as any valid Imperial College
personnel. Most importantly, we crack the internal structure of the Oyster card and locate the
exact data bytes that represent the current credit and past transaction records. The impact of
our findings are so severe that London’s transport operators stand to lose millions of pounds if our
findings were made public.
(系统自动生成,下载前可以参看下载内容)
下载文件列表
压缩包 : report.rar 列表 report.pdf
本网站为编程资源及源代码搜集、介绍的搜索网站,版权归原作者所有! 粤ICP备11031372号
1999-2046 搜珍网 All Rights Reserved.