Proxmark3 community

Research, development and trades concerning the powerful Proxmark3 device.

Remember; sharing is caring. Bring something back to the community.


"Learn the tools of the trade the hard way." +Fravia

You are not logged in.

Announcement

Time changes and with it the technology
Proxmark3 @ discord

Users of this forum, please be aware that information stored on this site is not private.

#1 2020-08-10 06:17:27

iceman
Administrator
Registered: 2013-04-25
Posts: 9,537
Website

Ghosting the PACS-man: New Tools and Techniques

Babak and my talk over at the Wireless village, DEFCON

Do you fear the PACS-man? Do you lie awake at night atop your pile of RFID cards of unknown origin, pondering grand questions of access control? Is Wiegand a card or a data format? What is an "encrypted" credential and is it actually any more secure? Fear not, fellow explorer. Come discuss your woes with professional ghosts of access control and learn how to keep the PACS-man at bay. This livestream will provide a holistic context of modern access control and outline common design limitations that can be exploited when systems are not implemented correctly. From credentials, to readers, to door controllers and beyond, Babak Javadi and Iceman from the Red Team Alliance will share a practical understanding of what PACS looks like in the field, and how to intercept, clone, downgrade, replay, and one's way through the system.

The talk will demonstrate several new tools, exploits, and refined methods for compromising modern PACS, including:

- DoS Attacks Involving Improper Reconfiguration of Readers
- New iCLASS Standalone Modes for Proxmark3 RDV4.0
- Tech Downgrade Attacks: Techniques for compromising systems using high security credentials such as SEOS and DESFire EV1/EV2.
- Plus More Special Surprises!

Customers, integrators, and system designers will also learn more about best practices and defensive methods that can be used to defend systems and deter attackers.

Youtube:
https://youtu.be/ghiHXK4GEzE

Offline

Board footer

Powered by FluxBB