kivikakk.ee

Dismantling MIFare Classic

Since the tag nonce and uid are sent as plaintext, we also recover the LFSR state before feeding in nTuid (step 4). Note that this LFSR state is the secret key!

Dismantling MIFARE Classic

< newer post
know the difference
older post >
1179648