Proxmark3 community

Research, development and trades concerning the powerful Proxmark3 device.

Remember; sharing is caring. Bring something back to the community.


"Learn the tools of the trade the hard way." +Fravia

You are not logged in.

Announcement

Time changes and with it the technology
Proxmark3 @ discord

Users of this forum, please be aware that information stored on this site is not private.

#1 2014-12-23 14:44:59

dk1206
Contributor
Registered: 2014-12-23
Posts: 34

Possible cracking?

Hey guys,

With discovering PM3 and it's capabilities a question came to my mind:

Is it possible to crack MIFARE cards that have stored some paid value in them?
E.g: A taxi card, where you paid lets say 200€, and you use MIFARE Classic that stores some points inside (equivalent to 200€) a sector (within the card), and you can use it to pay Taxi fare.

I am not asking for no source code, but just if someone knows it is possible, simply because someone has more experieince with PM3 than me.


Thanks

Offline

#2 2014-12-23 19:13:37

iceman
Administrator
Registered: 2013-04-25
Posts: 9,538
Website

Re: Possible cracking?

well,  with the pm3 you can get the key for read/write access to the data on the card.
After that, you need to figure out how the specific application (taxi-software) is using the data on the card and find a way to modify it.
Normally it is encrypted and/or checksum protected.

Happy hunting!

Offline

#3 2019-01-17 23:34:23

Elsin10
Contributor
Registered: 2018-02-27
Posts: 41

Re: Possible cracking?

Sorry to answer an old post but i have a similar question.
My question is about fare cards. You said to get the keys for read/write access and then figure out about the application that is using the data.

I got the keys but i can't edit the values. Even tried with MCT with no luck. Maybe because i don't know how to use it or i can't use because it's protected, which probably it is.

How do i know if its encrypted and/or checksum protected ?

Will it work if i clone the card using a Magic UID ?

Thanks

Offline

Board footer

Powered by FluxBB