How to clone a security badge in seconds

Поделиться
HTML-код
  • Опубликовано: 22 май 2016
  • Almost everyone uses an RFID badge to get into their office or apartment, and it's a lot easier than you might think for someone to steal the data on your card to gain access. A group of white hat hackers called RedTeam Security cloned one of our work IDs to show us just how quickly they can do it from as far as 3-6 feet away.
    Produced by Chris Snyder
    Read more: www.techinsider.io/
    FACEBOOK: / techinsider
    TWITTER: / techinsider
    INSTAGRAM: / tech_insider
    TUMBLR: / techinsider
  • НаукаНаука

Комментарии • 456

  • @RavianXReaver
    @RavianXReaver 7 лет назад +886

    Instructions were unclear, Accidentally robbed an ATM

    • @laszlogulyas6422
      @laszlogulyas6422 7 лет назад +10

      5 years i guess

    • @yiannifunataoldotcom
      @yiannifunataoldotcom 6 лет назад +2

      Raveen Bouy hahaha

    • @wiliamax4068
      @wiliamax4068 6 лет назад +2

      I sell a device for hacking RFID and i hacked Subway's card, my Telegram: @jackticket
      no brute force needed

    • @vexxed3refdsf18
      @vexxed3refdsf18 3 года назад +1

      @@laszlogulyas6422 1 more year until hes out

    • @scottpilgrim7589
      @scottpilgrim7589 2 года назад +1

      @@vexxed3refdsf18 He's out now lol

  • @MrAlucardDante
    @MrAlucardDante 8 лет назад +386

    You can actually make this setup for less than a $100. This requires very basic programming skills, an RFID reader/writer (around $15 on internet) and an arduino or an raspberry.

    • @shinyringo
      @shinyringo 8 лет назад +4

      goddam....

    • @disamperincom
      @disamperincom 7 лет назад +9

      nononono you need $100++ because you need goddamn proxmark3

    • @TheKaukas
      @TheKaukas 7 лет назад +10

      +disamperin Your comment kinda reminds me how criminals gets their ideas even without using google search.

    • @disamperincom
      @disamperincom 7 лет назад +11

      hahaha stop assuming all viewers are criminals. there are some, but not all, there are some security engineer, security auditor, red team, ethical hacker, etc.
      This video can be used as supplementary evidence of business case when proposing more secure physical security / security badge to management. is it nice? hahaha

    • @cristianscript5649
      @cristianscript5649 7 лет назад +2

      arduino instead of proxmark3?

  • @julianmac
    @julianmac 7 лет назад +1443

    The video title is misleading, I did not learn anything from this video

    • @TheKaukas
      @TheKaukas 7 лет назад +93

      Seems like author targeting wrong audiance

    • @MrTech0000
      @MrTech0000 7 лет назад +11

      this kind of staffs are not legal everywhere. and its youtube, u cant just spill all the truth. but better to know about it no?

    • @Markonim
      @Markonim 7 лет назад +29

      Good you shouldn't.

    • @Cody-mc7oe
      @Cody-mc7oe 7 лет назад +25

      No Its not bad to learn things just dont use them in bad ways

    • @palebluedot7435
      @palebluedot7435 6 лет назад +4

      Julian aaaaannnd now your on a list lol

  • @rajantechie
    @rajantechie 7 лет назад +86

    arduino nano and duracells , its what kids play with these days

    • @rrrimve
      @rrrimve 5 лет назад +3

      Good

    • @foobar2988
      @foobar2988 3 года назад +3

      @Edmundo Dante lol triggered

  • @astro189206
    @astro189206 8 лет назад +93

    To clone a RFID 125 Khz prox card with out a card familly number is simple, but when the familly number is added it's a different ball game, also the Prox card is able to be read on a longer distance, the process become less possible with an RFID 13.56 Mhz Mifare card type like the HID I-Class, the reading range is less and more security is added to it. So the video describe only a Prox card with no familly code added to it, it's for that reason the cloning is so simple.

    • @joonasfi
      @joonasfi 7 лет назад +11

      You typoed "family" three times, so I was thinking there is some kind of "familly" (sic) code, but I did not find anything. There also doesn't seem to be a family number when talking about RFID/NFC stuff. Are you referring to AFI (Application Family Identifier)? It'd be helpful to use existing terms to describe what you're talking about. To me the AFI ID doesn't seem to increase security per se - but probably would slow down the cloning of the card - if the scanner has to guess the AFI ID by brute force (assuming it cannot enumerate the AFI IDs that exist in the card).

    • @fightnation9789
      @fightnation9789 5 лет назад +1

      What at you guys talking about talk english please.

    • @Nicksperiments
      @Nicksperiments 5 лет назад +6

      ahmad abdulle basically the cards they cloned in the video were cheap normal cards with no security and any scanner can read them. On most cards that companies actually use, its encrypted and won’t let any old scanner read the card unless the scanner knows the code. So the cloning machine would have to guess the passcode which is hard so it’s much more secure

  • @sidu97
    @sidu97 7 лет назад +91

    You literally show "white hat hackers " .... 0:21
    LOL

    • @johnmcdaniels9231
      @johnmcdaniels9231 5 лет назад +7

      do you know what a white hat hacker is?

    • @nigeriancrowbar6584
      @nigeriancrowbar6584 5 лет назад +23

      @@johnmcdaniels9231 They're the hackers that wear white hard hats, duh.

    • @nyacodm5887
      @nyacodm5887 5 лет назад +2

      @@nigeriancrowbar6584 lul

    • @cameliatantri4866
      @cameliatantri4866 4 года назад

      So some of this people are dumb

    • @johnny_123b
      @johnny_123b 4 года назад

      @@cameliatantri4866 Would you be one of them? From the first comment onward it's pretty clear which one is sarcasm and which one isn't

  • @TheGamerWithMore
    @TheGamerWithMore 7 лет назад +13

    Or to stop a RFID scanner, get two RFID cards and put them in your wallet or purse. It creates crap output data that no one can use.
    Trust me, I've tried it

  • @fifaham
    @fifaham 3 года назад +7

    Always use the card size pocket that protects your visa card and access cards from being cloned remotely - They are offered at many dollar stores for $1 per two cards, I got few of those protective pockets and tried them at Walmart, access doors and others and they work just perfect. Do not be the next victim.

    • @SimonBauer7
      @SimonBauer7 Год назад

      or alternatively just use multiple cards stacked on top of each other. these will all start to transmit thus sending garbage.

  • @sarahbingham1133
    @sarahbingham1133 6 лет назад +8

    The sponsored ad in the corner is “Shop “clone rfid card””. RUclips wants me to get arrested

  • @ethanjohnston8194
    @ethanjohnston8194 6 лет назад +4

    this only works for rfid cards that done have an AES system on them or a system that just uses the uid of the card.

  • @TheReysinhell
    @TheReysinhell Год назад +1

    Good stuff. I didn't know how much technology has advance with scanning RFIDs now. I want to get myself one of those :)

  • @shivangsharma1
    @shivangsharma1 5 лет назад +1

    Hey can you tell an rfid that can work in a range of 100m. I need to setup the receiver on drone and there should be passive tags

  • @ganstagirs
    @ganstagirs Год назад

    where buy it antenna? what the name antena?

  • @jordandurham8951
    @jordandurham8951 7 лет назад +3

    You'll have to find my security badger first! I hide it in some woods, in a hole!

  • @williamv.4234
    @williamv.4234 5 лет назад +5

    Got myself 10 euro's of gear from aliexpress and then basically made this, the teachers on my school have cards to get free coffee so i copied the stuff and now i have free coffee aswel without anyone knowing😂

    • @disndat995
      @disndat995 4 года назад +1

      William Vooijs how can I contact you...

  • @ronindebeatrice
    @ronindebeatrice 7 лет назад +1

    Physical security remains the most important. Just as this is easily defeated, it's also very easy to implement better security.

  • @loneshadow0844
    @loneshadow0844 Год назад +2

    This video is from 6 years ago, but still damn. It's that easy for someone to get a hold of whatever you may have in your wallet or just on your person.

    • @iulic9833
      @iulic9833 Год назад

      Except now its easier than ever. Any phone with NFC built in can do this, albeit at much shorter ranges than what they showed in the video. But the principle still stands. With just a phone and a free google playstore app you can start copying RFID tags.

    • @tahirburkos8106
      @tahirburkos8106 Год назад

      @@iulic9833 yeah you can read the signal with your phone but you still need a RFID copier in order to write it on another card or chip

    • @GIJew
      @GIJew Год назад

      @@iulic9833 NFC credentialing is encrypted and cannot just simply be intercepted/cloned with some cheap stuff you find on Amazon. This applies to HID Seos / iCLASS credentials and MIFARE DesFire credentials as well, which 99% of organizations use. The method of cloning cards shown in this video is all a hoax to gain views, as the 125KHz Prox Card technology they're using has been deprecated for decades. If you go to college or have a job, your work/school ID badge has so much encryption/protection that any attempts you make to clone it will be futile. Business Insider should be ashamed of itself for using Prox cards as opposed to higher-security iCLASS / Seos cards in this day and age.

  • @vincentgordon6992
    @vincentgordon6992 6 лет назад

    Thank you for your comment:
    I will know if you have information about IMSI CATCHERS

  • @asylzatazaev3990
    @asylzatazaev3990 5 лет назад

    Hi for every body, in all the coments i read that you can easilly read/clone rfid with phone using nfc technology, but most of the apps from playstore on read does shows the id and some times a little more information, but on write action, just nothing, is it possible to clone? Which app to use?

  • @stopscams6100
    @stopscams6100 5 лет назад +6

    Yep you can do it with 125khz cards, but any good access control system like Inner Range concept 4000 will put a stop on you, even with 125khz prox card entering a building after hours. As an installer, we have a few more tricks up our sleeves that will prevent these kinds of attacks. But good video anyway. I'd like to see a video that can delete any trace of entering a building & then you might get my attention when you are talking RE firmware for a system.

    • @I-serve-you-tea
      @I-serve-you-tea 11 месяцев назад

      My card is 22 years old and stopped working suddenly. Is there anything i can do to get it to work again? My property manager is so slow. It will take her weeks replace it.

  • @starmike674
    @starmike674 2 года назад

    whats the name of the mini computer and the antenna being used in this video?

    • @hackingcompendium
      @hackingcompendium 2 года назад

      There are several antennas out there. Must not be this particular one.

  • @_JoeMomma
    @_JoeMomma 6 лет назад +1

    Custom hacked garage door rfid reader costs $700 *has mint tin and Arduino chips inside and double A batteries*

  • @kennedysanchez7425
    @kennedysanchez7425 8 лет назад

    What model is the high frecuency antena you are showing us?

    • @disamperincom
      @disamperincom 7 лет назад

      its proxmark3 LF (low frequency) antenna,

  • @aqxuire
    @aqxuire 6 лет назад +1

    Instructions unclear, got in to the Janitors Bathroom

  • @Barbaratio
    @Barbaratio 5 лет назад +1

    I wanted to learn how to make that garage door reader.

  • @JusticeL11
    @JusticeL11 4 года назад

    How do i buy something like that?

  • @gabrieldeguzman9613
    @gabrieldeguzman9613 4 года назад

    The cards they were scanning look like oldprox tech. Will this work on hid SE and SEOS badges.

  • @Lumilan
    @Lumilan 7 лет назад

    What about those entry points that require two factor authentication to enter? IE a card and pin?

  • @suvamkhadka1016
    @suvamkhadka1016 6 лет назад +12

    1:27 -1:29 he is like crazy ruslan hacker😂😂😂

  • @paullynch8316
    @paullynch8316 2 года назад

    I have had people come to my apartment unit complex buzz the door to get in but then scan the lift security to access my floor how do they do that ‘ do they have a card reader ect ?

  • @Joso997
    @Joso997 6 лет назад

    Is the same thing true for contactless payment cards?

  • @BaltoPro
    @BaltoPro 7 лет назад

    What do I need to make one

  • @danielgovender5263
    @danielgovender5263 Месяц назад

    where do i buy the cloner

  • @possiblynerdy1133
    @possiblynerdy1133 5 лет назад +1

    In seconds, this would take years of saving for what to walk into the office as sally.

  • @tumian4k586
    @tumian4k586 5 лет назад

    Need this for ski tickets

  • @kasper1816
    @kasper1816 5 лет назад

    Doesnt always work, because sometimes these access control systems are linked with intrusion detection systems and cctv, for example when they key is swiped at a authorized hour (Before business hours, to open up,etc) , it disengages the alarm system, snaps a picture on cctv, and then opens the door. If access is tried a during a unauthorized hour 12am-5am, the alarm system will deny access and go into a attempted door forced open alarm.

  • @waifuracer6516
    @waifuracer6516 5 лет назад

    You can do that with android phones as well as long as you have nfc in the phone.

  • @SwapnilSingh4u
    @SwapnilSingh4u 6 лет назад

    Great content .

  • @DaLHunt44
    @DaLHunt44 Год назад

    "This hacking device cost about $700 to make..."
    ???: "Do you guys not have phones?"

  • @davidrowdon1522
    @davidrowdon1522 7 лет назад +2

    is this the same as contactless payment with bankcards?

    • @edd868
      @edd868 5 лет назад

      Yes. Same with magnetic subway cards

  • @AmedeoArch
    @AmedeoArch 8 лет назад +37

    What kind of company would setup an RFID access system using the UID only...come on guys...

    • @disamperincom
      @disamperincom 7 лет назад +4

      *using the HID only
      better use iclass elite or equivalent

    • @tin2001
      @tin2001 7 лет назад

      Amedeo Baragiola
      Companies installing systems for government buildings... Especially when done way back when this stuff was unheard of and seemed like magic.

    • @DaWAFFLES1
      @DaWAFFLES1 6 лет назад +1

      Exactly what I was thinking because if they set it up to where the code to access the door is stored in the blocks on the card then you can easily password protect it

    • @DFsdf3443d
      @DFsdf3443d 6 лет назад

      what else would you have them do? an RFID card just transmits data doesnt it? if they stored passwords on them and transmitted those then...that would be the exact same thing...

    • @DaWAFFLES1
      @DaWAFFLES1 6 лет назад +1

      Stav7 yea they transmit data, but the data can only be read if the reader and the rfid card have the same password. If the passwords don’t match data can’t be read.

  • @ElephantOnATurtle
    @ElephantOnATurtle 7 лет назад +2

    Why would they tell me this? (x Now my possibilities/insight as a criminal have increased.

  • @harshindublin
    @harshindublin 5 лет назад +2

    It's better to have biometric or facial recognition as security which we use in my office

  • @jeremyjdl713
    @jeremyjdl713 3 года назад +2

    I don’t want to hack or take ppls info. All I want is to use my $1k phone as my work ID badge and gym ID badge lol I can pay for stuff by just tapping my phone to the reader. Why not clock into work the same way without having to go though hoops to make it happen?

  • @WolfGamingNation
    @WolfGamingNation 4 года назад

    Ho can give links for the programs and equipment becouse i have a challange for my dad

  • @Hunter-em3dr
    @Hunter-em3dr 5 лет назад

    The only card that can be replicated directly is Mifare Classic. While most of the people out there are using Mifare DesFire EV1 and Mifare Ultralight.

  • @UKsystems
    @UKsystems 20 дней назад

    This is why smartcards are generally preferred as a generate individual cryptographic handshakes which differ from used to use

  • @afakethrum
    @afakethrum 5 лет назад +1

    You don't need to buy anthing. Just place two RFID card back to back and you screw up the card reading.

  • @101RealTalker
    @101RealTalker 22 дня назад

    Does anyone know if this would work with a bus pass? My uncle used to be a Los Angeles bus driver and gave me his employee pass which has unlimited rides and I am scared of losing it so I want to clone it but don't want to go through the official app because I'm scared they will see it and somehow erase it, I don't know anything about frequencies or whatever, I was thinking about getting an external RFID copier but I am completely naive and want help please, does anyone know any important information regarding metro fare tap cards and frequency and or if this will help or knows what will help?

  • @0MVR_0
    @0MVR_0 6 лет назад

    I assume this works only with semi-passive RFIDs. And of course passive chips.

  • @dlgksidiffnr4671
    @dlgksidiffnr4671 6 лет назад

    Thank God these are good people

  • @entityunknown8243
    @entityunknown8243 6 лет назад

    I got a network security ad before this

  • @takudzwamaminingo1884
    @takudzwamaminingo1884 4 года назад

    Can i buy one

  • @bathong188
    @bathong188 8 лет назад +37

    Thanks for raising awareness.

    • @TheKaukas
      @TheKaukas 7 лет назад +3

      Yeah, sure... When you searched phrase "How to clone a security badge"

    • @disamperincom
      @disamperincom 7 лет назад

      so what? he maybe an security engineer, security auditor, etc.

    • @TheKaukas
      @TheKaukas 7 лет назад +1

      disamperin yeah, kinda reason why I ended up here. (I mean I got here by legal reasons, I think so)

    • @TheKaukas
      @TheKaukas 7 лет назад

      Yup, maybe he got recommendation while watching how to pick a lock, who knows.

    • @Engineer9736
      @Engineer9736 6 лет назад +1

      This video has nothing to do with being aware of anything. Yes you can copy RFID cards like this. No security RFID cards are not copyable like this. Security cards use a challange response system which is not copyable. The security card has a complex unreadable math algorythmn build in. To make it easy for example +9. The scanner sends 5 to the card. Then the scanner wants to receive back 14. Without knowing the +9 formula, but then some really complicated math in reality, you cannot give the right answer back to the scanner. The formula is not in the accessable memory of the card.

  • @dougieb777
    @dougieb777 3 года назад

    This would not work on a site with encrypted access credentials, only systems with raw 26+bit entry methods, which is more than you would think.

  • @yepyep2962
    @yepyep2962 7 лет назад

    so how do you clone????

  • @fahrly
    @fahrly 7 лет назад +2

    Arduino Clone = 3-5$
    RC522 (Badges are mostly included) = 2-3$
    A Brain = 0$
    Price = Under 10$

    • @theAppleWizz
      @theAppleWizz 7 лет назад

      nope does not work for HID cards

  • @MrPiansaptu
    @MrPiansaptu 5 лет назад

    how about change data on card..example rewards card collection points..we buy and get points collection to redeem..someone can tell me how hacker crack code or change points inside..thanks

  • @arhanya8552
    @arhanya8552 6 лет назад +1

    In my office, I just use to push the door hard and it used to open.
    Then I used my card if not in hurry.

  • @sonofmran-akif1222
    @sonofmran-akif1222 7 лет назад

    What if there were two cards near to each other....how can this thing choose which one to clone?

  • @williams5885
    @williams5885 2 года назад

    Wich power source was used in the Reader clone, cuz' i see Lot of bateries

  • @MTHLDMTHLD
    @MTHLDMTHLD 6 лет назад

    this very cool

  • @Viper1000100
    @Viper1000100 8 лет назад

    Can it work with old school swipe badges? With the black strips?

    • @cumzi
      @cumzi 8 лет назад

      when you wanna steal shit from the school

    • @The5thorseman
      @The5thorseman 8 лет назад

      I'm fairly sure those aren't RFID.

    • @Viper1000100
      @Viper1000100 8 лет назад

      Ha I wasn't wanting to steal anything. I worked at a place where when we badged in at work we physically swiped our badges through a box and it opened the door and beeped. But since I posted this I got a job at a different company so now I have a thick kidney bean shaped plastic device that I wave near a flat box.

  • @gman83090
    @gman83090 3 года назад

    What you also can do you can put to contact with Cards together in your wallet and that blocks out and confuse the readerI had it with my Mikey card and my student card they were in the same wallet and one couldn’t be read because the other one was overriding the other one and it couldn’t be read by the reader in the same thing happens with my bank card as well

  • @davidpepito4303
    @davidpepito4303 3 года назад

    Quiero comprarlo como lo consigo alguna ayuda soy de Argentina

  • @DoNotComply124
    @DoNotComply124 7 лет назад +2

    Could this theoretically be used to capture "Contactless" debit cards?

    • @BeneeUK
      @BeneeUK 7 лет назад +1

      not this way nope. but different devices could, still good to use a rfid wallet

    • @DoNotComply124
      @DoNotComply124 7 лет назад

      so there's still a way for people to clone my card.
      guessing an RFID wallet is one of them special metal or metal lined ones?

    • @tin2001
      @tin2001 7 лет назад +2

      Marco Pitzettu
      Contactless credit/debit cards can't be cloned as such. You can apparently trick a card into revealing enough information to allow one transaction, but if the genuine card is used before the "clone", the information becomes useless.
      Much easier to commit traditional theft if you ask me.

  • @MrGeoffrey1998
    @MrGeoffrey1998 6 лет назад

    They're so good they're able to clone RFID cards with basic security and just the data they need wow, we were able to do it on our smartphones 2-4 years later with apps and even before with a little ingenuity... "Hackers" lawl garage trash hackers should they say

  • @DavidFurcayg
    @DavidFurcayg 6 лет назад +1

    does it matter if it s a 125 13.56 frequency?

    • @SandraWuerthner
      @SandraWuerthner 6 лет назад

      Yes - its all about the frequencys :)
      You can clone easy a 125 kHz card. Warning if you are using the cheap chinese cloner (around 25 dollars) he write a passwort to the tag. It is just working like this: read the card with the cloner - hold the cloner on an empty card - press write and the card is cloned.
      13,56 is a bit tricky - you can easy copy the mifare classic card.
      Protecting cards - put 2 or more cards into your wallet and no one can steal informations

    • @DavidFurcayg
      @DavidFurcayg 6 лет назад

      what type of cards are more secure against cloners? If 13.56 are harder then that should be a plus right?

  • @AshishJayan
    @AshishJayan 7 лет назад

    Red Team was here- Written is blue! I smell the blue team conspiring against the Red team lol. Have a good day!

  • @Matty__Matt
    @Matty__Matt 6 лет назад

    Damn this was so interesting

  • @michael7324
    @michael7324 6 лет назад

    That's great but my badge also requires my finger prints.

  • @g43654
    @g43654 5 лет назад

    So what would happen if I bunch up my cards? Can the reader copy all of them?

  • @faffidk
    @faffidk 5 лет назад

    You can even do this with a phone with NFC

  • @walterjunovich6180
    @walterjunovich6180 2 года назад

    Fascinating and scary !! 😳

  • @Thatoneblackguy258
    @Thatoneblackguy258 6 лет назад

    What I love to see are the idiots who buy an RFID shield for their debit card, "Gotta protect myself from hackers".

  • @adilyounustta
    @adilyounustta 6 лет назад

    So at 1:24 they had blurred all the codes .as if I'll steal the codes and take the id card

  • @avirtus
    @avirtus 3 года назад

    Easy life hack to protect yourself with this kind of hacker:
    Sandwich your rfid tag with your other rfid tag wherever you go, and take one for every use, its harder for those reader to scan stacked rfid tags, even if they did scan some id's they dont know which are which.

  • @michealmuga1658
    @michealmuga1658 2 года назад

    Thanks really heiped with new ssd especially since they have dropped in prices!

  • @nikushim6665
    @nikushim6665 4 года назад +2

    Dude instantly lost all con cred just by having the hak5 tag on his pack.

    • @debprasadbanerjee5005
      @debprasadbanerjee5005 3 года назад

      lol

    • @nikushim6665
      @nikushim6665 3 года назад

      ​@@debprasadbanerjee5005 its kinda true though, If you start broadcasting a beacon with a pineapple at any security con expect it to get bricked within 10 mins or less.

    • @debprasadbanerjee5005
      @debprasadbanerjee5005 3 года назад

      @@nikushim6665 Never been to one, covid is also ruining best years of life. Pretty interesting facts!

  • @gigavolt
    @gigavolt 7 лет назад

    i keep my apartment door badge and work badge in my wallet. I can't just hold up my wallet to the scanner at access points like I see other people do, I tried. their proximity to each other is jamming the signal...I wonder if I'm protected from thieves???

    • @to2866
      @to2866 2 года назад

      Yes, you are most likely protected

  • @reedmarkowitz
    @reedmarkowitz 5 лет назад

    I love how they say "hackers" but anyone with a phone can do this

  • @screwthenet
    @screwthenet 5 лет назад

    Or instead of an rfid blocking thing, just used two pieces of folded aluminum foil. Put em in your wallet and make little ,super cheap holders for your cards. ITs fun to learn. CAUSE KNOWLEDGE IS POWER!!!

  • @skysuperblock2204
    @skysuperblock2204 5 лет назад

    nice video i will share to everyone

  • @OneManOnFire
    @OneManOnFire 6 лет назад

    I just want a spare cars in case i forget my other card at home for work

  • @psirvent8
    @psirvent8 3 года назад +1

    Best part is from 0:00 to 0:06

  • @newchangeunlisted_viewer5594
    @newchangeunlisted_viewer5594 7 лет назад

    lol, Red team was here!, writes it in blue

  • @whack9721
    @whack9721 7 лет назад +8

    could you hypothetically use this to clone someone's RFID transit card and get free rides?

    • @Jawa1
      @Jawa1 7 лет назад +2

      Mitchell Durand Of course, same process.

    • @guilace
      @guilace 7 лет назад +2

      I was thinking the same thing. I would sell the cards though

    • @yvrelna
      @yvrelna 7 лет назад +4

      Maybe, maybe not. Depends entirely on your card issuer and the technology used in the card.
      Proper security RFID has a microcomputer in the card. They use public key cryptography to generate a one time use access code, and the secret access key is never transmitted over the air. They are effectively unclonable without physically disassembling the card itself or using bulky, expensive equipments like an electron microscope. Your best chance of attacking these is to use some sort of range extender (a device that relays the RFID signal, one attacker sits next to the card reader the other sits next to someone with a card). Even huge security RFID devices requires you to click on a physical button on the card before it responds with the access grant.
      If you have a weak security card like those shown in this video, the card's effective security is effectively like a glorified barcode reader. It's trivial to copy these kind of cards.

    • @Kletterhaus
      @Kletterhaus 6 лет назад

      Mitchell Durand no because your transit card is safed as a number on a server and if you buy a ticket, your ticket gets withlisted on the server as well on the ticket checker

  • @eskilr
    @eskilr 5 лет назад +1

    Probably won't work with mifare cards tho

    • @jcdowen
      @jcdowen 5 лет назад

      Nope, their "encryption" only stops the cheapest most basic handheld reader/writer tools, a mobile phone does it with ease, look up MiFare Classic Tool on the Google play store.

  • @tombruton
    @tombruton 6 лет назад

    yea very few companies would use cards that can be cloned this easily. Mifair cards are used by most companies now

    • @digiduck8191
      @digiduck8191 5 лет назад

      Mifare Classic 1k cards are extremely common still here in the UK and extremely vulnerable

  • @lacrosseattacker10
    @lacrosseattacker10 7 лет назад

    Amazon go stores r gonna b so screwed lol

    • @0x4rk0
      @0x4rk0 7 лет назад

      well you get into the store via a barcode...

  • @MO_AIMUSIC
    @MO_AIMUSIC 7 лет назад

    proxmark3 is all you need(as shown in video)

  • @n_3719
    @n_3719 7 лет назад +1

    0:48 That's not even close to an mini computer! That is just an RFID R/W based on a Xilinx FPGA!

    • @bollocks4296
      @bollocks4296 6 лет назад

      Khoi Sousa no i believe that's raspberry pi so yeah he's right it's a mini computer if not then proxmark

  • @BossBoss-hj8gw
    @BossBoss-hj8gw 2 года назад

    What do you need to make one 🧐🤔

  • @akshatbhatia1
    @akshatbhatia1 6 лет назад +1

    If I have the original card why would I make a copy of it.

  • @diegodlv1001
    @diegodlv1001 7 лет назад

    is that a raspberry pi i see on thar desk?

  • @imperialrecker7111
    @imperialrecker7111 5 лет назад

    1:44 was that an arduino nano? lol

  • @JRL415
    @JRL415 5 лет назад

    Can I put my security badge at work in a chip and implant it?

  • @Corieorieorie
    @Corieorieorie 7 лет назад +8

    this video was funded by wallet makers ... hmmmmm

    • @ailinos
      @ailinos 7 лет назад +1

      Corie Holden Gotta get that € somehow

  • @MrSD42
    @MrSD42 7 лет назад +5

    I have a wallet I got on Amazon that said it was RFID blocking. I worked at a place that has rfid door locks. I put the card in the wallet and booped the scanner. it let me right in. RFID blocking wallets don't all work.

    • @backnforth8401
      @backnforth8401 7 лет назад +1

      Joseph Newman you got scammed son.

    • @MrSD42
      @MrSD42 7 лет назад +1

      I am aware. Good thing I didn't have any kind of secure info available. I left a bad review. That said, it's a good wallet other than that, so I kept it but I'm not fooling myself into thinking it's any more secure than anything else. Plus, it's them that really got taken there, since I got it free in trade for an honest review. So now people know about that wallet and I didn't pay a cent.

  • @Keyakina
    @Keyakina 7 лет назад

    This only works with old, less secured cards right?

    • @simonl1938
      @simonl1938 7 лет назад +1

      all cards have encryption but a lot of companies just keep it to the standard and if it isn't the standard code the computer can try a big list with thousands of codes in seconds until it finds one that fits.