Kumari.net
Interesting things... ?
  1. You are here:  
  2. Home
  3. Projects
  4. FPGA Based Password Cracking
  5. Projects
  6. RFID Hacking

Projects

This section has info on (some) of the random projects that I am working on...

I am working on a bunch of projects that I haven't gotten around to documenting yet, but hopefully will soon.

 

Here is a partial list - some of these have some preliminary info, but no full write-up yet:

  • Home made CNC stepper motor based milling machine.
  • FPGA based password cracker.
  • Lightwave Electronics 25W green Nd:YAD diode laser.
  • OS X Iris Recognition security module.
  • OS X Fingerprint reader toolkit.
  • E-passport hacking.
  • Hacking scratch off lottery tickets using optical means.

Proxmark 3 Build

At most of the places that I have worked (and datacenters that I have visited) the physical security has been provided by proximity cards. These are the badges that companies provide that you swipe at a door reader and the door magically unlocks for you. Most companies place a great deal of trust in these systems and view them as secure and unhackable. Unfortunately this is not the case -- all that one needs to do is walk past someone with one of thse badges and you can stel the secret number from the badge.

I decided to build just such a device.

Read more: Proxmark 3 Build

Cloning an HID tag with a Proxmark3

Cheatsheet for cloning an HID tag using a Proxmark3 on a Mac.
Get and build the Proxmark source code.

On my machine this lives in ~/src/svn/proxmark/client 

Connect the Proxmark, find the port and run the software.

The Proxmark device draws significant power, and is not happy working through some hubs, so connect it directly to the machine. On my machine the device shows up as /dev/tty.usbmodem1421. So, ./proxmark3 /dev/tty.usbmodem1421

Clone the tags:

Read the source / exiting tag:

proxmark3> lf hid fskdemod
#db# TAG ID: 2400a724c4 (47212)

Poke the button on top of the Proxmark to stop reading.

 

Write to a new T5577/T5567/T5557 tag:

proxmark3> lf hid clone 2400a724c4
Cloning tag with ID 2400a724c4
#db# DONE!

Done! 

Main Menu

  • Home
  • About Me
  • Projects
    • Random Projects
    • Atomic Clocks / NTP
    • FPGA Based POCSAG Decoder
    • FPGA Based Password Cracking
    • Adding TV support to an ICOM IC-7000
    • Hacking the Sectera Wireline Terminal
    • Geiger counter based RNG
    • Making a Naked Portafilter
  • Proximity Card Access Systems
    • Building a Proxmark 3
    • Cloning an HID card
  • Cars
    • Ferrari 599GTB Fiorano
      • Tips and Trick
      • Repainting a Ferrari 599 Key
    • Lamborghini Murcielago Roadster
    • Ferrari 308
      • Ferrari 308 Door Lock Issues
    • Ferrari Battery Charger Cable
      • Creating a CTEK to Ferrari adaptor cable
      • Making a CTEK to Ferrari battery tender adaptor cable.
    • Aston Martin V8 Vantage Roadster
    • Land Rover Series IIA
  • Blog
  • Networking
    • Tips and Tricks
    • Funny
  • System Administration
  • Programming
    • Python
  • Random
  • Pontification
  • Pictures