Repository navigation
Packages Mfoc
Key recovery for MIFARE Classic cards with at least one known key
- Version recorded: 0.10.7
-
Categories:
rfid - Upstream: https://github.com/nfc-tools/mfoc
Implements the 'nested' attack against MIFARE Classic: given one known sector key -- often a factory default that was never changed -- it recovers the remaining keys and dumps the card.
MIFARE Classic's cipher has been broken since 2008 and the cards remain in very wide use. Demonstrating that on a card you hold is the clearest possible illustration of why deployed access control needs auditing.
A libnfc-supported reader and a card that still has at least one default key. Cards with every key changed need mfcuk instead, which is much slower.
- apt:
mfoc
Fails outright against MIFARE Plus, DESFire and any card with no default key left. Timing-sensitive: results vary with the reader, and a run that fails on one PN532 may succeed on another. Upstream has been quiet since 2018.
- probe: apt policy
- strategy: apt_upgrade
Source: catalog/packages/mfoc.yaml
Generated from docs/ at commit b2ea01255815. Canonical site: https://renegade-penguin.github.io/Hammunition/. Edit docs/ by pull request, not this wiki.
- Home
- Software by activity
- Activity hubs
- Installation
- Profiles
-
Guides
- Operating
- Modes
- Receiving
- In the field
- Troubleshooting
- Getting started
- Packages
-
Hardware
- Park and wake devices
- SDR receivers and transceivers
- Radios, GPS and mesh
- Security and research hardware
- Programmers
- Laptop radios and camera (parkable)
- LibreVNA (vector network analyser)
- RF security
-
Reference
- The engine
- Coverage
- Inventories
- Hardware measurements
- Verification
- Contributing