4 ms·
Why can't it be very simple and secure. Car and fob share a secret key. When you click on the open button on the fob, you send SHA256(key) Car responds with
by bufferoverflow 1y ago
Why can't it be very simple and secure. Car and fob share a secret key.
When you click on the open button on the fob, you send
SHA256(key)
Car responds with a random challenge
RND
Fob sends
SHA256(key XOR RND)
Car does the same calculation and compares.
- kilburn 1y agoThere's no car identification in this protocol, meaning that impersonation/mitm attacks are trivial. Try again :)
- bufferoverflow 1y agoI don't see it. Give an example of how this attack can be executed, a practical application. I approach my car, I press the button on the fob to open it, and your attack does what exactly?