透過您的圖書館登入
IP:3.149.250.1
  • 期刊

晶片卡安全之探討-離線攻擊Mifare Classic

The Study of IC Card-Off-Line Breaking the Mifare Classic

摘要


Mifare Classic是目前RFID系統中最常使用的非接觸式智慧卡。但其中專屬的密碼系統,Crypto-1與鑑別協定含有許多嚴重的漏洞足以讓不肖人士所利用以取得鑑別時使用的金鑰。因此,本研究採取真卡片與假讀卡機的情境取得卡片中的金鑰。在本研究所發展的方法中,可以大幅減少破解金鑰時的搜尋空間。最後更進一步的研究被某地區廣泛使用的卡片內儲值的格式,並成功的修改其內容。

關鍵字

無資料

並列摘要


The Mifare Classic is the most widely used contactless smartcard on the market. However, the proprietary cryptosystem of Mifare Classic, called Crypto-1, has very serious vulnerabilities. Adversary can exploit these vulnerabilities to obtain the key used in the authentication. Since the RFID systems are often located in public places with many people and video monitors, this study adopts a scenario of using the fake reader and genuine card in concealed places. Moreover, the developed methods can reduce the key search space. Finally, this study investigates the data format in a widely used store-value card and modifies the stored value successfully.

並列關鍵字

RFID Mifare Classic Crypto-1

參考文獻


MF3ICD8101 Objective Short Data Sheet, December 11, 2007, NXP Semiconductors, (accessed January 17, 2010).
MF1ICS50 Functional Specification, November 24, 2010, NXP Semiconductors, (accessed January 17, 2010).
Advanced Card Systems Ltd., 2011, (accessed July 5, 2011).
(ISO/IEC 14443: 2000-03-10, 2000, Identification Cards-Contactless Integrated Circuit(s) Cards-Proximity Cards, ISO.).
Biham, E.,Dunkelman, O.(2010).Differential Cryptanalysis in Stream Ciphers.COSIC Internal Report.(COSIC Internal Report).,未出版.

延伸閱讀