Hacker News new | past | comments | ask | show | jobs | submit login

The principle of the classical mechanical key is falling in pieces as well. Take some pictures of any key and one can make a double of it.

The idea of such a master key is incredibly stupid. It could also have been reversed engineered with an autopsy of a lock. The people who come up with such idea don't merit the trust and responsibility given to then.




Most RFID systems are similarly vulnerable. All HID iClass systems (supposedly smart-card based) use the same cryptographic key, which you can dump out of the memory of any reader if you are so inclined. The ID numbers of badges are printed on them, and this is usually enough to program a new badge as a clone or do some SDR trickery to imitate it.

But let's not forget that tailgating will get you past pretty much anything that isn't a turnstile. Turnstiles are really only in elevator lobbies, so if you can find a legitimate reason to be in some other part of the building you can just follow a legitimate user through any door, no matter how secure its locking mechanism. And failing that, almost no one properly authenticates cleaning staff or contractors.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: