Research, development and trades concerning the powerful Proxmark3 device.
Remember; sharing is caring. Bring something back to the community.
"Learn the tools of the trade the hard way." +Fravia
You are not logged in.
Time changes and with it the technology
Proxmark3 @ discord
Users of this forum, please be aware that information stored on this site is not private.
Pages: 1
Hi dears, expecially Roel,
I re-read with interest the "gone in 360 seconds" documents and I would like to ask a question about that sentence:
Following the principle of responsible disclosure, we
have contacted the manufacturer NXP and informed
them of our findings six months ahead of publication.
We have also provided our assistance in compiling a document
to inform their customers about these vulnerabilities.
The communication with NXP has been friendly
and constructive. NXP encourages the automotive industry
for years to migrate to more secure products that
incorporate strong and community-reviewed ciphers like
AES.
In particular is it possible to read the letter and the correspondant NXP answer/s and "encourages" to automotive industry ? Is a link available ?
Last edited by asper (2013-11-17 21:24:30)
Offline
To my knowledge, there is no public document about this particular notification. However, there is a public document from 2009, that notifies collaborating parties of preliminary weaknesses in Hitag products.
Offline
Thank you very much for your answer; looking at this NXP partner list there seems not to be any relation with car manufacturers... so who received that public document in automotive industries ? ECU producers ?
Last edited by asper (2013-11-17 21:34:40)
Offline
the document you read is
Gone in 360 Seconds: Hijacking with Hitag2
Roel Verdult Flavio D. Garcia Josep Balasch
?
it's a 16 pages?
Offline
Yes, it is.
Offline
Hi Roel, recently someone stole my brother's car (Renault Megane Scenic); it is written it has an Hitag2 security "device" so I thought it was stolen by expert car-thieves but opening the remote control/immo i found this:
It is a PCF7943 but there seems to be no info on this "device"... do you have something to read ?
Also is there anyone who know a way to "read" that pseudo-QRcode in the pcb ? Here it is a higher resolution verison.
Offline
Offline
btw, the barcode is a data matrix with a value of 10059750810611
Offline
@midnitesnake: thank you for the link ! I wasn't aware it belongs to hitag2 family ! I Updated the RFID tag list !
@marshmellow: thanks to you too ! Can you explain how you decoded it ?
Can someone also explain the whole circuitery on the PCB ?
Offline
I recognized the type but I didn't have a proper reader so I made it black and white and read it with a barcode scanner app on my android phone. (The app reads only black and white codes.)
Offline
Name of the app for those matrix code?
Offline
Barcode Scanner by ZXing team
Offline
That app reads most barcode types.
Offline
Thanx i was using qrdroid without success (also black and white).
Offline
NP. A lot of apps only read QR codes which is a very different standard.
Offline
On the left side of your photo is S100 circuit-probadly a voltage regulator. Nearby ripped battery holders contacts.
Next 13.56 D:4Z crystal 13.56 Mhz. Used to generate 433.92 Mhz signal. I think that PCF7943 have a x32 multiplier, so that 13.56*32=433.92.
On the right side I see damaged element with coil-maybe a 125 khz antenna? Then 3 yellow buttons, a buzzer and some IC from NXP/Philips 23967 that I couldn't identify.
The QR code can be an unique identifier.
Offline
I just start to work on renault card key rf and rfid and maybe someone will be intrested for chip info s100 from picture.
It is infineon tda 5100 ASK/FSK Transmitter 868/433 MHz.In renault card key rf modulation is 2fsk deviation 100khz,baud rate 10khz,
433.95 mhz
Offline
I am looking for pcf791,7943,7946 etc FULL datasneet if somebody have this please contact me
Offline
I think the pcf7931 datasheet is available if you google.
Offline
I think the pcf7931 datasheet is available if you google
Yes pcf7931 is available but I am intrested in pcf7941,7943,7946,7947 FULL datasheet not only one page pdf
Thanks
Offline
Pages: 1