Go Back   Australian Ford Forums > General Topics > The Pub

The Pub For General Automotive Related Talk

Reply
 
Thread Tools Display Modes
Old 31-01-2005, 04:14 PM   #1
Laminge
Cuban... nothing like it
 
Join Date: Dec 2004
Location: Watching in amusement
Posts: 11,643
Default Car Key Codes Cracked

Quote:
Car key code cracked
Brian Witte in Baltimore
JANUARY 31, 2005

RESEARCHERS have found a way to crack the code used in millions of car keys, a development that could allow thieves to bypass the security systems on newer car models.

The research team at Johns Hopkins University said it discovered that the "immobiliser" security system developed by Texas Instruments could be cracked using a "relatively inexpensive electronic device" that acquires information hidden in the microchips that make the system work.
The radio-frequency security system being used in more than 150 million new Fords, Toyotas and Nissans involves a transponder chip embedded in the key and a reader inside the car. If the reader does not recognise the transponder, the car will not start, even if the key inserted in the ignition is the correct one.

It's similar to the new petrol purchase system being used in the US in which a reader inside the pump is able to recognise a small key-chain tag when the tag is waved in front of it. The transaction is then charged to the tag owner's credit card.

Researchers said they were also able to crack the petrol tag code.

"We stole our own car, and we bought gas stealing from our own credit card," said Avi Rubin, a professor of computer science at Johns Hopkins who led the research team.

Texas Instruments was recently given demonstrations of the team's code cracking capabilities, but the company maintains its system is secure.

The hardware used to crack the codes is cumbersome, expensive and not practical for common thieves, Texas Instruments business manager Tony Sabetti said.

"I think the way in which it's presented as being inexpensive to do and quick and all the rest of that is an exaggeration," Mr Sabetti said. "And because of that, we believe the technology still is extremely secure for the applications that it's used in."

But Professor Rubin said the code-breaking demonstrations illustrated that developers did not pay enough attention to security.

"I think the implications are that it sets us back about 10 years ago where we were with car security," Mr Rubin said.

In the seven years the technology has been in use, Texas Instruments has never had a reported incident where a car has been stolen or a gasoline-purchasing tag has been duplicated, company spokesman Bill Allen said.

The Johns Hopkins team, which was funded by RSA Security, recommended distributing free metallic sheaths to cover the radio frequency devices when they are not being used.

The Associated Press
Obviously in the states, but how long before it hits here?
__________________
Quote:
Originally Posted by Laminge
...its amazing how mud sticks to ones shoes, as flies do to the elderly and bottle blondes around fame and fortune...
Laminge is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:17 PM   #2
XA-Coupe
FF.Com.Au Hardcore
 
Join Date: Dec 2004
Posts: 5,644
Default

I would reckon it would already be here. Like most things ... once someone figures it can be done ... a billion copy cats move in.
XA-Coupe is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:22 PM   #3
EA2BA
PM me if you want
 
EA2BA's Avatar
 
Join Date: Dec 2004
Location: Pk Ranger Modding - QLD 👍
Posts: 7,498
Default

Quote:
The Johns Hopkins team, which was funded by RSA Security, recommended distributing free metallic sheaths to cover the radio frequency devices when they are not being used.
So you lock your car, go to the shops, get followed, your code grabbed, and no car when you go back to where it was, difficult or not, scary stuff.
__________________
Owner of first ever car to retrofit BA SSS - the EA2BA

Send me a PM if you want to know anything

2010 Ford Ranger PK High Rider (Auto) - 2011 Ford Fiesta (Auto)
EA2BA is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:29 PM   #4
rag top
FF.Com.Au Hardcore
 
rag top's Avatar
 
Join Date: Dec 2004
Location: ACT
Posts: 4,028
Default

It's always the same. As soon as new technology is released, there are those out there who try to overcome it, and seem to succeed... Sad but true.
__________________
Current Rides:
2000 AU 5L XLS ute; 1970 Mustang project
rag top is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:38 PM   #5
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

There is no code system that cannot be cracked, and its always going to be a battle to stay 1 step ahead. Reading the article I dont see any widespread outbreak of code cracking, just that it has been proven possible.

The improvement we have seen with with smart-lock and smart-shield have been huge, they are not impossible to beat, but are just too difficult for all but the most determined.

If researchers are cracking codes it usually means, developments will be soon made to close another loop-hole. The article mentions researchers rather than real world instances.

i'd still recommend additional third party immobilisation devices, to supplement any factory system. You will never make anything totally secure without at least a moat & crocodiles. The secret is to make your car, home etc more difficult than the majority so theives try somewhere else.

Working with weigand cards etc you soon realise the gaping holes in security are the people elements rather than the system technology. Whats the point of tibbe locks etc when car key are left in the ignition in the kitchen, on a kitchen key-tel all weekend, or on an office desktop for an entire day. As for RF security you only have to look at Wi-Fi to see rarely the available security is actually utilised.

Either way it is an interesting article.
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:42 PM   #6
Casper
FF.Com.Au Hardcore
Contributing Member
 
Casper's Avatar
 
Join Date: Dec 2004
Posts: 12,083
Default

Quote:
The hardware used to crack the codes is cumbersome, expensive and not practical for common thieves, Texas Instruments business manager Tony Sabetti said.
Yeah, so were calculators, computers and clocks. Not to mention mobile phones. Somehow I doubt it would take long to shrink to the size of a pack of smokes or mobile phone.
__________________
Older, wiser, poorer.


Now in Euro-Trash. VW Coupe V6 4motion.
Casper is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:45 PM   #7
Racecraft
they call me Tibbo
 
Racecraft's Avatar
 
Join Date: Dec 2004
Location: Brisbane
Posts: 6,163
Default

most of the good quality diagnostic equipement (ie Snap On) can already to do it.. Our mechanic only needs to plug in his briefcase of goodies and within 3 minutes he has already 'cut' us a new key... I dont know the ins and out of the proceedure nor would I post it if I did, but it is a very fast process....
__________________

Racecraft is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 04:56 PM   #8
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

Quote:
Originally Posted by Racecraft
most of the good quality diagnostic equipement (ie Snap On) can already to do it.. Our mechanic only needs to plug in his briefcase of goodies and within 3 minutes he has already 'cut' us a new key... I dont know the ins and out of the proceedure nor would I post it if I did, but it is a very fast process....
I was under the impression smart-shield was difficult but not impossible to re-key without an existing key. (I could be wrong...)

The thing is we hand over keys at all sorts of places , valet parking, tyre shops, lots more places than the Ford dealer. Quick question here, who has ever recoded their keyfob (as shown in the handbook) after other have had access to the car? Have access to the car and a key and your pretty much set to create a clone.
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 05:25 PM   #9
Sourbastard
Moderator
Contributing Member
 
Sourbastard's Avatar
 
Join Date: Dec 2004
Location: Adelaide SA
Posts: 5,584
Default

id be more worried about being carjacked then i would about having my code stolen. At the end of the day, john Q thief finds it easier to stick a 45 in your face at the traffic lights then build his own data capture device.
__________________

1965 XP Falcon Deluxe Sedan
1978 XC Falcon Wagon Rallypack
2003 BA Fairlane G220

Windsor Powah!!! http://www.youtube.com/watch?v=m7hT9dxD2hM

Sourbastard is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 05:29 PM   #10
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

Quote:
Originally Posted by sourbastard
id be more worried about being carjacked then i would about having my code stolen. At the end of the day, john Q thief finds it easier to stick a 45 in your face at the traffic lights then build his own data capture device.
There are a few electronic surprises for John Q Thief once he and the pistol are out of earshot. :Up_to_som
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 05:33 PM   #11
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

It's here, a local HSV dealer had a huge amount of cars being knocked off from their yard and new owners houses within month's of buying them. 1st time round the window tinting company was copying keys, then two young blokes that worked at the dealer were busted selling Programed keypad's & cut key's. Funny part is the cops couldn't explain how they were going missing, looked sus when both these blokes come to work the next week one with broken hands the other with a broken leg. They got greedy and ripped a bloke off they shouldn't have



Not sure how good the ford system is but iv'e only heard of a few Ba's walking and all 3 were taken with key's. HSV's on the other hand walk all the time.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 05:38 PM   #12
BlueRaven
Dual O2 sensors
 
BlueRaven's Avatar
 
Join Date: Dec 2004
Location: Brisneyworld
Posts: 1,437
Default

Quote:
Originally Posted by Racecraft
most of the good quality diagnostic equipement (ie Snap On) can already to do it.. Our mechanic only needs to plug in his briefcase of goodies and within 3 minutes he has already 'cut' us a new key... I dont know the ins and out of the proceedure nor would I post it if I did, but it is a very fast process....
This is more what I thought would come of it. Sure, the equipment they used was comberson, however shrink it a bit, add a nice plastic package, a set of easy to follow instructions and bam! Its that easy!

Plus they could even sell it on the internet if it was called something like "key backup software - incase you loose your keys and need to make a new set!" (going on that dvd/cd backup software)... that way it isnt illegal to sell the tools : :
__________________
Black 1990 300zx Twin Turbo 5 Speed Manual :
Blue 2004 Mini Cooper S 6 Speed Manual - Yes, thank you Amanda. I realise now that you updated my signature to include your car. :
BlueRaven is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 07:52 PM   #13
paul7v7
bring it on
 
paul7v7's Avatar
 
Join Date: Dec 2004
Location: Praying....for you
Posts: 987
Default

i have heard of this before. however no matter what there is in the market there is someone already trying ot by pass it. nothing will stop car theives. if they really want your car they will get it. even if they have to resort to a tow truck.
__________________
Here is the devil-and-all to pay.
paul7v7 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 07:54 PM   #14
3Toed
The Smoking Sloth™
 
3Toed's Avatar
 
Join Date: Dec 2004
Location: Sydney, Australia
Posts: 336
Default

Quote:
Originally Posted by Casper
Yeah, so were calculators, computers and clocks. Not to mention mobile phones. Somehow I doubt it would take long to shrink to the size of a pack of smokes or mobile phone.
Not only that, but for a car theiving ring that could steal 100's of cars to order, it's a small investment to make. Sure it might be cumbersome and expensive for Joe Blow on the street but not for an organised ring.

/me hopes the layer of filth on the Slothmobile™ will act as a thief deterrent!
__________________
Quote:
Originally Posted by Sloth
Filthy cars are awesome.
Amen Brother.
3Toed is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 08:19 PM   #15
Racecraft
they call me Tibbo
 
Racecraft's Avatar
 
Join Date: Dec 2004
Location: Brisbane
Posts: 6,163
Default

To put it in perspective the tool my mechanic uses is hand held, about 1 and 1/2 times the size of an EFTPOS pin pad, it all folds neatly into a standard size briefcase and is alittle under $12000 complete with all the pin adapters for about 25 cars....
All he needs is access to the terminal inside the car which even when locked takes the whole of about 15 seconds to access.
Now 12k is not much money when knocking off one car worth 50 grand is it?

The best deterent we have in Australia is the database of VIN and engine numbers.. It makes selling 'hot' cars and parts so much harder.. The problem lies with your modifications. Engrave everything and register them at your local police station, in QLd anyhow they even loan you the engraving tool...
Like Paul7v7 said there is really nothing you can do to stop a thief if he really wants something but aleast if you register and engrave everything should it ever turn up the police notify you
__________________

Racecraft is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 08:40 PM   #16
b2tf
not here much anymore
 
b2tf's Avatar
 
Join Date: Dec 2004
Location: Sthn NSW
Posts: 22,918
Default

Yes but you cant crack a tyre iron can you?

The tyre iron does the cracking!
__________________
2024 F150 XLT
b2tf is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 08:48 PM   #17
BlueRaven
Dual O2 sensors
 
BlueRaven's Avatar
 
Join Date: Dec 2004
Location: Brisneyworld
Posts: 1,437
Default

Quote:
Originally Posted by paul7v7
i have heard of this before. however no matter what there is in the market there is someone already trying ot by pass it. nothing will stop car theives. if they really want your car they will get it. even if they have to resort to a tow truck.
This is true... the better the car, the more desperate they will get. I've heard of thieves following cars to traffic lights and hijacking cars that way...
__________________
Black 1990 300zx Twin Turbo 5 Speed Manual :
Blue 2004 Mini Cooper S 6 Speed Manual - Yes, thank you Amanda. I realise now that you updated my signature to include your car. :
BlueRaven is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:02 PM   #18
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

Quote:
Originally Posted by BlueRaven
This is true... the better the car, the more desperate they will get. I've heard of thieves following cars to traffic lights and hijacking cars that way...
Doesn't happen really often, when it does the driver will mostly know the theif. Most wait till the car is home and the owner is asleep then walk in grab the keys and bye bye. The only real deterent is Quick trac (i know their broke), or the alternative system. Needs lots of time to disable, unit is mounted in 3 locatins in the car.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:06 PM   #19
Smoked
Burnin Rubber
 
Smoked's Avatar
 
Join Date: Jan 2005
Location: Melbourne, Victoria
Posts: 1,824
Default

I like to have a physical prevention, such as a kill switch. Had this on my mums Suzuki Vitara soft top, which had several attempts by low life scum to take. Usually they got annoyed and left, once we caught a guy trying desperatly to start the car.

Its effective, but again, its crackable.
__________________
2001 AUII Forte (LPG)
K&N Air Filter
Tickford Air Intake
***Coming Soon: Clear Side Repeaters***
Quote:
Originally Posted by The-ShowStoPPa
...dont get me wrong this 3.8v6 is pretty special, it does come with the popular shake rattle and roll option and the auto compliments this with the ever popular snap crackle and pop feature
Smoked is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:07 PM   #20
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

Quote:
Originally Posted by Racecraft
To put it in perspective the tool my mechanic uses is hand held, about 1 and 1/2 times the size of an EFTPOS pin pad, it all folds neatly into a standard size briefcase and is alittle under $12000 complete with all the pin adapters for about 25 cars....
All he needs is access to the terminal inside the car which even when locked takes the whole of about 15 seconds to access.
Now 12k is not much money when knocking off one car worth 50 grand is it?

The best deterent we have in Australia is the database of VIN and engine numbers.. It makes selling 'hot' cars and parts so much harder.. The problem lies with your modifications. Engrave everything and register them at your local police station, in QLd anyhow they even loan you the engraving tool...
Like Paul7v7 said there is really nothing you can do to stop a thief if he really wants something but aleast if you register and engrave everything should it ever turn up the police notify you
And how many cars dont have a factory alarm where if a window is popped or a door opened (When locked) an alarm of sorts is activated, oh how easy it is for them to access a car. Heard of a similar setup used to steal subaru's, althought the unit was worth about $5ok. If there is a market for it & money to be made people will develope ways around thing's.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:12 PM   #21
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

Quote:
Originally Posted by XRQTOR
Doesn't happen really often, when it does the driver will mostly know the theif. Most wait till the car is home and the owner is asleep then walk in grab the keys and bye bye. The only real deterent is Quick trac (i know their broke), or the alternative system. Needs lots of time to disable, unit is mounted in 3 locatins in the car.
Quick Trac has lots of limitations, but there are better alternatives, especially if your prepared to pay the up front costs. : Tracking will not be a deterent but it will greatly increase the chances of recovery and capture/conviction. there is lots more subtle things you can do than kill an engine which is frowned upon by police unless under their instruction. :
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:15 PM   #22
b2tf
not here much anymore
 
b2tf's Avatar
 
Join Date: Dec 2004
Location: Sthn NSW
Posts: 22,918
Default

Quote:
Originally Posted by Smoked
I like to have a physical prevention, such as a kill switch. Had this on my mums Suzuki Vitara soft top, which had several attempts by low life scum to take. Usually they got annoyed and left, once we caught a guy trying desperatly to start the car.

Its effective, but again, its crackable.
Yeah, it is an olide but a goodie when it comes to stopping people. Thankfully ive never even had an attempted breakin on my car, but there is a killswitch on it, so im reasonably confident that even if they did get in (which wouldnt be that hard), they wouldnt be able to start it.
__________________
2024 F150 XLT
b2tf is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:24 PM   #23
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

Quote:
Originally Posted by RED_EL_XR8
Quick Trac has lots of limitations, but there are better alternatives, especially if your prepared to pay the up front costs. : Tracking will not be a deterent but it will greatly increase the chances of recovery and capture/conviction. there is lots more subtle things you can do than kill an engine which is frowned upon by police unless under their instruction. :
If a theif knows a car has a tracking device ie quicktrac they wont touch it. If they are capable of stealing the car they'll move on to a easier target why risk it. Limitation's, most of what you hear s rubbish like putting them in container's. Enlighten me to a better alternative, Pm if you like i would like to know.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:29 PM   #24
Captain Stubing
Looking for clues...
Donating Member3
 
Captain Stubing's Avatar
 
Join Date: Jan 2005
Location: Morayfield
Posts: 23,576
Default

There's some very smart and intelligent people out there, but there will always be a percentage who will use their powers for evil, rather than good! Some see it as a challenge, others for financial gain.
Captain Stubing is online now   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:30 PM   #25
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

Quote:
Originally Posted by back2thefutura
Yeah, it is an olide but a goodie when it comes to stopping people. Thankfully ive never even had an attempted breakin on my car, but there is a killswitch on it, so im reasonably confident that even if they did get in (which wouldnt be that hard), they wouldnt be able to start it.
The newer car electrics especially as they migrate to full buss systems will give secure remote control immobilisation options never dreamed of. The days of the toggle switch under the seat or dash are numbered.
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:30 PM   #26
Racecraft
they call me Tibbo
 
Racecraft's Avatar
 
Join Date: Dec 2004
Location: Brisbane
Posts: 6,163
Default

Does quicktrac work on GPS? GPS is so easy to scramble I doubt a decent crook would care... We use 7 satellites just for Brisbane and the system can loose cars quite easily..

They would want to use some super boosters to pin point a car with GPS only
__________________

Racecraft is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:31 PM   #27
Racecraft
they call me Tibbo
 
Racecraft's Avatar
 
Join Date: Dec 2004
Location: Brisbane
Posts: 6,163
Default

I cant believe i am saying this but as the thieves move towards technology the old trusty "Club" lock will come back into its own
__________________

Racecraft is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:37 PM   #28
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

Quote:
Originally Posted by swanny
There's some very smart and intelligent people out there, but there will always be a percentage who will use their powers for evil, rather than good! Some see it as a challenge, others for financial gain.
Spot on.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:38 PM   #29
XRQTOR
Banned
 
XRQTOR's Avatar
 
Join Date: Dec 2004
Location: Livin On The Edge
Posts: 7,354
Default

Quote:
Originally Posted by Racecraft
I cant believe i am saying this but as the thieves move towards technology the old trusty "Club" lock will come back into its own
Lol, takes 5 seconds to cut throught the steering wheel and remove it.
XRQTOR is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2005, 09:39 PM   #30
RED_EL_XR8
Banned
 
RED_EL_XR8's Avatar
 
Join Date: Dec 2004
Location: Not suffering Fools Gladly!!
Posts: 2,864
Default

Quote:
Originally Posted by Racecraft
Does quicktrac work on GPS? GPS is so easy to scramble I doubt a decent crook would care... We use 7 satellites just for Brisbane and the system can loose cars quite easily..

They would want to use some super boosters to pin point a car with GPS only
quick trac is hybrid mostly radio technology.

GPS wont work in basement car parks, or some freeway tunnels and is dubious in the urban canyon environment. But a good system with fast establish GPS unit will still give lots of locations.

The achilles heal of Quicktrac was it limited range it only barely covers some outer suburbs.

Hybrid GPS/GSM-GPRS systems offer the best all over coverage. And if the system installed in a steathy manner there will be no knowledge of its existance or a rush to disable it.
RED_EL_XR8 is offline   Reply With Quote Multi-Quote with this Post
Reply


Forum Jump


All times are GMT +11. The time now is 09:47 AM.


Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Other than what is legally copyrighted by the respective owners, this site is copyright www.fordforums.com.au
Positive SSL