Skip to main content

Advertisement

SpringerLink
  • Log in
Book cover

European Symposium on Research in Computer Security

ESORICS 2008: Computer Security - ESORICS 2008 pp 97–114Cite as

  1. Home
  2. Computer Security - ESORICS 2008
  3. Conference paper
Dismantling MIFARE Classic

Dismantling MIFARE Classic

  • Flavio D. Garcia3,
  • Gerhard de Koning Gans3,
  • Ruben Muijrers3,
  • Peter van Rossum3,
  • Roel Verdult3,
  • Ronny Wichers Schreur3 &
  • …
  • Bart Jacobs3 
  • Conference paper
  • 2376 Accesses

  • 88 Citations

  • 3 Altmetric

Part of the Lecture Notes in Computer Science book series (LNSC,volume 5283)

Abstract

The mifare Classic is a contactless smart card that is used extensively in access control for office buildings, payment systems for public transport, and other applications. We reverse engineered the security mechanisms of this chip: the authentication protocol, the symmetric cipher, and the initialization mechanism. We describe several security vulnerabilities in these mechanisms and exploit these vulnerabilities with two attacks; both are capable of retrieving the secret key from a genuine reader. The most serious one recovers the secret key from just one or two authentication attempts with a genuine reader in less than a second on ordinary hardware and without any pre-computation. Using the same methods, an attacker can also eavesdrop the communication between a tag and a reader, and decrypt the whole trace, even if it involves multiple authentications. This enables an attacker to clone a card or to restore a real card to a previous state.

Keywords

  • Authentication Protocol
  • Linear Feedback Shift Register
  • Authentication Request
  • Authentication Session
  • Precomputed Table

These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Download conference paper PDF

References

  1. Hoepman, J.-H., Hubbers, E., Jacobs, B., Oostdijk, M., Wichers Schreur, R.: Crossing borders: Security and privacy issues of the European e-passport. In: Yoshiura, H., Sakurai, K., Rannenberg, K., Murayama, Y., Kawamura, S.-i. (eds.) IWSEC 2006. LNCS, vol. 4266, pp. 152–167. Springer, Heidelberg (2006)

    CrossRef  Google Scholar 

  2. ISO/IEC 14443. Identification cards - Contactless integrated circuit(s) cards - Proximity cards (2001)

    Google Scholar 

  3. Jacobs, B., Wichers Schreur, R.: Mifare Classic, logical formalization and analysis, PVS code (manuscript, 2008)

    Google Scholar 

  4. Kerckhoffs, A.: La cryptographie militaire. Journal des Sciences Militaires IX, 5–38 (1883)

    Google Scholar 

  5. de Koning Gans, G., Hoepman, J.-H., Garcia, F.D.: A practical attack on the MIFARE Classic. In: Proceedings of the 8th Smart Card Research and Advanced Application Workshop (CARDIS 2008). LNCS, vol. 5189, pp. 267–282. Springer, Heidelberg (2008)

    CrossRef  Google Scholar 

  6. Nohl, K., Evans, D., Starbug, Plötz, H.: Reverse-engineering a cryptographic RFID tag. In: USENIX Security 2008 (2008)

    Google Scholar 

  7. Nohl, K., Plötz, H.: Mifare, little security, despite obscurity. In: Presentation on the 24th Congress of the Chaos Computer Club. Berlin (December 2007)

    Google Scholar 

  8. Owre, S., Rushby, J.M., Shankar, N., von Henke, F.: Formal verification for fault-tolerant architectures: Prolegomena to the design of PVS. IEEE Transactions on Software Engineering 21(2), 107–125 (1995)

    CrossRef  Google Scholar 

  9. Teepe, W., Nohl, K.: Making the best of MIFARE Classic (manuscript, 2008)

    Google Scholar 

Download references

Author information

Authors and Affiliations

  1. Institute for Computing and Information Sciences, Radboud University Nijmegen, The Netherlands

    Flavio D. Garcia, Gerhard de Koning Gans, Ruben Muijrers, Peter van Rossum, Roel Verdult, Ronny Wichers Schreur & Bart Jacobs

Authors
  1. Flavio D. Garcia
    View author publications

    You can also search for this author in PubMed Google Scholar

  2. Gerhard de Koning Gans
    View author publications

    You can also search for this author in PubMed Google Scholar

  3. Ruben Muijrers
    View author publications

    You can also search for this author in PubMed Google Scholar

  4. Peter van Rossum
    View author publications

    You can also search for this author in PubMed Google Scholar

  5. Roel Verdult
    View author publications

    You can also search for this author in PubMed Google Scholar

  6. Ronny Wichers Schreur
    View author publications

    You can also search for this author in PubMed Google Scholar

  7. Bart Jacobs
    View author publications

    You can also search for this author in PubMed Google Scholar

Editor information

Editors and Affiliations

  1. Center for Secure Information Systems, George Mason University, VA 22030, Fairfax, USA

    Sushil Jajodia

  2. Department of Computer Science, University of Malaga, 29071, Málaga, Spain

    Javier Lopez

Rights and permissions

Reprints and Permissions

Copyright information

© 2008 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Garcia, F.D. et al. (2008). Dismantling MIFARE Classic. In: Jajodia, S., Lopez, J. (eds) Computer Security - ESORICS 2008. ESORICS 2008. Lecture Notes in Computer Science, vol 5283. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-540-88313-5_7

Download citation

  • .RIS
  • .ENW
  • .BIB
  • DOI: https://doi.org/10.1007/978-3-540-88313-5_7

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-88312-8

  • Online ISBN: 978-3-540-88313-5

  • eBook Packages: Computer ScienceComputer Science (R0)

Share this paper

Anyone you share the following link with will be able to read this content:

Sorry, a shareable link is not currently available for this article.

Provided by the Springer Nature SharedIt content-sharing initiative

Over 10 million scientific documents at your fingertips

Switch Edition
  • Academic Edition
  • Corporate Edition
  • Home
  • Impressum
  • Legal information
  • Privacy statement
  • California Privacy Statement
  • How we use cookies
  • Manage cookies/Do not sell my data
  • Accessibility
  • FAQ
  • Contact us
  • Affiliate program

Not logged in - 34.232.62.64

Not affiliated

Springer Nature

© 2023 Springer Nature Switzerland AG. Part of Springer Nature.