RFID Multipass spoof using ATTiny85

Posted on Tuesday, January 22nd, 2013 in AVR, Bus Pirate, hacks, RFID, security by the machinegeek

Hudson from NYC Resistor was inspired by Beth’s avrfid.S project to try to build a replacement for the multiple HID Prox card he carried for work. Hudson notes that “Beth’s design is simultaneously a technical tour-de-force and an example of how badly we can abuse the Atmel chips.” The entire schematic consists of an ATTiny85 and a coil!

He used the Bus Pirate to help programming the ATTiny85. “Once the fuse bits have been configured to use the RF waveform as the clock source the chip will no longer be programmable with a normal AVR ISP. One option is to use Dangerous Prototypes’ Bus Pirate, which can provide a “recovery” clock during programming. Unfortunately it didn’t work for me with the current release of avrdude; I had to make the following patches to the avrdude/buspirate.c source to get it to work.”

Read Hudson’s post on NYC Resistor’s website for complete details, code and more photos.

Kevin via the contact form.

This entry was posted on Tuesday, January 22nd, 2013 at 1:30 am and is filed under AVR, Bus Pirate, hacks, RFID, security. You can follow any responses to this entry through the RSS 2.0 feed. You can skip to the end and leave a response. Pinging is currently not allowed.

Leave a Reply

Notify me of followup comments via e-mail. You can also subscribe without commenting.

Recent Comments

  • William Brodie-Tyrrell: It's getting to the point where it's cheaper and definitely easier to use a Pi Zero or similar and a $20 3G USB dongle. Power...
  • KH: IIRC most of the actual operating system of modern HDDs is in one of the platter(s); the stuff on the 25VF010 is a bootup firmware......
  • Trev: I don't know of any inexpensive 3G modules (prices start around $US 50), but it does explain why 2G modules are relatively inexpensive by comparison....
  • Zonie: This site Rocks!
  • Chia: Please and Thank You