FasTrack RFID Hacking

By admin | Aug 7, 2008
If you are new here, you may want to subscribe to our feed.

ftklogo.gifNate Lawson with Root Labs presented at Black Hat on some pretty interesting hacking.  This quote is straight from his blog:

“I haven’t revealed all the details yet about my Blackhat talk on RFID toll pass security.  One reason was I hoped to speak with Bay Area transit officials to alert them beforehand.  The other reason is that I’ve still been analyzing the potential impact of the flaws I found.

Well, the results are in and it’s pretty serious.  I’m reasonably certain an attacker can send a couple messages to a FasTrak transponder and wipe its internal ID.  Also, the ID can be overwritten with a different one.  There is a population of at least 1 million of these vulnerable transponders in California, sold over the past 15 years.  They conduct 50 million transactions per year on Bay Area bridges.  This does not include their use on southern California toll roads.

I think this is a big deal.  If anyone reading this is responsible for engineering at FasTrak, please contact me.  The messages I’ve sent via your website haven’t worked.  Thanks.”

The idea of utilizing multiple ID’s is a pretty scary one.  And it sounds like this is more an issue for FasTrack than for its customers.  If it can’t validate the identity of the person using the ID, then it sounds like they will be issuing free tolls and spending lots of money tracking all this down.  Hopefully FasTrack can resolve that quickly.



Related Posts:

Unique RFID uses
Morticians who are gathering bodies from hurricane Katrina have been using RFID chips to track victims. This has been...

Bird Flu (H5N1) Technology
Undoubtedly, you have heard about the possibility of a bird flu pandemic. A pandemic is an outbreak of an...

KeyPort Access Elegance
I hate keys. They're bulky and annoying. So, when I saw the KeyPort I fell in love. ...

iPod Goodies
Ben Logan has posted some programs for hacking your iPod. The hacking package includes four utilities: show voltage, deep...

Big Brother Proposing Internet Snooping
The New Yorker has a very interesting podcast on their website right now about an upcoming feature in their magazine...

Leave a Comment

If you would like to make a comment, please fill out the form below.

Name (required)

Email (required)

Website

Comments

© 2007 PaulTech Network, - Daily Blog Tips Themes