首页> 外文会议>Information security and cryptology - ICISC 2010 >Chameleon: A Versatile Emulator for Contactless Smartcards
【24h】

Chameleon: A Versatile Emulator for Contactless Smartcards

机译:Chameleon:适用于非接触式智能卡的多功能仿真器

获取原文
获取原文并翻译 | 示例

摘要

We develop a new, custom-built hardware for emulating con-tactless smartcards compliant to ISO 14443. The device is based on a modern low-cost microcontroller and can support basically all relevant (cryptographic) protocols used by contactless smartcards today, e.g., those based on AES or Triple-DES. As a proof of concept, we present a full emulation of Mifare Classic cards on the basis of our highly optimized implementation of the stream cipher Cryptol. The implementation enables the creation of exact clones of such cards, including the UID. We furthermore reverse-engineered the protocol of DESFire EV1 and realize the first emulation of DESFire and DESFire EV1 cards in the literature. We practically demonstrate the capabilities of our emulator by spoofing several real-world systems, e.g., creating a contactless payment card which allows an attacker to set the stored credit balance as desired and hence make an infinite amount of payments.
机译:我们开发了一种新的,定制的硬件,用于仿真符合ISO 14443的非接触式智能卡。该设备基于现代的低成本微控制器,基本上可以支持当今非接触式智能卡使用的所有相关(加密)协议,例如那些基于AES或Triple-DES。作为概念验证,我们在流密码Cryptol的高度优化实现的基础上,提供了Mifare Classic卡的完整仿真。该实现使得可以创建此类卡的精确克隆,包括UID。我们进一步对DESFire EV1的协议进行了反向工程,并实现了文献中DESFire和DESFire EV1卡的首次仿真。我们通过欺骗一些真实世界的系统来实际演示仿真器的功能,例如创建一个非接触式支付卡,该卡允许攻击者根据需要设置存储的贷方余额并进行无数次支付。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号