Revisiting The BlackHat Hack: How A Security Conference Was Pwned

Does anyone remember the Black Hat BCard hack in 2018? This hack has been documented extensively, most notoriously by [NinjaStyle] in his original blog post revealing the circumstances around discovering the vulnerability. The breach ended up revealing the names, email addresses, phone numbers, and personal details of every single conference …read more

Continue reading Revisiting The BlackHat Hack: How A Security Conference Was Pwned

Can a Man in the Middle attack on NFC be prevented by programming when working with NFC?

I have done research on how to authenticate NFC tags. Seeing how you can use digital signatures, or a hidden key on newer NFC tags, it seems safe. However none of it would prevent a Man in the Middle attack where a device can… Continue reading Can a Man in the Middle attack on NFC be prevented by programming when working with NFC?

BSides Las Vegas, iMessage Exploit, 5G and Stingray Surveillance

This is your Shared Security Weekly Blaze for August 12th 2019 with your host, Tom Eston. In this week’s episode: My summary of last week’s BSides Las Vegas security conference, how a single text message to your iPhone could get you hacked,… Continue reading BSides Las Vegas, iMessage Exploit, 5G and Stingray Surveillance

Identifying and cloning NFC Card double size UID – type mifare plus 7 byte 2k or classic 7 byte 1k

I am trying to clone/write copies of an NFC card. I am using an ACR122U-A9 receiver and running nfc-tools on a kali linux VM.

The card I am trying to clone is identified as a Mifare Classic 1k tag
ISO/IEC 14443A (106 kbps), UID SIZE: Doub… Continue reading Identifying and cloning NFC Card double size UID – type mifare plus 7 byte 2k or classic 7 byte 1k