Thursday, September 27, 2007

AWID and LSU, parking hacking

Recently Louisiana State University started up a program called "Easy Streets" which cuts off students or general traffic from using any streets that pass through the university campus. They are using lifting barriers and RFID detectors made by AWID (Applied Wireless IDentification). I haven't quite figured out a way to bypass the RFID system yet so I am looking for your help. Here's what I've learned so far:

1) The readers are model LR-911 units. This design has been in production for a number of years and probably has backend software from iAnywhere. The benefit of this is that iAnywhere supports a billion protocols and basically no encryption. The drawback is finding out how to access this functionality.
"RFID Anywhere Appliance Edition"
supports TCP/IP, HTTP and the EPC reader protocol. It also adds security functions, software for configuring the readers remotely from a Web browser and an application programming interface for executing business logic on the reader itself."


2) The wand is given to each member of the faculty or staff who has access to park on our precious streets and mow down pedestrians (aka, the people who pay them). The model of the wand is the "MT tag", and it the system operates on the 900-928 Mhz unlicensed band, from a distance of ~5 meters.

3) Here are the instuctions on cloning a verichip, with code and blueprints ready to go. While Bruce Schneier discusses cloning a US Passport and how it's done. This is the home-made kit to clone a verichip, all that should be required is a different number of wraps for the antenna.


4) Make.org has tons of info on projects to play with RFID, and there are kits with readers and tags available but they all seem to focus on the 14khz spectrum (only good for inches away), and not the relatively uncommon 900Mhz band.

This RFID system is basically unencrypted and requires no handshake or verification. It is also quite likely that part of the tag is writable and that a blank tag ($15) could be cloned. The technology is virtually identical to Verichip except for using the 900Mhz range instead of 14khz. Tools written for cloning Verichips and US Passports *should* be able to clone these chips also, except that building such tools is too time-consuming and difficult for me, and I cannot find a cheap source for a chip reader/writer.

My next idea involves bypassing verification altogether and perhaps activating the induction loop for the exit side, however that could get me in trouble if i'm spotted going in the "out" door and would only be good for parking lot access, not general travel. Please send ideas in the comments. I'll add more as I get time to do more research.

2 comments:

andy said...

any luck on this? i have been researching the same for the parking facility at my office.

Anonymous said...

Hey guys!

I know some folks here who have gotten results with Male-Extra penis enhancement pills. Im just about to order as i've been hearing amazing results with it. But first off, I want to know if Male Extra does it work as good as they say it does?

I know 1-2 inches Penis growth is realistic and easily accomplished. But I'd like REAL FAST penis growth in the 5 inches range. Dont laugh, I want to have the best penis growth possible because my new girlfriend dated a friggin porn stud!

Guys here know what im talking about?

I want...no make that I NEED to know the best way to enlarge Penis. Male-extra pills promises 3 inches growth within several weeks or they return your money. So I guess that essentially means, if my penis dont grow real fast? They lose money, coz I got to use the pills at the same time get my money back right?

Does this seem like a scam?

Please reply at the soonest possible time!
I need to make a decision fast!

Im already sold on it to be honest, but I just need that one last push so I dont put this off any longer.


The advertisement for the pill I last saw at this site. I hope its still there.

http://cloakedlink.com/hhtaaoleta

K guys thanks. Hope to hear your feedback alright? Bye :D