Proxmark3 community

Research, development and trades concerning the powerful Proxmark3 device.

Remember; sharing is caring. Bring something back to the community.


"Learn the tools of the trade the hard way." +Fravia

You are not logged in.

Announcement

Time changes and with it the technology
Proxmark3 @ discord

Users of this forum, please be aware that information stored on this site is not private.

#1 2017-05-08 09:29:59

iceman
Administrator
Registered: 2013-04-25
Posts: 9,537
Website

AUT64 algo used on Temic e5561?

Have someone heard of AUT64 crypto algo and its implementation? 

Temic e5561,  125Khz,

AUT64 is a 64bit block cipher.

Offline

#2 2017-05-08 09:56:35

Onisan
Contributor
From: London
Registered: 2016-07-18
Posts: 88

Re: AUT64 algo used on Temic e5561?

Didn't Kasper and Oswald discuss it in their paper "Lock It and Still Lose It" way back when?

Offline

#3 2017-05-08 10:13:10

iceman
Administrator
Registered: 2013-04-25
Posts: 9,537
Website

Re: AUT64 algo used on Temic e5561?

Cool didn't remember that one.

VW-2, VW-3 uses AUT64 with 12 rounds,  and starting from page 934 mentions AUT64. ref: https://www.usenix.org/system/files/con … garcia.pdf   

Orginal crypto states 8-24 rounds.

This means that the same AUT64 key is stored in millions of ECUs and RKE remotes,
without any key diversification being employed at all.
...
the global AUT64 masterkeys for VW-2 and VW-3 are different, but both can be extracted from the ECU firmware
and possibly from the μC in the remotecontrol as well

VW-4 uses XTEA.

e5561 datasheet explains AUT64 also. ref http://media.digikey.com/pdf/Data%20She … /E5561.pdf

Offline

#4 2019-03-07 15:58:56

iceman
Administrator
Registered: 2013-04-25
Posts: 9,537
Website

Re: AUT64 algo used on Temic e5561?

Found another paper,
https://tches.iacr.org/index.php/TCHES/ … ew/874/826

by
Christopher Hicks
Flavio D. Garcia   (familiar name)
David Oswald   (is this one to Chaos brothers?)

Offline

Board footer

Powered by FluxBB