Research, development and trades concerning the powerful Proxmark3 device.
Remember; sharing is caring. Bring something back to the community.
"Learn the tools of the trade the hard way." +Fravia
You are not logged in.
Time changes and with it the technology
Proxmark3 @ discord
Users of this forum, please be aware that information stored on this site is not private.
Pages: 1
Hello everyone,
New cards from nxp doesn't have any known keys (not even one on the common ones), darkside and nested wont work.
Is nonce bruteforce is the way to go or have to get sniffing to get keys from reader ?
Thanks,
Offline
easiest to sniff. Not sure how you were going to bruteforce a nonce. Would you care to elaborate?
Online
Hello everyone,
New cards from nxp doesn't have any known keys (not even one on the common ones), darkside and nested wont work.
Can you please elaborate? What type of cards are these? Without known keys they would be quite useless because nobody would be able to write anything to them.
Offline
I have the same card with fully encoded sectors........and there is NO WAY to sniff.....
Offline
Please explain why you can't sniff traffic between reader & card?
Online
For me, software issue, I just crack it with chameleonmini then bruteforced the other keys out .. I am sure sniff the decrypt will do the same for proxmark as chameleonmini did
Offline
PM3 can get a key quite fast from simulation x, but sniffing requires knowledge on what data to use for in mfkey32.
well, not if you use the "hf mf sniff" that one will also find it. However I removed that command from the fork, still exists in offical pm3.
Chameleon mini makes that process a bit smoother. @danz, which device do you have?
Online
Please explain why you can't sniff traffic between reader & card?
My staff-id card is linked with some restricted area,if I do sniffering,the security guard may arrest me...
Offline
and there is a monitor above any card-reader...I want backup my card data,but no way....
Offline
You should always have a printout of your management approval for the penetration test.
Offline
@iceman I have rdv2 and for chameleonmini .. got RevE and official ReveG.
Incase you need to run some tests let me know
Offline
That would be outside of the purpose of this thread. However revg and the new gui would be nice if you tested
Online
Pages: 1