<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Posts on ICARIA.de</title>
    <link>https://www.icaria.de/posts/</link>
    <description>Recent content in Posts on ICARIA.de</description>
    <generator>Hugo</generator>
    <language>en</language>
    <copyright>&amp;copy; 2025 - &lt;a href=&#34;https://www.icaria.de/page/about&#34;&gt;Gerhard Klostermeier&lt;/a&gt; -
            &lt;a href=&#34;https://creativecommons.org/licenses/by-sa/4.0/&#34;&gt;Some rights reserved&lt;/a&gt; -
            &lt;a href=&#34;https://www.icaria.de/page/legal-notice/&#34;&gt;Legal Notice&lt;/a&gt;</copyright>
    <lastBuildDate>Sat, 27 Sep 2025 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://www.icaria.de/posts/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Prison Break - breaking out of kiosk mode environments</title>
      <link>https://www.icaria.de/posts/2025/08/kiosk-mode-breakout/</link>
      <pubDate>Sat, 27 Sep 2025 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2025/08/kiosk-mode-breakout/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve did a presentation at the &lt;a href=&#34;https://2k25.balccon.org/&#34;&gt;Balkan Computer Congress &amp;ldquo;BalCCon&amp;rdquo;&lt;/a&gt;&amp;quot; in Novi Sad, Serbia.&#xA;This talk was about kiosk mode environments and how to break out of them. These environments can be typically found&#xA;in things like ATMs, visitor registration terminals, self-service order terminals, ticket systems for public transport&#xA;or info terminals in a museum.&lt;/p&gt;&#xA;&lt;p&gt;The security of some of these systems is severely broken. This talk tried to be a collection of tips &amp;amp; tricks on&#xA;how to break out of a kiosk mode. I&amp;rsquo;m sure a lot of people have stories to share on how they bypassed a kiosk mode&#xA;environment and I wanted to share mine. There is knowledge, anecdotes and demos.&lt;/p&gt;</description>
    </item>
    <item>
      <title>RFID Payment Systems - free drinks and all you can eat</title>
      <link>https://www.icaria.de/posts/2024/05/rfid-payment-systems/</link>
      <pubDate>Fri, 31 May 2024 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2024/05/rfid-payment-systems/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve did a presentation at the &amp;ldquo;&lt;a href=&#34;https://entropia.de/GPN22&#34;&gt;Gulaschprogrammiernacht&lt;/a&gt;&amp;rdquo; in Karlsruhe.&#xA;This talk was about RFID/NFC-based payment systems that are often seen in university menses or company canteens.&#xA;You typically pay with the student ID card or you employee badge, which is preloaded with money or linked&#xA;to you monthly salary.&lt;/p&gt;&#xA;&lt;p&gt;The security of some of these systems is severely broken due to the usage of old and insecure RFID/NFC technologies.&#xA;The talk contains some basics about those insecure RFID/NFC technologies and stories of broken systems&#xA;I&amp;rsquo;ve analyzed in the past.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Analysis of an RFID-based TOTP Hardware Token</title>
      <link>https://www.icaria.de/posts/2021/07/token2/</link>
      <pubDate>Tue, 20 Jul 2021 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2021/07/token2/</guid>
      <description>&lt;p&gt;Some month ago I started to look into some RFID-based TOTP hardware tokens. Out of curiosity I bought some and&#xA;started to reverse engineer them. This was just meant to be a learning experience. My colleague, Matthias Deeg,&#xA;got interested as well and bought another token. Together we learned a lot about those devices. This post&#xA;tells the story about the research I have done on the Token2 OTPC-P2. Links to Matthias&amp;rsquo;s research on the&#xA;Protectimus SLIM can be found at the end of this post.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Getting root access on homee&#39;s Brain Cube</title>
      <link>https://www.icaria.de/posts/2019/09/root-on-homee/</link>
      <pubDate>Sun, 22 Sep 2019 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2019/09/root-on-homee/</guid>
      <description>&lt;p&gt;Some time ago I came across a &lt;a href=&#34;https://store.hom.ee/collections/all/products/homee-brain-cube&#34;&gt;homee Brain Cube&lt;/a&gt;.&#xA;This cube is an universal central device to connect smart home components of different vendors together&#xA;and to control them. After opening up the case of this smart home bridge, I saw some potential&#xA;to gain root access to the operating system running on it.&lt;/p&gt;</description>
    </item>
    <item>
      <title>New Tales of Wireless Input Devices</title>
      <link>https://www.icaria.de/posts/2019/06/of-mice-and-keyboards-2.0/</link>
      <pubDate>Mon, 17 Jun 2019 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2019/06/of-mice-and-keyboards-2.0/</guid>
      <description>&lt;p&gt;Together with my colleague Matthias Deeg I&amp;rsquo;ve done some more research on wireless input devices. This is considered&#xA;a follow up research to our &lt;a href=&#34;https://www.icaria.de/posts/2016/11/of-mice-and-keyboards/&#34;&gt;previous work on wireless desktop sets&lt;/a&gt;. This time&#xA;the focus was on presenters (aka presentation clickers) and Bluetooth keyboards. Again, we were able to find several&#xA;security issues and presented them at &lt;a href=&#34;https://confidence-conference.org/2019/krakow.html&#34;&gt;Confidence in Krakow&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hacking Gadgets and Working with Heise</title>
      <link>https://www.icaria.de/posts/2019/03/hacking-gadgets/</link>
      <pubDate>Sat, 30 Mar 2019 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2019/03/hacking-gadgets/</guid>
      <description>&lt;p&gt;With its online IT news platform &amp;ldquo;&lt;a href=&#34;https://www.heise.de/&#34;&gt;Heise online&lt;/a&gt;&amp;rdquo; and magazines like &amp;ldquo;&lt;a href=&#34;https://www.heise.de/ct/&#34;&gt;c&amp;rsquo;t&lt;/a&gt;&amp;rdquo;&#xA;Heise Medien GmbH &amp;amp; Co. KG is one of Germany&amp;rsquo;s biggest IT-related publisher. Therefore, I was happy when they offered&#xA;me the opportunity to write some small articles, do an interview and even a video podcast.&lt;/p&gt;&#xA;&lt;!-- more --&gt;&#xA;&lt;p&gt;Back in 2017 they hand an article introducing an collection of &amp;ldquo;Hacking Gadgets&amp;rdquo; in &lt;a href=&#34;https://www.heise.de/select/ct/2017/18/1504370006723906&#34;&gt;c&amp;rsquo;t 18 /2017&lt;/a&gt;.&#xA;Because the article was liked by its readers and there have been several new hacking gadgets/tools released since, they&#xA;decided to make a new one. As a &lt;a href=&#34;https://en.wikipedia.org/wiki/Penetration_test&#34;&gt;penetration tester&lt;/a&gt;&#xA;with focus on hardware test, I was happy to give some insights on the tools I use (not all of them made it to the&#xA;article).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Alarm System Security 2.0</title>
      <link>https://www.icaria.de/posts/2019/03/alarm-system-security-2.0/</link>
      <pubDate>Thu, 14 Mar 2019 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2019/03/alarm-system-security-2.0/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.icaria.de/posts/2016/11/alarm-system-security/&#34;&gt;In 2016&lt;/a&gt; my colleague, Matthias Deeg, and I have looked into the security of&#xA;wireless alarm systems. At this time, the &lt;a href=&#34;https://www.abus.com/uk/Home-Security/Alarm-systems/Secvest-wireless-alarm-system/Alarm-panels-and-kits/Secvest-Wireless-Alarm-System&#34;&gt;ABUS Secvest&lt;/a&gt;&#xA;alarm system did not sign and/or encryption its packets, allowing an attacker to disarm it. Some time later they&#xA;introduced &lt;a href=&#34;https://en.wikipedia.org/wiki/Rolling_code&#34;&gt;rolling codes&lt;/a&gt; to their protocol. But as Thomas Detert found&#xA;found out, they were still not secure.&lt;/p&gt;&#xA;&lt;!-- more --&gt;&#xA;&lt;p&gt;The used algorithm for generating the next valid code is predictable, just by looking at the communication. Thomas&#xA;Detert and Matthias Deeg worked together to publish the new security issues. Furthermore, the attack was demonstrated&#xA;in a TV report by &amp;ldquo;&lt;a href=&#34;https://www.mdr.de/voss-und-team/index.html&#34;&gt;Voss &amp;amp; Team&lt;/a&gt;&amp;rdquo;, a German TV show for consumer&#xA;protection.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Bluetooth Keyboard Security and Trust Relations</title>
      <link>https://www.icaria.de/posts/2018/07/bluetooth-keyboard-security/</link>
      <pubDate>Mon, 30 Jul 2018 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2018/07/bluetooth-keyboard-security/</guid>
      <description>&lt;p&gt;Together with my colleague Matthias Deeg I&amp;rsquo;ve done some research on several Bluetooth keyboards. This was a follow-up&#xA;project to our &lt;a href=&#34;https://www.icaria.de/posts/2016/11/of-mice-and-keyboards/&#34;&gt;research on wireless desktop sets&lt;/a&gt;. In general,&#xA;Bluetooth-based keyboards seem to be more secure as the wireless keyboards with proprietary protocols. However, when&#xA;it comes to Bluetooth security, there are some things which need to be taken into account. For me, the most interesting&#xA;realization was about the trust relationship between paired devices. In some Bluetooth stacks (e.g. Android or&#xA;iOS) a device can change complete without any waring to the user. For example a Bluetooth headset can&#xA;turn into a full functional keyboard.&lt;/p&gt;</description>
    </item>
    <item>
      <title>RFID/NFC Basics - A Pentesters Perspective</title>
      <link>https://www.icaria.de/posts/2018/05/rfid-nfc-basics/</link>
      <pubDate>Tue, 15 May 2018 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2018/05/rfid-nfc-basics/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve did a presentation on the basics of RFID/NFC from my (a pentester) perspective. Since several parties were&#xA;interested, I gave the presentation twice, once at the&#xA;&amp;ldquo;&lt;a href=&#34;https://entropia.de/GPN18:RFID/NFC-Grundlagen_-_A_Pentesters_Perspective&#34;&gt;Gulaschprogrammiernacht&lt;/a&gt;&amp;rdquo; in Karlsruhe and&#xA;once at the &amp;ldquo;&lt;a href=&#34;https://www.it-sicherheitskonferenz.de/session/rfid-nfc-security-basics/&#34;&gt;IT-Sicherheitskonferenz&lt;/a&gt;&amp;rdquo;&#xA;in Stralsund. The main goal was to explain how some of the RFID/NFC technologies work and what security issues&#xA;there are.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Pentesting Cars</title>
      <link>https://www.icaria.de/posts/2017/10/pentesting-cars/</link>
      <pubDate>Thu, 12 Oct 2017 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2017/10/pentesting-cars/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve been invited to the&#xA;&lt;a href=&#34;https://www.vector.com/int/en/events/global-de-en/2017/cyber-security-symposium-2017/&#34;&gt;Vector Cyber Security Symposium&lt;/a&gt;&#xA;to talk about pentesting cars. Since the audience does not only consists of techies, this presentation I gave was&#xA;rather basic. It aims at providing a better understanding of why pentesting is important and souled be done for&#xA;cars. The general theme of the talk is &amp;ldquo;improving security by breaking it&amp;rdquo;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Geiger WiFi</title>
      <link>https://www.icaria.de/posts/2017/03/geiger-wifi/</link>
      <pubDate>Sun, 26 Mar 2017 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2017/03/geiger-wifi/</guid>
      <description>&lt;p&gt;About a year ago I bought and assembled the open source and open hardware&#xA;&lt;a href=&#34;https://mightyohm.com/blog/products/geiger-counter/&#34;&gt;Geiger counter by MightyOhm&lt;/a&gt; at the&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Chaos_Communication_Congress&#34;&gt;Chaos Communication Congress&lt;/a&gt;. Since this device does&#xA;not have a display to show the current measured values, I extended it by some hardware to do the job.&#xA;I&amp;rsquo;ve used a &lt;a href=&#34;https://wiki.wemos.cc/products:d1:d1_mini&#34;&gt;ESP8266 SoC&lt;/a&gt; by Wemos and connected a cheap OLED display&#xA;via &lt;a href=&#34;https://en.wikipedia.org/wiki/I%C2%B2C&#34;&gt;i2c&lt;/a&gt;. The measured data is send from the Geiger counter to the ESP8266&#xA;via &lt;a href=&#34;https://en.wikipedia.org/wiki/Universal_asynchronous_receiver-transmitter&#34;&gt;UART&lt;/a&gt;. Since the ESP8266 has WiFi&#xA;capabilities, the measured values are not only shown on the display, but also on a small web page.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Alarm System Security</title>
      <link>https://www.icaria.de/posts/2016/11/alarm-system-security/</link>
      <pubDate>Wed, 23 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2016/11/alarm-system-security/</guid>
      <description>&lt;p&gt;Together with my colleague Matthias Deeg I&amp;rsquo;ve done some research on several (cheap) wireless alarm systems. We found&#xA;that it is possible to disarm all systems by a simple &lt;a href=&#34;https://en.wikipedia.org/wiki/Replay_attack&#34;&gt;replay attack&lt;/a&gt;.&#xA;Such an attack can be easily carried out using a&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Software-defined_radio&#34;&gt;Software Defined Radio&lt;/a&gt; (SDR). The results of our research&#xA;have been documented by &amp;ldquo;&lt;a href=&#34;http://www.daserste.de/information/wirtschaft-boerse/plusminus/index.html&#34;&gt;Plusminus&lt;/a&gt;&amp;rdquo;, a&#xA;German TV show.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Of Mice and Keyboards: On the Security of Modern Wireless Desktop Sets</title>
      <link>https://www.icaria.de/posts/2016/11/of-mice-and-keyboards/</link>
      <pubDate>Sun, 20 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2016/11/of-mice-and-keyboards/</guid>
      <description>&lt;p&gt;Together with my colleague Matthias Deeg I&amp;rsquo;ve done some research on several modern wireless desktop sets. All of&#xA;the manufacturers claim they are secure because they encrypt data using AES 128. All keyboards and mice use a&#xA;proprietary communication protocol (not Bluetooth), therefore we were interested in if they are really secure.&#xA;The result of the analysis was presented at several IT security conferences including&#xA;&lt;a href=&#34;https://ruxcon.org.au/speakers/#Matthias%20Deeg%20&amp;amp;%20Gerhard%20Klostermeier&#34;&gt;Ruxcon&lt;/a&gt; in Melbourne,&#xA;&lt;a href=&#34;https://hacktivity.com/en/hacktivity-2016/presentations/of-mice-and-keyboards-on-the-security-of-modern-wireless-desktop-sets/&#34;&gt;Hacktivity&lt;/a&gt;&#xA;in Budapest, &lt;a href=&#34;https://2016.zeronights.org/program/main-track/#5&#34;&gt;ZERONIGHTS&lt;/a&gt; in Moscow,&#xA;&lt;a href=&#34;https://deepsec.net/speaker.html#PSLOT248&#34;&gt;DeepSec&lt;/a&gt; in Vienna and &lt;a href=&#34;https://2016.hack.lu/talks/&#34;&gt;hack.lu&lt;/a&gt; in Luxembourg.&lt;/p&gt;</description>
    </item>
    <item>
      <title>433MHz OOK Remote</title>
      <link>https://www.icaria.de/posts/2016/02/433mhz-ook-remote/</link>
      <pubDate>Sun, 21 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2016/02/433mhz-ook-remote/</guid>
      <description>&lt;p&gt;After playing around with my &lt;a href=&#34;https://www.icaria.de/posts/2015/11/wireless-socket-remote/&#34;&gt;SDR and wireless sockets&lt;/a&gt; I had a look at&#xA;other devices, which also use &lt;a href=&#34;https://en.wikipedia.org/wiki/On-off_keying&#34;&gt;ASK/OOK modulated&lt;/a&gt; signals. I found&#xA;a different wireless socket system, an alarm system and a sex toy. After analyzing the signals, I wanted do build a&#xA;remote to control them all. I used an &lt;a href=&#34;https://www.adafruit.com/products/1501&#34;&gt;Adafruit Trinket&lt;/a&gt; (ATtiny85) as micro&#xA;controller and a cheap &lt;a href=&#34;http://www.amazon.com/dp/B008A4UWK6&#34;&gt;OOK transmitter module&lt;/a&gt; at 433MHz. The code on the&#xA;controller just sends the same signal as the original remote&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Replay_attack&#34;&gt;replay attack&lt;/a&gt;).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Wireless Socket Remote</title>
      <link>https://www.icaria.de/posts/2015/11/wireless-socket-remote/</link>
      <pubDate>Sun, 08 Nov 2015 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2015/11/wireless-socket-remote/</guid>
      <description>&lt;p&gt;In order to improve my understanding of &lt;a href=&#34;https://en.wikipedia.org/wiki/Software-defined_radio&#34;&gt;Software Defined Radios&lt;/a&gt;&#xA;(SDRs) and wireless communication in general, I tinkered with cheap wireless sockets. The results are two pieces&#xA;of software.&lt;/p&gt;&#xA;&lt;ol&gt;&#xA;&lt;li&gt;Sniffer: This script can eavesdrop on the signals the remote control sends to the sockets. It displays the&#xA;address, the socket identifier (A, B, C, D or E) and the state (on/off).&lt;/li&gt;&#xA;&lt;li&gt;Remote control: This script allows you to change the state of any socket by supplying the address and the&#xA;socket identifier. Alternatively you can use the brute-force mode to turn on/off every socket within range.&lt;/li&gt;&#xA;&lt;/ol&gt;</description>
    </item>
    <item>
      <title>USB Security</title>
      <link>https://www.icaria.de/posts/2014/10/usb-security/</link>
      <pubDate>Tue, 21 Oct 2014 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2014/10/usb-security/</guid>
      <description>&lt;p&gt;I wrote my bachelor thesis about finding and exploiting USB security issues in USB host implementations.&#xA;The first chapter imparts some basic knowledge about the USB technology. The second part is about USB security.&#xA;This includes theoretical approaches as well as practical attack vectors. In the last chapter of the thesis you&#xA;will find my work of trying to exploit some USB vulnerabilities and building a malicious USB device.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Development of the MifareClassicTool</title>
      <link>https://www.icaria.de/posts/2013/10/development-of-the-mct/</link>
      <pubDate>Tue, 08 Oct 2013 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2013/10/development-of-the-mct/</guid>
      <description>&lt;p&gt;In the process of making and improving the &lt;a href=&#34;https://www.icaria.de/posts/2013/02/mifare-classic-tool/&#34;&gt;MifareClassicTool&lt;/a&gt; (MCT) I wrote&#xA;two documentations about the development process. The first one covers the initial development until version 1.0.0&#xA;and also explains the basics of the MIFARE Classic technology and Android app development. It was created as part&#xA;my internship semester.&lt;/p&gt;&#xA;&lt;p&gt;The second documentation covers the development process from version 1.0.0 to 1.5.2 and has some download and&#xA;usage statistics. It was created as part of university project.&lt;/p&gt;</description>
    </item>
    <item>
      <title>RFID Security - Theory and Practice</title>
      <link>https://www.icaria.de/posts/2013/09/rfid-security-theory-and-practice/</link>
      <pubDate>Tue, 24 Sep 2013 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2013/09/rfid-security-theory-and-practice/</guid>
      <description>&lt;p&gt;This is a paper about RFID security. It was part of my university studies (sixth semester). The main focus is&#xA;on the theory and feasibility of different attack vectors and their counter measures. Especially logical issues and&#xA;physical attack vectors have been taken into account.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Digital Forensics</title>
      <link>https://www.icaria.de/posts/2013/07/digital-forensics/</link>
      <pubDate>Thu, 18 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2013/07/digital-forensics/</guid>
      <description>&lt;p&gt;This is a paper about the basics of &lt;a href=&#34;https://en.wikipedia.org/wiki/Digital_forensics&#34;&gt;digital forensics&lt;/a&gt;.&#xA;It was part of my university studies (sixth semester). It is an introduction to the topic and aims to answer&#xA;questions like &amp;ldquo;what is digital forensics?&amp;rdquo;, &amp;ldquo;what is it for?&amp;rdquo; and &amp;ldquo;how is it done?&amp;rdquo;. There also is a practical&#xA;part about some basic tools and how to use them.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security Analysis of the Student Card</title>
      <link>https://www.icaria.de/posts/2013/06/student-card-hack/</link>
      <pubDate>Sun, 02 Jun 2013 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2013/06/student-card-hack/</guid>
      <description>&lt;p&gt;The &amp;ldquo;&lt;a href=&#34;https://de.wikipedia.org/wiki/Gulaschprogrammiernacht&#34;&gt;Gulaschprogrammiernacht&lt;/a&gt;&amp;rdquo; (GPN) is a congress organized by&#xA;&lt;a href=&#34;https://entropia.de/Hauptseite&#34;&gt;Entropia e.V.&lt;/a&gt; (CCC Karlsruhe). I presented my research about the security of the&#xA;student card at this congress. The similar student card system is present at most German universities. At this&#xA;point in time the system was very broken, mostly because of the usage of the insecure MIFARE Classic RFID tags.&lt;/p&gt;</description>
    </item>
    <item>
      <title>MifareClassicTool (MCT)</title>
      <link>https://www.icaria.de/posts/2013/02/mifare-classic-tool/</link>
      <pubDate>Fri, 15 Feb 2013 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2013/02/mifare-classic-tool/</guid>
      <description>&lt;p&gt;MifareClassicTool (MCT) is a Android &lt;a href=&#34;https://en.wikipedia.org/wiki/Near-field_communication&#34;&gt;NFC&lt;/a&gt; app for reading,&#xA;writing, analyzing, etc. MIFARE Classic RFID tags. It provides several features to interact with (and only with)&#xA;MIFARE Classic RFID tags. It is designed for users who have at least basic familiarity with the MIFARE Classic&#xA;technology. You also need an understanding of the hexadecimal number system, because all data input and output is&#xA;in hexadecimal. A list of features can be taken from the&#xA;&lt;a href=&#34;https://github.com/ikarus23/MifareClassicTool#features&#34;&gt;readme&lt;/a&gt;. This app was initially developed as part of my&#xA;internship semester at &lt;a href=&#34;https://www.syss.de/&#34;&gt;SySS GmbH&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Remote Control a c&#39;t-Bot</title>
      <link>https://www.icaria.de/posts/2012/09/remote-control-a-ct-bot/</link>
      <pubDate>Mon, 03 Sep 2012 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2012/09/remote-control-a-ct-bot/</guid>
      <description>&lt;p&gt;The &lt;a href=&#34;https://wiki.ctbot.de/index.php/Hauptseite&#34;&gt;c&amp;rsquo;t-Bot&lt;/a&gt; is a simple robot of the German IT journal&#xA;&lt;a href=&#34;https://www.heise.de/ct/&#34;&gt;c&amp;rsquo;t&lt;/a&gt; published by &lt;a href=&#34;https://www.heise.de/&#34;&gt;Heise&lt;/a&gt;. As part of a university lecture we should&#xA;program it to do simple tasks (e.g. follow a light source). Furthermore, we should implement something we want the&#xA;robot to do. This is were some fellow students and I implemented a remote control system. The code on the bot&#xA;is written in C and the code on the controlling computer is written in Python. The connection is done via Wifi.&#xA;The remote control systems allows to control the robot, execute programs on it and to send and run precompiled code&#xA;in our own programming language called &amp;ldquo;Fun&amp;rdquo;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>GSM Security</title>
      <link>https://www.icaria.de/posts/2012/05/gsm-security/</link>
      <pubDate>Thu, 31 May 2012 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2012/05/gsm-security/</guid>
      <description>&lt;p&gt;As part of my studies, some fellow students and I held a lecture about GSM security. The purpose was to&#xA;give other students a theoretical and practical background. We put together a script, a handout and some exercises.&#xA;To make this as palatial as possible we used some&#xA;&lt;a href=&#34;https://osmocom.org/projects/baseband/wiki/MotorolaC123&#34;&gt;Motorola C123&lt;/a&gt; phones running&#xA;&lt;a href=&#34;https://osmocom.org/projects/baseband&#34;&gt;OsmocomBB&lt;/a&gt; software.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security of Smartphone Operating Systems</title>
      <link>https://www.icaria.de/posts/2012/01/smartphone-os-security/</link>
      <pubDate>Fri, 27 Jan 2012 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2012/01/smartphone-os-security/</guid>
      <description>&lt;p&gt;This is a paper about the basic security concepts of the smart phone operating systems&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Android_(operating_system)&#34;&gt;Android&lt;/a&gt; and &lt;a href=&#34;https://en.wikipedia.org/wiki/IOS&#34;&gt;iOS&lt;/a&gt;.&#xA;It was part of my university studies (fourth semester).&lt;/p&gt;&#xA;&lt;p&gt;Please note: The information in the paper are very outdated. Much has changed since then. You will find better and&#xA;more recent information on the internet. This paper is just here for &amp;ldquo;completeness&amp;rdquo;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>RFID Security</title>
      <link>https://www.icaria.de/posts/2011/10/rfid-security/</link>
      <pubDate>Mon, 10 Oct 2011 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2011/10/rfid-security/</guid>
      <description>&lt;p&gt;This is a paper about basic RFID security issues but with focus on the MIFARE Classic technology. It was part of&#xA;my university studies (fourth semester). As part of this research, I had a closer look at the MIFARE Classic-based&#xA;system of my university. Because of the multiple use cases (payment, access control, amount of free copies&#xA;at the printers, etc.) there are plenty of attack vectors. Furthermore, I build an RFID zapper. This device&#xA;can destroy RFID chips without leaving a trace (visible from the outside).&lt;/p&gt;</description>
    </item>
    <item>
      <title>JAMM (Just Another MasterMind)</title>
      <link>https://www.icaria.de/posts/2011/07/jamm/</link>
      <pubDate>Fri, 01 Jul 2011 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2011/07/jamm/</guid>
      <description>&lt;p&gt;JAMM is an implementation of the code-baking game &lt;a href=&#34;https://en.wikipedia.org/wiki/Mastermind_(board_game)&#34;&gt;Mastermind&lt;/a&gt;.&#xA;It is written in Java and ships with a simple GUI. There are up to 15 colors and 8 columns, the possibility to&#xA;save and load games, key bindings to play it with keyboard only and a guess generator if you find yourself&#xA;clueless. However, the most special part is the artificial intelligence which can solve your code. It is&#xA;based on the paper &amp;ldquo;Efficient solutions for Mastermind using genetic algorithms&amp;rdquo; by&#xA;&lt;a href=&#34;mastermind-ai-paper.pdf&#34;&gt;Lotte Berghman, Dries Goossens and Roel Leus&lt;/a&gt;. The approach of using&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Evolutionary_algorithm&#34;&gt;evolutionary algorithms&lt;/a&gt; makes it possible to crack complex&#xA;codes (15 colors, 8 columns) within few minutes and approximately 10 ties.&lt;/p&gt;</description>
    </item>
    <item>
      <title>WiFi Security</title>
      <link>https://www.icaria.de/posts/2010/10/wlan-security/</link>
      <pubDate>Fri, 01 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2010/10/wlan-security/</guid>
      <description>&lt;p&gt;This is a paper about basic and common security issues with wireless LANs. It was part of my university studies&#xA;(first semester). After cracking the WiFi security, basic attack vectors like&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/ARP_spoofing&#34;&gt;ARP spoofing&lt;/a&gt; and&#xA;&lt;a href=&#34;https://en.wikipedia.org/wiki/Transport_Layer_Security&#34;&gt;SSL/TLS man-in-the-middle&lt;/a&gt; have been taken into account&#xA;as well. The last part is about my practical experience with wardriving.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ABYSS</title>
      <link>https://www.icaria.de/posts/2009/05/abyss/</link>
      <pubDate>Fri, 01 May 2009 00:00:00 +0000</pubDate>
      <guid>https://www.icaria.de/posts/2009/05/abyss/</guid>
      <description>&lt;p&gt;ABYSS is a small 2D space game written in C#. It is build using the&#xA;&lt;a href=&#34;htts://irrlicht.sourceforge.net/&#34;&gt;Irrlicht 3D engine&lt;/a&gt;. Maps can be specified using a XML file. The controls are&#xA;challenging to master and there even is a small power-up system.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
