5 ms·
Just got mine a few days ago (EU based). Well built, works as promised. But I find that it mostly works for simple things like controlling lights, tv etc. Most
by A_No_Name_Mouse 4y ago
Just got mine a few days ago (EU based). Well built, works as promised. But I find that it mostly works for simple things like controlling lights, tv etc. Most interesting targets use proper encryption (mifare classic for example) so I had no luck accessing my company badge. Mifare Desire data cannot be read properly at the moment it seems, but I'm sure that will be fixed. Fun little tool, will probably end up in a drawer soon.
- _joel 4y agoI've been reading my bank cards with the 'unleashed' firmware, not tried a replay yet and it lists Mifare DESFire in the special read actions (not tried, not hw to test)
- sm4rk0 4y agoYou can do that with an NFC-equipped Android phone and this app: https://github.com/johnzweng/bankomatinfos https://github.com/johnzweng/bankomatinfos It's also available on F-Droid: https://f-droid.org/en/packages/at.zweng.bankomatinfos2/ https://f-droid.org/en/packages/at.zweng.bankomatinfos2/
- KennyBlanken 4y agoMifare Classic is anything but "proper" encryption, with numerous vulnerabilities. https://en.wikipedia.org/wiki/MIFARE#MIFARE_Classic https://en.wikipedia.org/wiki/MIFARE#MIFARE_Classic
- kweks 4y agoMIFARE Classic support is quite good : the device will search through its (somewhat exhaustive) list of known keys, to attempt to unlock your badge. If keys aren't found, you can perform a "Reader Attack" - take the nonces from the log during a sniffed authenticated exchange, place them in a MF32Key tool (there are online versions as well) - and this will calculate the key. The device doesn't have enough computational power to crack on board (for that you need a Proxmark / iCopy-X) - but the team has roadmapped a tethered mode for performing these cracks.