You're riding the subway to work,Watch A MILFS Desires Online or taking a smoke break outside the office, or simply strolling down the street. Someone with a backpack is standing nearby, but you think nothing of it.
Thirty seconds later that very same someone has a cloned hard copy of your work ID badge, ready to stroll right into your office.
SEE ALSO: Meet the cyborg bringing biohacking to the peopleThis is not only possible, but "very simple" according to security researcher Dennis Maldonado. Maldonado, the founder of Houston Area Hackers Anonymous and an Adversarial Engineer at pen-testing company Lares Consulting, was speaking to a packed house of hackers at the 25th annual DEF CON in Las Vegas on Thursday.
"In seconds you steal someone's badge, have a complete copy, and you walk into the building."
And they were very receptive.
"I'm going to assume everyone here is legit — is a pen tester, not a black hat," Maldonado said to laughs as he showed off a custom system he built to remotely copy and clone RFID tags.
While you may not know what an RFID tag is, chances are you've used one. You may even have one in your pocket right now. Put simply, radio-frequency identification (RFID) is a means of using electromagnetic waves to track and identify specific tags. The tags are frequently embedded in company ID cards, and employees — especially in the tech industry — have become accustomed to tapping those cards against readers to unlock office doors.
They're digital keys, albeit keys that are extremely easy to copy — even from a distance.
Maldonado proceeded to demonstrate a rig that would allow an attacker to remotely scan a card, from a distance of approximately 2 feet, and then send that data to a cloning machine (up to 30 feet away) which would then automatically write the card.
He even made the setup user friendly, developing an Android app that syncs to a Pebble watch and notifies him via chime if his read on the target card was good. And, because standing two feet away from someone is a normal thing to do in elevators and subway cars, the victim would presumably never be the wiser.
"You don't have to go up to someone and touch their butt to get a card read," he noted — shortly before observing out loud that someone was trying to break into his network mid-talk (it's that kind of conference).
This Tweet is currently unavailable. It might be loading or has been removed.
The basic technology he used is readily available for purchase on eBay, and he told the crowd that he had already posted his code to GitHub. If you don't want to throw down the cash? Well, Maldonado pointed out that the remote RFID-scanning tech is all around us, like in parking garages, but he cautioned the hackers in attendance: "Don't go stealing those."
Which, well, that may have been the only part of his talk the crowd didn't seem too interested in hearing.
"In seconds you steal someone's badge, have a complete copy, and you walk into the building," he told those gathered. For the attendees of DEF CON, Maldonado's statement may have sounded like a challenge. For anyone who uses an RFID tag to badge into their office or home? They should take it as a warning.
Topics Cybersecurity
Samsung Galaxy S8 teardown shows it won't be easy to repairFacebook to developers: Help us destroy SnapchatThose food stalls you love about Bangkok are about to disappear from BangkokGabrielle Union comes for Dwayne Wade's playoff performance with 1 hilarious tweetHarry Styles correctly states that teen girls are the absolute best'League of Legends' breaks out a black hole for its latest game modeThe redesigned Google Earth works directly in Chrome'Star Wars' director confirms the last Jedi's identityWhatsApp is testing a feature to make changing numbers easier, thank goodnessUnited just made it a little harder for you to get bumped off a flightBrazen Coachella thief steals 100 phones, is defeated with the help of 'Find My Phone'Marvel plans to keep making movies until you're dead and your children are old'Walking Dead' just promoted three cast members, here's what it means for Season 8The redesigned Google Earth works directly in Chrome'Leftovers' co'Star Wars' director confirms the last Jedi's identitySamsung Gear VR and Controller is a virtual reality marriage made in heavenIf you haven't seen 'Broadchurch' Season 3, you're missing out'Leftovers' coMarvel plans to keep making movies until you're dead and your children are old Whistleblower book Meta blocked from promotion is now an Amazon best seller How to unblock Pornhub for free Best mouse deal: Get the Logitech Lift Vertical Mouse for its lowest price yet Best Samsung TV deal: Save $300 on 65 NYT Connections Sports Edition hints and answers for March 14: Tips to solve Connections #172 NYT mini crossword answers for March 16, 2025 Get the new iPad Mini for $100 off at Amazon NYT Connections Sports Edition hints and answers for March 15: Tips to solve Connections #173 Today's Hurdle hints and answers for March 17, 2025 Samsung reportedly set to announce bone Bose QuietComfort Ultra noise AI search tools are confidently wrong a lot of the time, study finds NYT Connections Sports Edition hints and answers for March 16: Tips to solve Connections #174 Facebook, Instagram copying X by rolling out Community Notes If the Webb telescope detects these molecules, they may point to life Best smartwatch deal: Get $70 off a Samsung Galaxy Watch7 and a free watch band Wordle today: The answer and hints for March 13, 2025 EarFun Air Pro 4 deal: $25 off makes these great earbuds even better NYT Strands hints, answers for March 16 Today's Hurdle hints and answers for March 14, 2025
2.0805s , 10133.6796875 kb
Copyright © 2025 Powered by 【Watch A MILFS Desires Online】,Inspiration Information Network