2010-02-21 08:47:22 +08:00
//-----------------------------------------------------------------------------
// Copyright (C) 2010 iZsh <izsh at fail0verflow.com>
2012-06-21 01:15:21 +08:00
// Modified 2010-2012 by <adrian -at- atrox.at>
2012-05-29 20:22:08 +08:00
// Modified 2012 by <vsza at vsza.hu>
2018-02-01 22:19:47 +08:00
// Modfified 2018 by <iceman>
2010-02-21 08:47:22 +08:00
//
// This code is licensed to you under the terms of the GNU GPL, version 2 or,
// at your option, any later version. See the LICENSE.txt file for the text of
// the license.
//-----------------------------------------------------------------------------
// High frequency ISO15693 commands
//-----------------------------------------------------------------------------
2010-10-19 22:25:17 +08:00
// There are three basic operation modes, depending on which device (proxmark/pc)
// the signal processing, (de)modulation, transmission protocol and logic is done.
// Mode 1:
// All steps are done on the proxmark, the output of the commands is returned via
// USB-debug-print commands.
2019-03-09 15:59:13 +08:00
// Mode 2:
2010-10-19 22:25:17 +08:00
// The protocol is done on the PC, passing only Iso15693 data frames via USB. This
// allows direct communication with a tag on command level
// Mode 3:
// The proxmark just samples the antenna and passes this "analog" data via USB to
// the client. Signal Processing & decoding is done on the pc. This is the slowest
2019-03-09 15:59:13 +08:00
// variant, but offers the possibility to analyze the waveforms directly.
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
# include "cmdhf15.h"
2019-08-08 22:57:33 +08:00
# include <ctype.h>
# include "cmdparser.h" // command_t
# include "commonutil.h" // ARRAYLEN
# include "comms.h" // clearCommandBuffer
# include "cmdtrace.h"
# include "iso15693tools.h"
2019-11-26 02:53:06 +08:00
# include "crypto/libpcrypto.h"
2019-08-08 22:57:33 +08:00
# include "graph.h"
# include "crc16.h" // iso15 crc
# include "cmddata.h" // getsamples
2019-08-21 20:41:33 +08:00
# include "fileutils.h" // savefileEML
2019-08-08 22:57:33 +08:00
2019-03-10 06:35:06 +08:00
# define FrameSOF Iso15693FrameSOF
# define Logic0 Iso15693Logic0
# define Logic1 Iso15693Logic1
# define FrameEOF Iso15693FrameEOF
2010-10-19 22:25:17 +08:00
2019-04-09 16:12:15 +08:00
# ifndef Crc15
# define Crc15(data, len) Crc16ex(CRC_15693, (data), (len))
# endif
# ifndef CheckCrc15
# define CheckCrc15(data, len) check_crc(CRC_15693, (data), (len))
# endif
# ifndef AddCrc15
# define AddCrc15(data, len) compute_crc(CRC_15693, (data), (len), (data)+(len), (data)+(len)+1)
# endif
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
2020-04-03 20:07:32 +08:00
typedef struct {
uint8_t lock ;
uint8_t block [ 4 ] ;
} t15memory_t ;
2019-03-09 15:59:13 +08:00
// structure and database for uid -> tagtype lookups
typedef struct {
2019-03-10 06:35:06 +08:00
uint64_t uid ;
int mask ; // how many MSB bits used
2019-04-10 16:21:42 +08:00
const char * desc ;
2019-03-09 15:59:13 +08:00
} productName ;
2010-10-19 22:25:17 +08:00
2020-04-03 20:07:32 +08:00
2010-10-19 22:25:17 +08:00
const productName uidmapping [ ] = {
2015-01-08 04:06:15 +08:00
2019-03-10 06:35:06 +08:00
// UID, #significant Bits, "Vendor(+Product)"
{ 0xE001000000000000LL , 16 , " Motorola UK " } ,
// E0 02 xx
// 02 = ST Microelectronics
// XX = IC id (Chip ID Family)
{ 0xE002000000000000LL , 16 , " ST Microelectronics SA France " } ,
{ 0xE002050000000000LL , 24 , " ST Microelectronics; LRI64 [IC id = 05] " } ,
{ 0xE002080000000000LL , 24 , " ST Microelectronics; LRI2K [IC id = 08] " } ,
{ 0xE0020A0000000000LL , 24 , " ST Microelectronics; LRIS2K [IC id = 10] " } ,
{ 0xE002440000000000LL , 24 , " ST Microelectronics; LRIS64K [IC id = 68] " } ,
{ 0xE003000000000000LL , 16 , " Hitachi, Ltd Japan " } ,
// E0 04 xx
// 04 = Manufacturer code (Philips/NXP)
// XX = IC id (Chip ID Family)
//I-Code SLI SL2 ICS20 [IC id = 01]
//I-Code SLI-S [IC id = 02]
//I-Code SLI-L [IC id = 03]
//I-Code SLIX [IC id = 01 + bit36 set to 1 (starting from bit0 - different from normal SLI)]
2019-11-22 19:55:09 +08:00
//I-Code SLIX2 [IC id = 01 + bit35 set to 1 + bit36 set to 0]
2019-03-10 06:35:06 +08:00
//I-Code SLIX-S [IC id = 02 + bit36 set to 1]
//I-Code SLIX-L [IC id = 03 + bit36 set to 1]
{ 0xE004000000000000LL , 16 , " NXP Semiconductors Germany (Philips) " } ,
2019-11-22 19:55:09 +08:00
{ 0xE004010000000000LL , 24 , " NXP(Philips); IC SL2 ICS20/ICS21(SLI) ICS2002/ICS2102(SLIX) ICS2602(SLIX2) " } ,
2019-03-10 06:35:06 +08:00
{ 0xE004020000000000LL , 24 , " NXP(Philips); IC SL2 ICS53/ICS54(SLI-S) ICS5302/ICS5402(SLIX-S) " } ,
{ 0xE004030000000000LL , 24 , " NXP(Philips); IC SL2 ICS50/ICS51(SLI-L) ICS5002/ICS5102(SLIX-L) " } ,
// E0 05 XX .. .. ..
// 05 = Manufacturer code (Infineon)
// XX = IC id (Chip ID Family)
{ 0xE005000000000000LL , 16 , " Infineon Technologies AG Germany " } ,
{ 0xE005A10000000000LL , 24 , " Infineon; SRF55V01P [IC id = 161] plain mode 1kBit " } ,
{ 0xE005A80000000000LL , 24 , " Infineon; SRF55V01P [IC id = 168] pilot series 1kBit " } ,
{ 0xE005400000000000LL , 24 , " Infineon; SRF55V02P [IC id = 64] plain mode 2kBit " } ,
{ 0xE005000000000000LL , 24 , " Infineon; SRF55V10P [IC id = 00] plain mode 10KBit " } ,
{ 0xE005500000000000LL , 24 , " Infineon; SRF55V02S [IC id = 80] secure mode 2kBit " } ,
{ 0xE005100000000000LL , 24 , " Infineon; SRF55V10S [IC id = 16] secure mode 10KBit " } ,
{ 0xE0051E0000000000LL , 23 , " Infineon; SLE66r01P [IC id = 3x = My-d Move or My-d move NFC] " } ,
{ 0xE005200000000000LL , 21 , " Infineon; SLE66r01P [IC id = 3x = My-d Move or My-d move NFC] " } ,
{ 0xE006000000000000LL , 16 , " Cylink USA " } ,
// E0 07 xx
// 07 = Texas Instruments
// XX = from bit 41 to bit 43 = product configuration - from bit 44 to bit 47 IC id (Chip ID Family)
//Tag IT RFIDType-I Plus, 2kBit, TI Inlay
//Tag-it HF-I Plus Inlay [IC id = 00] -> b'0000 000 2kBit
//Tag-it HF-I Plus Chip [IC id = 64] -> b'1000 000 2kBit
//Tag-it HF-I Standard Chip / Inlays [IC id = 96] -> b'1100 000 256Bit
//Tag-it HF-I Pro Chip / Inlays [IC id = 98] -> b'1100 010 256Bit, Password protection
{ 0xE007000000000000LL , 16 , " Texas Instrument France " } ,
{ 0xE007000000000000LL , 20 , " Texas Instrument; Tag-it HF-I Plus Inlay; 64x32bit " } ,
{ 0xE007100000000000LL , 20 , " Texas Instrument; Tag-it HF-I Plus Chip; 64x32bit " } ,
{ 0xE007800000000000LL , 23 , " Texas Instrument; Tag-it HF-I Plus (RF-HDT-DVBB tag or Third Party Products) " } ,
{ 0xE007C00000000000LL , 23 , " Texas Instrument; Tag-it HF-I Standard; 8x32bit " } ,
{ 0xE007C40000000000LL , 23 , " Texas Instrument; Tag-it HF-I Pro; 8x23bit; password " } ,
{ 0xE008000000000000LL , 16 , " Fujitsu Limited Japan " } ,
{ 0xE009000000000000LL , 16 , " Matsushita Electronics Corporation, Semiconductor Company Japan " } ,
{ 0xE00A000000000000LL , 16 , " NEC Japan " } ,
{ 0xE00B000000000000LL , 16 , " Oki Electric Industry Co. Ltd Japan " } ,
{ 0xE00C000000000000LL , 16 , " Toshiba Corp. Japan " } ,
{ 0xE00D000000000000LL , 16 , " Mitsubishi Electric Corp. Japan " } ,
{ 0xE00E000000000000LL , 16 , " Samsung Electronics Co. Ltd Korea " } ,
{ 0xE00F000000000000LL , 16 , " Hynix / Hyundai, Korea " } ,
{ 0xE010000000000000LL , 16 , " LG-Semiconductors Co. Ltd Korea " } ,
{ 0xE011000000000000LL , 16 , " Emosyn-EM Microelectronics USA " } ,
{ 0xE012000000000000LL , 16 , " HID Corporation " } ,
{ 0xE012000000000000LL , 16 , " INSIDE Technology France " } ,
{ 0xE013000000000000LL , 16 , " ORGA Kartensysteme GmbH Germany " } ,
{ 0xE014000000000000LL , 16 , " SHARP Corporation Japan " } ,
{ 0xE015000000000000LL , 16 , " ATMEL France " } ,
{ 0xE016000000000000LL , 16 , " EM Microelectronic-Marin SA Switzerland (Skidata) " } ,
{ 0xE016040000000000LL , 24 , " EM-Marin SA (Skidata Keycard-eco); EM4034 [IC id = 01] (Read/Write - no AFI) " } ,
{ 0xE0160C0000000000LL , 24 , " EM-Marin SA (Skidata); EM4035 [IC id = 03] (Read/Write - replaced by 4233) " } ,
{ 0xE016100000000000LL , 24 , " EM-Marin SA (Skidata); EM4135 [IC id = 04] (Read/Write - replaced by 4233) 36x64bit start page 13 " } ,
{ 0xE016140000000000LL , 24 , " EM-Marin SA (Skidata); EM4036 [IC id = 05] 28pF " } ,
{ 0xE016180000000000LL , 24 , " EM-Marin SA (Skidata); EM4006 [IC id = 06] (Read Only) " } ,
{ 0xE0161C0000000000LL , 24 , " EM-Marin SA (Skidata); EM4133 [IC id = 07] 23,5pF (Read/Write) " } ,
{ 0xE016200000000000LL , 24 , " EM-Marin SA (Skidata); EM4033 [IC id = 08] 23,5pF (Read Only - no AFI / no DSFID / no security blocks) " } ,
{ 0xE016240000000000LL , 24 , " EM-Marin SA (Skidata); EM4233 [IC id = 09] 23,5pF CustomerID-102 " } ,
{ 0xE016280000000000LL , 24 , " EM-Marin SA (Skidata); EM4233 SLIC [IC id = 10] 23,5pF (1Kb flash memory - not provide High Security mode and QuietStorage feature) " } ,
{ 0xE0163C0000000000LL , 24 , " EM-Marin SA (Skidata); EM4237 [IC id = 15] 23,5pF " } ,
{ 0xE0167C0000000000LL , 24 , " EM-Marin SA (Skidata); EM4233 [IC id = 31] 95pF " } ,
{ 0xE016940000000000LL , 24 , " EM-Marin SA (Skidata); EM4036 [IC id = 37] 95pF 51x64bit " } ,
{ 0xE0169c0000000000LL , 24 , " EM-Marin SA (Skidata); EM4133 [IC id = 39] 95pF (Read/Write) " } ,
{ 0xE016A80000000000LL , 24 , " EM-Marin SA (Skidata); EM4233 SLIC [IC id = 42] 97pF " } ,
{ 0xE016BC0000000000LL , 24 , " EM-Marin SA (Skidata); EM4237 [IC id = 47] 97pF " } ,
{ 0xE017000000000000LL , 16 , " KSW Microtec GmbH Germany " } ,
{ 0xE018000000000000LL , 16 , " ZMD AG Germany " } ,
{ 0xE019000000000000LL , 16 , " XICOR, Inc. USA " } ,
{ 0xE01A000000000000LL , 16 , " Sony Corporation Japan Identifier Company Country " } ,
{ 0xE01B000000000000LL , 16 , " Malaysia Microelectronic Solutions Sdn. Bhd Malaysia " } ,
{ 0xE01C000000000000LL , 16 , " Emosyn USA " } ,
{ 0xE01D000000000000LL , 16 , " Shanghai Fudan Microelectronics Co. Ltd. P.R. China " } ,
{ 0xE01E000000000000LL , 16 , " Magellan Technology Pty Limited Australia " } ,
{ 0xE01F000000000000LL , 16 , " Melexis NV BO Switzerland " } ,
{ 0xE020000000000000LL , 16 , " Renesas Technology Corp. Japan " } ,
{ 0xE021000000000000LL , 16 , " TAGSYS France " } ,
{ 0xE022000000000000LL , 16 , " Transcore USA " } ,
{ 0xE023000000000000LL , 16 , " Shanghai belling corp., ltd. China " } ,
{ 0xE024000000000000LL , 16 , " Masktech Germany Gmbh Germany " } ,
{ 0xE025000000000000LL , 16 , " Innovision Research and Technology Plc UK " } ,
{ 0xE026000000000000LL , 16 , " Hitachi ULSI Systems Co., Ltd. Japan " } ,
{ 0xE027000000000000LL , 16 , " Cypak AB Sweden " } ,
{ 0xE028000000000000LL , 16 , " Ricoh Japan " } ,
{ 0xE029000000000000LL , 16 , " ASK France " } ,
{ 0xE02A000000000000LL , 16 , " Unicore Microsystems, LLC Russian Federation " } ,
{ 0xE02B000000000000LL , 16 , " Dallas Semiconductor/Maxim USA " } ,
{ 0xE02C000000000000LL , 16 , " Impinj, Inc. USA " } ,
{ 0xE02D000000000000LL , 16 , " RightPlug Alliance USA " } ,
{ 0xE02E000000000000LL , 16 , " Broadcom Corporation USA " } ,
{ 0xE02F000000000000LL , 16 , " MStar Semiconductor, Inc Taiwan, ROC " } ,
{ 0xE030000000000000LL , 16 , " BeeDar Technology Inc. USA " } ,
{ 0xE031000000000000LL , 16 , " RFIDsec Denmark " } ,
{ 0xE032000000000000LL , 16 , " Schweizer Electronic AG Germany " } ,
{ 0xE033000000000000LL , 16 , " AMIC Technology Corp Taiwan " } ,
{ 0xE034000000000000LL , 16 , " Mikron JSC Russia " } ,
{ 0xE035000000000000LL , 16 , " Fraunhofer Institute for Photonic Microsystems Germany " } ,
{ 0xE036000000000000LL , 16 , " IDS Microchip AG Switzerland " } ,
{ 0xE037000000000000LL , 16 , " Kovio USA " } ,
{ 0xE038000000000000LL , 16 , " HMT Microelectronic Ltd Switzerland Identifier Company Country " } ,
{ 0xE039000000000000LL , 16 , " Silicon Craft Technology Thailand " } ,
{ 0xE03A000000000000LL , 16 , " Advanced Film Device Inc. Japan " } ,
{ 0xE03B000000000000LL , 16 , " Nitecrest Ltd UK " } ,
{ 0xE03C000000000000LL , 16 , " Verayo Inc. USA " } ,
{ 0xE03D000000000000LL , 16 , " HID Global USA " } ,
{ 0xE03E000000000000LL , 16 , " Productivity Engineering Gmbh Germany " } ,
{ 0xE03F000000000000LL , 16 , " Austriamicrosystems AG (reserved) Austria " } ,
{ 0xE040000000000000LL , 16 , " Gemalto SA France " } ,
{ 0xE041000000000000LL , 16 , " Renesas Electronics Corporation Japan " } ,
{ 0xE042000000000000LL , 16 , " 3Alogics Inc Korea " } ,
{ 0xE043000000000000LL , 16 , " Top TroniQ Asia Limited Hong Kong " } ,
{ 0xE044000000000000LL , 16 , " Gentag Inc (USA) USA " } ,
2019-03-10 07:00:59 +08:00
{ 0 , 0 , " no tag-info available " } // must be the last entry
2010-10-19 22:25:17 +08:00
} ;
2020-01-02 04:19:59 +08:00
static int CmdHF15Help ( const char * Cmd ) ;
2020-04-01 21:54:59 +08:00
static int nxp_15693_print_signature ( uint8_t * uid , uint8_t * signature ) {
2020-04-04 18:17:55 +08:00
# define PUBLIC_ECDA_KEYLEN 33
const ecdsa_publickey_t nxp_15693_public_keys [ ] = {
{ " NXP Mifare Classic MFC1C14_x " , " 044F6D3F294DEA5737F0F46FFEE88A356EED95695DD7E0C27A591E6F6F65962BAF " } ,
{ " Manufacturer Mifare Classic MFC1C14_x " , " 046F70AC557F5461CE5052C8E4A7838C11C7A236797E8A0730A101837C004039C2 " } ,
{ " NXP ICODE DNA, ICODE SLIX2 " , " 048878A2A2D3EEC336B4F261A082BD71F9BE11C4E2E896648B32EFA59CEA6E59F0 " } ,
{ " NXP Public key " , " 04A748B6A632FBEE2C0897702B33BEA1C074998E17B84ACA04FF267E5D2C91F6DC " } ,
{ " NXP Ultralight Ev1 " , " 0490933BDCD6E99B4E255E3DA55389A827564E11718E017292FAF23226A96614B8 " } ,
{ " NXP NTAG21x (2013) " , " 04494E1A386D3D3CFE3DC10E5DE68A499B1C202DB5B132393E89ED19FE5BE8BC61 " } ,
{ " MICRON Public key " , " 04f971eda742a4a80d32dcf6a814a707cc3dc396d35902f72929fdcd698b3468f2 " } ,
} ;
/*
uint8_t nxp_15693_public_keys [ ] [ PUBLIC_ECDA_KEYLEN ] = {
// ICODE SLIX2 / DNA
{
0x04 , 0x88 , 0x78 , 0xA2 , 0xA2 , 0xD3 , 0xEE , 0xC3 ,
0x36 , 0xB4 , 0xF2 , 0x61 , 0xA0 , 0x82 , 0xBD , 0x71 ,
0xF9 , 0xBE , 0x11 , 0xC4 , 0xE2 , 0xE8 , 0x96 , 0x64 ,
0x8B , 0x32 , 0xEF , 0xA5 , 0x9C , 0xEA , 0x6E , 0x59 , 0xF0
} ,
// unknown. Needs identification
{
0x04 , 0x4F , 0x6D , 0x3F , 0x29 , 0x4D , 0xEA , 0x57 ,
0x37 , 0xF0 , 0xF4 , 0x6F , 0xFE , 0xE8 , 0x8A , 0x35 ,
0x6E , 0xED , 0x95 , 0x69 , 0x5D , 0xD7 , 0xE0 , 0xC2 ,
0x7A , 0x59 , 0x1E , 0x6F , 0x6F , 0x65 , 0x96 , 0x2B , 0xAF
} ,
// unknown. Needs identification
{
0x04 , 0xA7 , 0x48 , 0xB6 , 0xA6 , 0x32 , 0xFB , 0xEE ,
0x2C , 0x08 , 0x97 , 0x70 , 0x2B , 0x33 , 0xBE , 0xA1 ,
0xC0 , 0x74 , 0x99 , 0x8E , 0x17 , 0xB8 , 0x4A , 0xCA ,
0x04 , 0xFF , 0x26 , 0x7E , 0x5D , 0x2C , 0x91 , 0xF6 , 0xDC
} ,
// manufacturer public key
{
0x04 , 0x6F , 0x70 , 0xAC , 0x55 , 0x7F , 0x54 , 0x61 ,
0xCE , 0x50 , 0x52 , 0xC8 , 0xE4 , 0xA7 , 0x83 , 0x8C ,
0x11 , 0xC7 , 0xA2 , 0x36 , 0x79 , 0x7E , 0x8A , 0x07 ,
0x30 , 0xA1 , 0x01 , 0x83 , 0x7C , 0x00 , 0x40 , 0x39 , 0xC2
} ,
// MIKRON public key.
{
0x04 , 0xf9 , 0x71 , 0xed , 0xa7 , 0x42 , 0xa4 , 0xa8 ,
0x0d , 0x32 , 0xdc , 0xf6 , 0xa8 , 0x14 , 0xa7 , 0x07 ,
0xcc , 0x3d , 0xc3 , 0x96 , 0xd3 , 0x59 , 0x02 , 0xf7 ,
0x29 , 0x29 , 0xfd , 0xcd , 0x69 , 0x8b , 0x34 , 0x68 , 0xf2
}
} ;
*/
2020-04-01 21:54:59 +08:00
uint8_t i ;
int res ;
bool is_valid = false ;
for ( i = 0 ; i < ARRAYLEN ( nxp_15693_public_keys ) ; i + + ) {
2020-04-04 18:17:55 +08:00
int dl = 0 ;
uint8_t key [ PUBLIC_ECDA_KEYLEN ] ;
param_gethex_to_eol ( nxp_15693_public_keys [ i ] . value , 0 , key , PUBLIC_ECDA_KEYLEN , & dl ) ;
res = ecdsa_signature_r_s_verify ( MBEDTLS_ECP_DP_SECP128R1 , key , uid , 8 , signature , 32 , false ) ;
2020-04-01 21:54:59 +08:00
is_valid = ( res = = 0 ) ;
if ( is_valid )
break ;
}
PrintAndLogEx ( NORMAL , " " ) ;
if ( is_valid = = false ) {
PrintAndLogEx ( SUCCESS , " Signature verification " _RED_ ( " failed " ) ) ;
return PM3_ESOFT ;
}
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( INFO , " --- " _CYAN_ ( " Tag Signature " ) ) ;
PrintAndLogEx ( INFO , " IC signature public key name: %s " , nxp_15693_public_keys [ i ] . desc ) ;
PrintAndLogEx ( INFO , " IC signature public key value: %s " , nxp_15693_public_keys [ i ] . value ) ;
PrintAndLogEx ( INFO , " Elliptic curve parameters: NID_secp128r1 " ) ;
PrintAndLogEx ( INFO , " TAG IC Signature: %s " , sprint_hex ( signature , 32 ) ) ;
PrintAndLogEx ( SUCCESS , " Signature verified: " _GREEN_ ( " successful " ) ) ;
2020-04-01 21:54:59 +08:00
return PM3_SUCCESS ;
}
2019-11-27 04:11:02 +08:00
// fast method to just read the UID of a tag (collision detection not supported)
2019-03-10 06:35:06 +08:00
// *buf should be large enough to fit the 64bit uid
2019-11-27 04:11:02 +08:00
// returns 1 if succeeded
static bool getUID ( uint8_t * buf ) {
2017-09-04 19:56:57 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-04-19 23:03:39 +08:00
uint8_t data [ 5 ] ;
data [ 0 ] = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_INVENTORY | ISO15_REQINV_SLOT1 ;
data [ 1 ] = ISO15_CMD_INVENTORY ;
data [ 2 ] = 0 ; // mask length
2017-09-02 02:34:17 +08:00
2019-04-19 23:03:39 +08:00
AddCrc15 ( data , 3 ) ;
2017-09-04 19:56:57 +08:00
2019-03-10 06:35:06 +08:00
uint8_t retry ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
// don't give up the at the first try
for ( retry = 0 ; retry < 3 ; retry + + ) {
2017-08-31 21:16:12 +08:00
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , sizeof ( data ) , 1 , 1 , data , sizeof ( data ) ) ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
if ( WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-03-09 15:59:13 +08:00
2019-04-18 05:44:48 +08:00
uint8_t resplen = resp . oldarg [ 0 ] ;
if ( resplen > = 12 & & CheckCrc15 ( resp . data . asBytes , 12 ) ) {
memcpy ( buf , resp . data . asBytes + 2 , 8 ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return true ;
2019-03-10 06:35:06 +08:00
}
}
} // retry
2019-03-09 15:59:13 +08:00
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return false ;
2010-10-19 22:25:17 +08:00
}
// get a product description based on the UID
2019-03-10 06:35:06 +08:00
// uid[8] tag uid
2019-03-09 15:59:13 +08:00
// returns description of the best match
2019-04-10 16:21:42 +08:00
static const char * getTagInfo_15 ( uint8_t * uid ) {
2019-03-10 06:35:06 +08:00
uint64_t myuid , mask ;
int i = 0 , best = - 1 ;
memcpy ( & myuid , uid , sizeof ( uint64_t ) ) ;
while ( uidmapping [ i ] . mask > 0 ) {
2019-03-19 06:43:44 +08:00
mask = ( ~ 0ULL ) < < ( 64 - uidmapping [ i ] . mask ) ;
2019-03-10 06:35:06 +08:00
if ( ( myuid & mask ) = = uidmapping [ i ] . uid ) {
if ( best = = - 1 ) {
best = i ;
} else {
if ( uidmapping [ i ] . mask > uidmapping [ best ] . mask ) {
2019-03-10 07:00:59 +08:00
best = i ;
2019-03-10 06:35:06 +08:00
}
}
}
i + + ;
}
if ( best > = 0 )
return uidmapping [ best ] . desc ;
return uidmapping [ i ] . desc ;
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
}
2012-05-17 21:25:50 +08:00
// return a clear-text message to an errorcode
2019-04-10 16:21:42 +08:00
static const char * TagErrorStr ( uint8_t error ) {
2019-03-10 06:35:06 +08:00
switch ( error ) {
2019-03-10 07:00:59 +08:00
case 0x01 :
return " The command is not supported " ;
case 0x02 :
2019-11-27 04:11:02 +08:00
return " The command is not recognized " ;
2019-03-10 07:00:59 +08:00
case 0x03 :
return " The option is not supported. " ;
case 0x0f :
return " Unknown error. " ;
case 0x10 :
return " The specified block is not available (doesn't exist). " ;
case 0x11 :
return " The specified block is already -locked and thus cannot be locked again " ;
case 0x12 :
return " The specified block is locked and its content cannot be changed. " ;
case 0x13 :
return " The specified block was not successfully programmed. " ;
case 0x14 :
return " The specified block was not successfully locked. " ;
default :
return " Reserved for Future Use or Custom command error. " ;
2019-03-10 06:35:06 +08:00
}
2010-10-19 22:25:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_demod ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Tries to demodulate / decode ISO15693, from downloaded samples. \n "
2019-03-10 07:00:59 +08:00
" Gather samples with 'hf 15 read' / 'hf 15 record' " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_samples ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Acquire samples as Reader (enables carrier, send inquiry \n "
2019-03-10 07:00:59 +08:00
" and download it to graphbuffer. Try 'hf 15 demod' to try to demodulate/decode signal " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_info ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Uses the optional command 'get_systeminfo' 0x2B to try and extract information \n "
2019-03-10 07:00:59 +08:00
" command may fail, depending on tag. \n "
" defaults to '1 out of 4' mode \n "
" \n "
" Usage: hf 15 info [options] <uid|s|u|*> \n "
" Options: \n "
" \t -2 use slower '1 out of 256' mode \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" Examples: \n "
" \t hf 15 info u " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 04:48:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_record ( void ) {
2019-11-22 19:55:09 +08:00
PrintAndLogEx ( NORMAL , " Record activity without enabling carrier " ) ;
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_reader ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " This command identifies a ISO 15693 tag \n "
2019-03-10 07:00:59 +08:00
" \n "
" Usage: hf 15 reader [h] \n "
" Options: \n "
" \t h this help \n "
" \n "
" Example: \n "
" \t hf 15 reader " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_sim ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Usage: hf 15 sim <UID> \n "
2019-03-10 07:00:59 +08:00
" \n "
" Example: \n "
" \t hf 15 sim E016240000000000 " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_findafi ( void ) {
2019-11-22 19:55:09 +08:00
PrintAndLogEx ( NORMAL , " This command attempts to brute force AFI of an ISO15693 tag \n "
" \n "
" Usage: hf 15 findafi " ) ;
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-11-26 02:53:06 +08:00
static int usage_15_writeafi ( void ) {
PrintAndLogEx ( NORMAL , " Usage: hf 15 writeafi <uid|u|*> <afi#> \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" \t afi#: AFI number 0-255 " ) ;
return PM3_SUCCESS ;
}
static int usage_15_writedsfid ( void ) {
PrintAndLogEx ( NORMAL , " Usage: hf 15 writedsfid <uid|u|*> <dsfid#> \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" \t dsfid#: DSFID number 0-255 " ) ;
return PM3_SUCCESS ;
}
2019-04-10 19:06:05 +08:00
static int usage_15_dump ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " This command dumps the contents of a ISO-15693 tag and save it to file \n "
2019-03-10 07:00:59 +08:00
" \n "
2019-11-22 19:55:09 +08:00
" Usage: hf 15 dump [h] <f filename> \n "
2019-03-10 07:00:59 +08:00
" Options: \n "
" \t h this help \n "
" \t f <name> filename, if no <name> UID will be used as filename \n "
" \n "
" Example: \n "
" \t hf 15 dump f \n "
" \t hf 15 dump f mydump " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 05:45:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_restore ( void ) {
2019-04-10 16:21:42 +08:00
const char * options [ ] [ 2 ] = {
2018-03-01 23:55:13 +08:00
{ " h " , " this help " } ,
{ " -2 " , " use slower '1 out of 256' mode " } ,
{ " -o " , " set OPTION Flag (needed for TI) " } ,
{ " r <NUM> " , " numbers of retries on error, default is 3 " } ,
2020-03-22 03:38:58 +08:00
{ " u <UID> " , " load hf-15-<UID>-dump.bin " } ,
2018-03-01 23:55:13 +08:00
{ " f <filename> " , " load <filename> " } ,
{ " b <block size> " , " block size, default is 4 " }
} ;
PrintAndLogEx ( NORMAL , " Usage: hf 15 restore [-2] [-o] [h] [r <NUM>] [u <UID>] [f <filename>] [b <block size>] " ) ;
PrintAndLogOptions ( options , 7 , 3 ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 05:45:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_raw ( void ) {
2019-04-10 16:21:42 +08:00
const char * options [ ] [ 2 ] = {
2018-03-01 23:55:13 +08:00
{ " -r " , " do not read response " } ,
{ " -2 " , " use slower '1 out of 256' mode " } ,
{ " -c " , " calculate and append CRC " } ,
2019-11-27 21:11:43 +08:00
{ " -p " , " leave the signal field ON " } ,
2018-03-01 23:55:13 +08:00
{ " " , " Tip: turn on debugging for verbose output " } ,
} ;
PrintAndLogEx ( NORMAL , " Usage: hf 15 raw [-r] [-2] [-c] <0A 0B 0C ... hex> \n " ) ;
PrintAndLogOptions ( options , 4 , 3 ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 05:45:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_read ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Usage: hf 15 read [options] <uid|s|u|*> <page#> \n "
2019-03-10 07:00:59 +08:00
" Options: \n "
" \t -2 use slower '1 out of 256' mode \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" \t page#: page number 0-255 " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 05:45:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_write ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Usage: hf 15 write [options] <uid|s|u|*> <page#> <hexdata> \n "
2019-03-10 07:00:59 +08:00
" Options: \n "
" \t -2 use slower '1 out of 256' mode \n "
" \t -o set OPTION Flag (needed for TI) \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" \t page#: page number 0-255 \n "
" \t hexdata: data to be written eg AA BB CC DD " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-05 05:45:35 +08:00
}
2019-04-10 19:06:05 +08:00
static int usage_15_readmulti ( void ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " Usage: hf 15 readmulti [options] <uid|s|u|*> <start#> <count#> \n "
2019-03-10 07:00:59 +08:00
" Options: \n "
" \t -2 use slower '1 out of 256' mode \n "
" \t uid (either): \n "
" \t <8B hex> full UID eg E011223344556677 \n "
" \t u unaddressed mode \n "
" \t * scan for tag \n "
" \t start#: page number to start 0-255 \n "
" \t count#: number of pages " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2017-09-02 02:34:17 +08:00
}
2019-07-07 16:52:00 +08:00
static int usage_15_csetuid ( void ) {
PrintAndLogEx ( NORMAL , " Set UID for magic Chinese card (only works with such cards) \n "
" \n "
" Usage: hf 15 csetuid <uid> \n "
" Options: \n "
" \t uid : <8B hex> full UID eg E011223344556677 \n "
" \n "
" Example: \n "
" \t hf 15 csetuid E011223344556677 " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2019-07-07 16:52:00 +08:00
}
2019-04-13 00:41:14 +08:00
/**
* parses common HF 15 CMD parameters and prepares some data structures
* Parameters :
* * * cmd command line
*/
2019-11-27 04:11:02 +08:00
static bool prepareHF15Cmd ( char * * cmd , uint16_t * reqlen , uint8_t * arg1 , uint8_t * req , uint8_t iso15cmd ) { // reqlen arg0
2019-04-13 00:41:14 +08:00
int temp ;
uint8_t uid [ 8 ] = { 0x00 } ;
2019-04-19 23:03:39 +08:00
uint32_t tmpreqlen = 0 ;
2019-04-13 00:41:14 +08:00
// strip
while ( * * cmd = = ' ' | | * * cmd = = ' \t ' ) ( * cmd ) + + ;
if ( strstr ( * cmd , " -2 " ) = = * cmd ) {
2019-04-19 23:03:39 +08:00
* arg1 = 0 ; // use 1of256
2019-04-13 00:41:14 +08:00
( * cmd ) + = 2 ;
}
// strip
while ( * * cmd = = ' ' | | * * cmd = = ' \t ' ) ( * cmd ) + + ;
if ( strstr ( * cmd , " -o " ) = = * cmd ) {
2019-04-19 23:03:39 +08:00
req [ tmpreqlen ] = ISO15_REQ_OPTION ;
2019-04-13 00:41:14 +08:00
( * cmd ) + = 2 ;
}
// strip
while ( * * cmd = = ' ' | | * * cmd = = ' \t ' ) ( * cmd ) + + ;
switch ( * * cmd ) {
case 0 :
PrintAndLogEx ( WARNING , " missing addr " ) ;
2019-11-27 04:11:02 +08:00
return false ;
2019-04-13 00:41:14 +08:00
break ;
case ' u ' :
case ' U ' :
// unaddressed mode may not be supported by all vendors
2019-04-19 23:03:39 +08:00
req [ tmpreqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY ;
req [ tmpreqlen + + ] = iso15cmd ;
2019-04-13 00:41:14 +08:00
break ;
case ' * ' :
// we scan for the UID ourself
2019-04-19 23:03:39 +08:00
req [ tmpreqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ tmpreqlen + + ] = iso15cmd ;
2019-04-13 00:41:14 +08:00
if ( ! getUID ( uid ) ) {
PrintAndLogEx ( WARNING , " No tag found " ) ;
2019-11-27 04:11:02 +08:00
return false ;
2019-04-13 00:41:14 +08:00
}
2019-04-19 23:03:39 +08:00
memcpy ( & req [ tmpreqlen ] , uid , sizeof ( uid ) ) ;
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Detected UID " _GREEN_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
2019-04-19 23:03:39 +08:00
tmpreqlen + = sizeof ( uid ) ;
2019-04-13 00:41:14 +08:00
break ;
default :
2019-04-19 23:03:39 +08:00
req [ tmpreqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ tmpreqlen + + ] = iso15cmd ;
2019-04-13 00:41:14 +08:00
// parse UID
for ( int i = 0 ; i < 8 & & ( * cmd ) [ i * 2 ] & & ( * cmd ) [ i * 2 + 1 ] ; i + + ) {
sscanf ( ( char [ ] ) { ( * cmd ) [ i * 2 ] , ( * cmd ) [ i * 2 + 1 ] , 0 } , " %X " , & temp ) ;
uid [ 7 - i ] = temp & 0xff ;
}
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Using UID " _GREEN_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
2019-04-19 23:03:39 +08:00
memcpy ( & req [ tmpreqlen ] , uid , sizeof ( uid ) ) ;
tmpreqlen + = sizeof ( uid ) ;
2019-04-13 00:41:14 +08:00
break ;
}
// skip to next space
while ( * * cmd ! = ' ' & & * * cmd ! = ' \t ' ) ( * cmd ) + + ;
// skip over the space
while ( * * cmd = = ' ' | | * * cmd = = ' \t ' ) ( * cmd ) + + ;
2019-04-19 23:03:39 +08:00
* reqlen = tmpreqlen ;
2019-11-27 04:11:02 +08:00
return true ;
2019-04-13 00:41:14 +08:00
}
2010-10-19 22:25:17 +08:00
// Mode 3
2017-09-02 02:34:17 +08:00
//helptext
2019-04-13 00:41:14 +08:00
static int CmdHF15Demod ( const char * Cmd ) {
2019-03-10 06:35:06 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( cmdp = = ' h ' ) return usage_15_demod ( ) ;
// The sampling rate is 106.353 ksps/s, for T = 18.8 us
int i , j ;
int max = 0 , maxPos = 0 ;
int skip = 4 ;
2019-11-27 04:11:02 +08:00
if ( GraphTraceLen < 1000 ) return PM3_ESOFT ;
2019-03-10 06:35:06 +08:00
// First, correlate for SOF
for ( i = 0 ; i < 1000 ; i + + ) {
int corr = 0 ;
for ( j = 0 ; j < ARRAYLEN ( FrameSOF ) ; j + = skip ) {
corr + = FrameSOF [ j ] * GraphBuffer [ i + ( j / skip ) ] ;
}
if ( corr > max ) {
max = corr ;
maxPos = i ;
}
}
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " SOF at %d, correlation %zu " , maxPos , max / ( ARRAYLEN ( FrameSOF ) / skip ) ) ;
2019-03-10 06:35:06 +08:00
i = maxPos + ARRAYLEN ( FrameSOF ) / skip ;
int k = 0 ;
uint8_t outBuf [ 20 ] ;
memset ( outBuf , 0 , sizeof ( outBuf ) ) ;
uint8_t mask = 0x01 ;
for ( ; ; ) {
int corr0 = 0 , corr1 = 0 , corrEOF = 0 ;
for ( j = 0 ; j < ARRAYLEN ( Logic0 ) ; j + = skip ) {
corr0 + = Logic0 [ j ] * GraphBuffer [ i + ( j / skip ) ] ;
}
for ( j = 0 ; j < ARRAYLEN ( Logic1 ) ; j + = skip ) {
corr1 + = Logic1 [ j ] * GraphBuffer [ i + ( j / skip ) ] ;
}
for ( j = 0 ; j < ARRAYLEN ( FrameEOF ) ; j + = skip ) {
corrEOF + = FrameEOF [ j ] * GraphBuffer [ i + ( j / skip ) ] ;
}
// Even things out by the length of the target waveform.
corr0 * = 4 ;
corr1 * = 4 ;
if ( corrEOF > corr1 & & corrEOF > corr0 ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " EOF at %d " , i ) ;
2019-03-10 06:35:06 +08:00
break ;
} else if ( corr1 > corr0 ) {
i + = ARRAYLEN ( Logic1 ) / skip ;
outBuf [ k ] | = mask ;
} else {
i + = ARRAYLEN ( Logic0 ) / skip ;
}
mask < < = 1 ;
if ( mask = = 0 ) {
k + + ;
mask = 0x01 ;
}
if ( ( i + ( int ) ARRAYLEN ( FrameEOF ) ) > = GraphTraceLen ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " ran off end! " ) ;
2019-03-10 06:35:06 +08:00
break ;
}
}
if ( mask ! = 0x01 ) {
2019-07-14 18:17:34 +08:00
PrintAndLogEx ( WARNING , " Warning, uneven octet! (discard extra bits!) " ) ;
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " mask = %02x " , mask ) ;
2019-03-10 06:35:06 +08:00
}
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " %d octets " , k ) ;
2019-03-10 06:35:06 +08:00
for ( i = 0 ; i < k ; i + + )
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " # %2d: %02x " , i , outBuf [ i ] ) ;
2019-03-10 06:35:06 +08:00
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " CRC %04x " , Crc15 ( outBuf , k - 2 ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
}
2010-10-19 22:25:17 +08:00
// * Acquire Samples as Reader (enables carrier, sends inquiry)
2017-09-02 02:34:17 +08:00
//helptext
2019-04-13 00:41:14 +08:00
static int CmdHF15Samples ( const char * Cmd ) {
2019-03-10 06:35:06 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( cmdp = = ' h ' ) return usage_15_samples ( ) ;
2017-09-02 02:34:17 +08:00
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandNG ( CMD_HF_ISO15693_ACQ_RAW_ADC , NULL , 0 ) ;
2019-03-09 15:59:13 +08:00
2020-01-08 05:05:01 +08:00
getSamples ( 0 , true ) ;
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2010-10-19 22:25:17 +08:00
}
2019-11-26 02:53:06 +08:00
// Get NXP system information from SLIX2 tag/VICC
static int NxpSysInfo ( uint8_t * uid ) {
PacketResponseNG resp ;
uint8_t * recv ;
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
uint16_t reqlen ;
2020-01-02 04:22:01 +08:00
uint32_t status ;
2019-11-26 02:53:06 +08:00
uint8_t arg1 = 1 ;
if ( uid ! = NULL ) {
reqlen = 0 ;
req [ reqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ reqlen + + ] = ISO15_CMD_GETNXPSYSTEMINFO ;
req [ reqlen + + ] = 0x04 ; // IC manufacturer code
memcpy ( req + 3 , uid , 8 ) ; // add UID
reqlen + = 8 ;
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
//PrintAndLogEx(NORMAL, "cmd %s", sprint_hex(req, reqlen) );
clearCommandBuffer ( ) ;
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
PrintAndLogEx ( WARNING , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-11-26 02:53:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2020-01-02 04:22:01 +08:00
status = resp . oldarg [ 0 ] ;
2019-11-26 02:53:06 +08:00
if ( status < 2 ) {
PrintAndLogEx ( WARNING , " iso15693 card doesn't answer to NXP systeminfo command " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
recv = resp . data . asBytes ;
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
2020-01-08 05:05:01 +08:00
bool support_signature = ( recv [ 5 ] & 0x01 ) ;
2020-01-02 04:19:59 +08:00
bool support_easmode = ( recv [ 4 ] & 0x03 ) ;
2020-01-08 05:05:01 +08:00
2019-11-26 02:53:06 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
PrintAndLogEx ( NORMAL , " NXP SYSINFO : %s " , sprint_hex ( recv , 8 ) ) ;
PrintAndLogEx ( NORMAL , " Password protection configuration: " ) ;
2020-01-02 04:19:59 +08:00
PrintAndLogEx ( NORMAL , " * Page L read%s password protected " , ( ( recv [ 2 ] & 0x01 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Page L write%s password protected " , ( ( recv [ 2 ] & 0x02 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Page H read%s password protected " , ( ( recv [ 2 ] & 0x08 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Page H write%s password protected " , ( ( recv [ 2 ] & 0x20 ) ? " " : " not " ) ) ;
2019-11-26 02:53:06 +08:00
PrintAndLogEx ( NORMAL , " Lock bits: " ) ;
2020-01-02 04:19:59 +08:00
PrintAndLogEx ( NORMAL , " * AFI%s locked " , ( ( recv [ 3 ] & 0x01 ) ? " " : " not " ) ) ; // AFI lock bit
PrintAndLogEx ( NORMAL , " * EAS%s locked " , ( ( recv [ 3 ] & 0x02 ) ? " " : " not " ) ) ; // EAS lock bit
PrintAndLogEx ( NORMAL , " * DSFID%s locked " , ( ( recv [ 3 ] & 0x03 ) ? " " : " not " ) ) ; // DSFID lock bit
PrintAndLogEx ( NORMAL , " * Password protection configuration%s locked " , ( ( recv [ 3 ] & 0x04 ) ? " " : " not " ) ) ; // Password protection pointer address and access conditions lock bit
2019-11-26 02:53:06 +08:00
PrintAndLogEx ( NORMAL , " Features: " ) ;
2020-01-02 04:19:59 +08:00
PrintAndLogEx ( NORMAL , " * User memory password protection%s supported " , ( ( recv [ 4 ] & 0x01 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Counter feature%s supported " , ( ( recv [ 4 ] & 0x02 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * EAS ID%s supported by EAS ALARM command " , support_easmode ? " " : " not " ) ;
PrintAndLogEx ( NORMAL , " * EAS password protection%s supported " , ( ( recv [ 4 ] & 0x04 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * AFI password protection%s supported " , ( ( recv [ 4 ] & 0x10 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Extended mode%s supported by INVENTORY READ command " , ( ( recv [ 4 ] & 0x20 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * EAS selection%s supported by extended mode in INVENTORY READ command " , ( ( recv [ 4 ] & 0x40 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * READ SIGNATURE command%s supported " , support_signature ? " " : " not " ) ;
PrintAndLogEx ( NORMAL , " * Password protection for READ SIGNATURE command%s supported " , ( ( recv [ 5 ] & 0x02 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * STAY QUIET PERSISTENT command%s supported " , ( ( recv [ 5 ] & 0x03 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * ENABLE PRIVACY command%s supported " , ( ( recv [ 5 ] & 0x10 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * DESTROY command%s supported " , ( ( recv [ 5 ] & 0x20 ) ? " " : " not " ) ) ;
PrintAndLogEx ( NORMAL , " * Additional 32 bits feature flags are%s transmitted " , ( ( recv [ 5 ] & 0x80 ) ? " " : " not " ) ) ;
if ( support_easmode ) {
2019-11-26 02:53:06 +08:00
reqlen = 0 ;
req [ reqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ reqlen + + ] = ISO15_CMD_EASALARM ;
req [ reqlen + + ] = 0x04 ; // IC manufacturer code
memcpy ( req + 3 , uid , 8 ) ; // add UID
reqlen + = 8 ;
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
//PrintAndLogEx(NORMAL, "cmd %s", sprint_hex(req, reqlen) );
clearCommandBuffer ( ) ;
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
PrintAndLogEx ( WARNING , " iso15693 card select failed " ) ;
} else {
2020-01-02 04:22:01 +08:00
status = resp . oldarg [ 0 ] ;
2019-11-26 02:53:06 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
if ( status < 2 ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " EAS (Electronic Article Surveillance) is not active " ) ;
2019-11-26 02:53:06 +08:00
} else {
recv = resp . data . asBytes ;
if ( ! ( recv [ 0 ] & ISO15_RES_ERROR ) ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " EAS (Electronic Article Surveillance) is active. " ) ;
PrintAndLogEx ( INFO , " EAS sequence: %s " , sprint_hex ( recv + 1 , 32 ) ) ;
2019-11-26 02:53:06 +08:00
}
}
}
}
2020-01-02 04:19:59 +08:00
if ( support_signature ) {
2019-11-26 02:53:06 +08:00
// Check if we can also read the signature
reqlen = 0 ;
req [ reqlen + + ] | = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ reqlen + + ] = ISO15_CMD_READSIGNATURE ;
req [ reqlen + + ] = 0x04 ; // IC manufacturer code
memcpy ( req + 3 , uid , 8 ) ; // add UID
reqlen + = 8 ;
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
//PrintAndLogEx(NORMAL, "cmd %s", sprint_hex(req, reqlen) );
clearCommandBuffer ( ) ;
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
PrintAndLogEx ( WARNING , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-11-26 02:53:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2020-01-02 04:22:01 +08:00
status = resp . oldarg [ 0 ] ;
2019-11-26 02:53:06 +08:00
if ( status < 2 ) {
PrintAndLogEx ( WARNING , " iso15693 card doesn't answer to READ SIGNATURE command " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
recv = resp . data . asBytes ;
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
uint8_t signature [ 32 ] = { 0x00 } ;
memcpy ( signature , recv + 1 , 32 ) ;
2020-04-01 21:54:59 +08:00
nxp_15693_print_signature ( uid , signature ) ;
2019-11-26 02:53:06 +08:00
}
}
return PM3_SUCCESS ;
}
2017-09-05 04:48:35 +08:00
/**
* Commandline handling : HF15 CMD SYSINFO
* get system information from tag / VICC
*/
2019-04-13 00:41:14 +08:00
static int CmdHF15Info ( const char * Cmd ) {
2017-09-05 04:48:35 +08:00
2020-04-04 18:17:55 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( strlen ( Cmd ) < 1 | | cmdp = = ' h ' ) return usage_15_info ( ) ;
2019-03-10 06:35:06 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-03-10 06:35:06 +08:00
uint8_t * recv ;
2019-05-01 03:10:11 +08:00
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
2019-04-19 23:03:39 +08:00
uint16_t reqlen ;
uint8_t arg1 = 1 ;
2019-04-10 02:08:35 +08:00
char cmdbuf [ 100 ] = { 0 } ;
2019-03-10 06:35:06 +08:00
char * cmd = cmdbuf ;
2019-11-26 02:53:06 +08:00
uint8_t uid [ 8 ] = { 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 } ;
2019-03-10 06:35:06 +08:00
2019-04-10 02:08:35 +08:00
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
2019-03-10 06:35:06 +08:00
2019-04-19 23:03:39 +08:00
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_SYSINFO ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2019-03-10 06:35:06 +08:00
2019-04-19 23:03:39 +08:00
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
2019-03-10 07:00:59 +08:00
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( WARNING , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-03-10 06:35:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-04-18 05:44:48 +08:00
uint32_t status = resp . oldarg [ 0 ] ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
if ( status < 2 ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( WARNING , " iso15693 card doesn't answer to systeminfo command " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2019-04-18 05:44:48 +08:00
recv = resp . data . asBytes ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
2019-07-14 06:35:18 +08:00
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2019-11-26 02:53:06 +08:00
memcpy ( uid , recv + 2 , sizeof ( uid ) ) ;
2019-12-11 01:30:18 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( INFO , " --- " _CYAN_ ( " Tag Information " ) " --------- " ) ;
PrintAndLogEx ( INFO , " ------------------------------------------------------------- " ) ;
PrintAndLogEx ( SUCCESS , " TYPE: " _YELLOW_ ( " %s " ) , getTagInfo_15 ( recv + 2 ) ) ;
PrintAndLogEx ( SUCCESS , " UID: " _GREEN_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
PrintAndLogEx ( SUCCESS , " SYSINFO: %s " , sprint_hex ( recv , status - 2 ) ) ;
2019-03-10 06:35:06 +08:00
// DSFID
if ( recv [ 1 ] & 0x01 )
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - DSFID supported [0x%02X] " , recv [ 10 ] ) ;
2019-03-10 06:35:06 +08:00
else
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - DSFID not supported " ) ;
2019-03-10 06:35:06 +08:00
// AFI
if ( recv [ 1 ] & 0x02 )
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - AFI supported [0x%02X] " , recv [ 11 ] ) ;
2019-03-10 06:35:06 +08:00
else
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - AFI not supported " ) ;
2019-03-10 06:35:06 +08:00
// IC reference
if ( recv [ 1 ] & 0x08 )
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - IC reference supported [0x%02X] " , recv [ 14 ] ) ;
2019-03-10 06:35:06 +08:00
else
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - IC reference not supported " ) ;
2019-03-10 06:35:06 +08:00
// memory
if ( recv [ 1 ] & 0x04 ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - Tag provides info on memory layout (vendor dependent) " ) ;
2019-03-10 07:00:59 +08:00
uint8_t blocks = recv [ 12 ] + 1 ;
2019-03-10 06:35:06 +08:00
uint8_t size = ( recv [ 13 ] & 0x1F ) ;
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " %u (or %u) bytes/blocks x %u blocks " , size + 1 , size , blocks ) ;
2019-03-10 06:35:06 +08:00
} else {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( SUCCESS , " - Tag does not provide information on memory layout " ) ;
2019-03-10 06:35:06 +08:00
}
2019-11-26 02:53:06 +08:00
// Check if SLIX2 and attempt to get NXP System Information
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( DEBUG , " 4 & 08 :: %02x 7 == 1 :: %u 8 == 4 :: %u " , recv [ 4 ] , recv [ 7 ] , recv [ 8 ] ) ;
2019-11-26 02:53:06 +08:00
if ( recv [ 8 ] = = 0x04 & & recv [ 7 ] = = 0x01 & & recv [ 4 ] & 0x80 ) {
return NxpSysInfo ( uid ) ;
}
PrintAndLogEx ( NORMAL , " " ) ;
return PM3_SUCCESS ;
2017-09-05 04:48:35 +08:00
}
2019-11-22 19:55:09 +08:00
// Record Activity without enabling carrier
2017-09-02 02:34:17 +08:00
//helptext
2019-04-13 00:41:14 +08:00
static int CmdHF15Record ( const char * Cmd ) {
2019-03-10 06:35:06 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( cmdp = = ' h ' ) return usage_15_record ( ) ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandNG ( CMD_HF_ISO15693_RAWADC , NULL , 0 ) ;
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
}
2019-04-13 00:41:14 +08:00
static int CmdHF15Reader ( const char * Cmd ) {
2019-03-10 06:35:06 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( cmdp = = ' h ' ) return usage_15_reader ( ) ;
2019-03-09 15:59:13 +08:00
2019-04-13 00:41:14 +08:00
readHF15Uid ( true ) ;
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
}
2010-10-19 22:25:17 +08:00
// Simulation is still not working very good
2017-09-02 02:34:17 +08:00
// helptext
2019-04-13 00:41:14 +08:00
static int CmdHF15Sim ( const char * Cmd ) {
2019-03-10 07:00:59 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
2019-03-10 06:35:06 +08:00
if ( strlen ( Cmd ) < 1 | | cmdp = = ' h ' ) return usage_15_sim ( ) ;
2019-03-10 07:00:59 +08:00
uint8_t uid [ 8 ] = { 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 } ;
2019-03-10 06:35:06 +08:00
if ( param_gethex ( Cmd , 0 , uid , 16 ) ) {
PrintAndLogEx ( WARNING , " UID must include 16 HEX symbols " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EINVARG ;
2019-03-10 06:35:06 +08:00
}
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Starting simulating UID " _YELLOW_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_SIMULATE , 0 , 0 , 0 , uid , 8 ) ;
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
Client cleanup and restructuring. Stage 1...
Next Step is refactoring some of the giant functions which are
just copy/paste of some other ones with just a few line changes,
removing unnecessary 'goto' etc.
The MS Windows version is broken with this commit but will be fixed
soon. Everything can't be done all at once :P
The commands are now hierarchical, for example:
"hf 14a read" vs. "hf 14b read".
You can also request help:
"hf help", "data help", "hf 15 help" etc.
Indents are now space-based, not tab-based anymore. Hopefully
no one will be trolling about it, considering the suicide-prone work
being done here ;)
client/cmdhw.c, client/proxusb.c, client/cmdhw.h, client/proxusb.h,
client/cmdmain.c, client/cmdlfhid.c, client/cmdmain.h, client/cmdlfhid.h,
client/data.c, client/data.h, client/cmdhf.c, client/cmdlf.c,
client/cmdhf.h, client/cmdhf15.c, client/cmdhf14b.c, client/cmdlf.h,
client/cmdhf15.h, client/cmdhf14b.h, client/cmddata.c, client/cmddata.h,
client/ui.c, client/cmdparser.c, client/cmdlfti.c, client/ui.h,
client/cmdlfem4x.c, client/cmdparser.h, client/cmdlfti.h, client/cmdlfem4x.h,
client/graph.c, client/graph.h, client/cmdhf14a.c, client/cmdhf14a.h,
client/cmdhflegic.c, client/cmdhflegic.c: New files.
client/cli.c, client/flasher.c, client/snooper.c, client/proxmark3.c,
client/proxmark3.h, client/Makefile: Update accordingly.
client/flash.h, client/flash.c, client/proxgui.cpp: Cosmetic changes.
client/translate.h, client/command.c, client/gui.c,
client/usb.c, client/prox.h: Remove.
include/usb_cmd.h (CMD_ACQUIRE_RAW_ADC_SAMPLES_ISO_14443_SIM): Remove dead cmd.
common/crc16.h: New file.
common/crc16.c: Modify accordingly.
common/iso14443crc.h: New file.
common/iso14443_crc.c: Rename to
common/iso14443crc.c: and modify accordingly.
armsrc/lfops.c, armsrc/iso14443.c,
armsrc/iso14443a.c: include .h files from
the common directory instead of including the c files.
common/Makefile.common, armsrc/Makefile: Modify accordingly.
2010-02-04 09:27:07 +08:00
}
2019-11-22 19:55:09 +08:00
// finds the AFI (Application Family Identifier) of a card, by trying all values
// (There is no standard way of reading the AFI, although some tags support this)
2017-09-02 02:34:17 +08:00
// helptext
2019-11-26 02:53:06 +08:00
static int CmdHF15FindAfi ( const char * Cmd ) {
2019-11-27 21:11:43 +08:00
PacketResponseNG resp ;
2019-11-28 03:14:31 +08:00
uint32_t timeout = 0 ;
2019-03-10 06:35:06 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( cmdp = = ' h ' ) return usage_15_findafi ( ) ;
2017-09-05 16:34:31 +08:00
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( SUCCESS , " press pm3-button to cancel " ) ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandMIX ( CMD_HF_ISO15693_FINDAFI , strtol ( Cmd , NULL , 0 ) , 0 , 0 , NULL , 0 ) ;
2019-11-27 21:11:43 +08:00
2019-11-28 03:14:31 +08:00
while ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
timeout + + ;
// should be done in about 2 minutes
if ( timeout > 180 ) {
PrintAndLogEx ( WARNING , " \n No response from Proxmark3. Aborting... " ) ;
DropField ( ) ;
return PM3_ETIMEOUT ;
}
2019-11-27 21:11:43 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-11-28 03:14:31 +08:00
return resp . status ; // PM3_EOPABORTED or PM3_SUCCESS
2010-10-19 22:25:17 +08:00
}
2019-11-26 02:53:06 +08:00
// Writes the AFI (Application Family Identifier) of a card
static int CmdHF15WriteAfi ( const char * Cmd ) {
char cmdp = param_getchar ( Cmd , 0 ) ;
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_writeafi ( ) ;
PacketResponseNG resp ;
uint8_t * recv ;
// arg: len, speed, recv?
// arg0 (datalen, cmd len? .arg0 == crc?)
// arg1 (speed == 0 == 1 of 256, == 1 == 1 of 4 )
// arg2 (recv == 1 == expect a response)
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
uint16_t reqlen = 0 ;
uint8_t arg1 = 1 ;
int afinum ;
char cmdbuf [ 100 ] = { 0 } ;
char * cmd = cmdbuf ;
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_WRITEAFI ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2019-11-26 02:53:06 +08:00
req [ 0 ] | = ISO15_REQ_OPTION ; // Since we are writing
afinum = strtol ( cmd , NULL , 0 ) ;
req [ reqlen + + ] = ( uint8_t ) afinum ;
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
2020-04-03 20:07:32 +08:00
// PrintAndLogEx(NORMAL, "cmd %s", sprint_hex(req, reqlen) );
2019-11-26 02:53:06 +08:00
clearCommandBuffer ( ) ;
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( ERR , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-11-26 02:53:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-11-26 02:53:06 +08:00
recv = resp . data . asBytes ;
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
PrintAndLogEx ( NORMAL , " " ) ;
PrintAndLogEx ( SUCCESS , " Wrote AFI 0x%02X " , afinum ) ;
return PM3_SUCCESS ;
}
// Writes the DSFID (Data Storage Format Identifier) of a card
static int CmdHF15WriteDsfid ( const char * Cmd ) {
char cmdp = param_getchar ( Cmd , 0 ) ;
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_writedsfid ( ) ;
PacketResponseNG resp ;
uint8_t * recv ;
// arg: len, speed, recv?
// arg0 (datalen, cmd len? .arg0 == crc?)
// arg1 (speed == 0 == 1 of 256, == 1 == 1 of 4 )
// arg2 (recv == 1 == expect a response)
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
uint16_t reqlen = 0 ;
uint8_t arg1 = 1 ;
int dsfidnum ;
char cmdbuf [ 100 ] = { 0 } ;
char * cmd = cmdbuf ;
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_WRITEDSFID ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2019-11-26 02:53:06 +08:00
req [ 0 ] | = ISO15_REQ_OPTION ; // Since we are writing
dsfidnum = strtol ( cmd , NULL , 0 ) ;
req [ reqlen + + ] = ( uint8_t ) dsfidnum ;
AddCrc15 ( req , reqlen ) ;
reqlen + = 2 ;
2020-04-03 20:07:32 +08:00
// PrintAndLogEx(NORMAL, "cmd %s", sprint_hex(req, reqlen) );
2019-11-26 02:53:06 +08:00
clearCommandBuffer ( ) ;
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( ERR , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-11-26 02:53:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-11-26 02:53:06 +08:00
recv = resp . data . asBytes ;
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-11-26 02:53:06 +08:00
}
PrintAndLogEx ( NORMAL , " " ) ;
PrintAndLogEx ( SUCCESS , " Wrote DSFID 0x%02X " , dsfidnum ) ;
return PM3_SUCCESS ;
}
2010-10-19 22:25:17 +08:00
// Reads all memory pages
2017-09-05 05:45:35 +08:00
// need to write to file
2019-04-13 00:41:14 +08:00
static int CmdHF15Dump ( const char * Cmd ) {
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
uint8_t fileNameLen = 0 ;
char filename [ FILE_PATH_SIZE ] = { 0 } ;
2019-03-10 07:00:59 +08:00
char * fptr = filename ;
2019-03-10 06:35:06 +08:00
bool errors = false ;
uint8_t cmdp = 0 ;
2019-03-10 07:00:59 +08:00
uint8_t uid [ 8 ] = { 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 } ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
while ( param_getchar ( Cmd , cmdp ) ! = 0x00 & & ! errors ) {
2019-03-10 06:35:06 +08:00
switch ( tolower ( param_getchar ( Cmd , cmdp ) ) ) {
2019-03-10 07:00:59 +08:00
case ' h ' :
return usage_15_dump ( ) ;
case ' f ' :
fileNameLen = param_getstr ( Cmd , cmdp + 1 , filename , FILE_PATH_SIZE ) ;
cmdp + = 2 ;
break ;
default :
PrintAndLogEx ( WARNING , " Unknown parameter '%c' \n " , param_getchar ( Cmd , cmdp ) ) ;
errors = true ;
break ;
2019-03-10 06:35:06 +08:00
}
}
//Validations
if ( errors ) return usage_15_dump ( ) ;
2019-03-14 17:23:58 +08:00
if ( ! getUID ( uid ) ) {
PrintAndLogEx ( WARNING , " No tag found. " ) ;
2019-11-27 04:11:02 +08:00
return PM3_ESOFT ;
2019-03-14 17:23:58 +08:00
}
2019-03-14 19:30:32 +08:00
2019-03-10 06:35:06 +08:00
if ( fileNameLen < 1 ) {
PrintAndLogEx ( INFO , " Using UID as filename " ) ;
fptr + = sprintf ( fptr , " hf-15- " ) ;
2019-03-10 07:00:59 +08:00
FillFileNameByUID ( fptr , uid , " -dump " , sizeof ( uid ) ) ;
2019-03-10 06:35:06 +08:00
}
// detect blocksize from card :)
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Reading memory from tag UID " _YELLOW_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
2019-03-10 06:35:06 +08:00
int blocknum = 0 ;
uint8_t * recv = NULL ;
// memory.
2020-04-03 20:07:32 +08:00
t15memory_t mem [ 256 ] ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
uint8_t data [ 256 * 4 ] = { 0 } ;
2019-03-10 06:35:06 +08:00
memset ( data , 0 , sizeof ( data ) ) ;
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-04-19 23:03:39 +08:00
uint8_t req [ 13 ] ;
2019-03-10 06:35:06 +08:00
req [ 0 ] = ISO15_REQ_SUBCARRIER_SINGLE | ISO15_REQ_DATARATE_HIGH | ISO15_REQ_NONINVENTORY | ISO15_REQ_ADDRESS ;
req [ 1 ] = ISO15_CMD_READ ;
// copy uid to read command
2019-03-10 07:00:59 +08:00
memcpy ( req + 2 , uid , sizeof ( uid ) ) ;
2019-03-10 06:35:06 +08:00
for ( int retry = 0 ; retry < 5 ; retry + + ) {
req [ 10 ] = blocknum ;
2019-04-07 18:07:50 +08:00
AddCrc15 ( req , 11 ) ;
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , sizeof ( req ) , 1 , 1 , req , sizeof ( req ) ) ;
2019-03-10 06:35:06 +08:00
if ( WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-04-18 05:44:48 +08:00
uint8_t len = resp . oldarg [ 0 ] ;
2019-03-10 07:00:59 +08:00
if ( len < 2 ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card select failed " ) ;
continue ;
}
2019-04-18 05:44:48 +08:00
recv = resp . data . asBytes ;
2019-03-10 06:35:06 +08:00
2019-04-07 18:07:50 +08:00
if ( ! CheckCrc15 ( recv , len ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " crc fail " ) ;
continue ;
}
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
2019-03-10 07:00:59 +08:00
PrintAndLogEx ( FAILED , " Tag returned Error %i: %s " , recv [ 1 ] , TagErrorStr ( recv [ 1 ] ) ) ;
2019-03-10 06:35:06 +08:00
break ;
}
2019-04-18 05:44:48 +08:00
mem [ blocknum ] . lock = resp . data . asBytes [ 0 ] ;
memcpy ( mem [ blocknum ] . block , resp . data . asBytes + 1 , 4 ) ;
memcpy ( data + ( blocknum * 4 ) , resp . data . asBytes + 1 , 4 ) ;
2019-03-10 06:35:06 +08:00
retry = 0 ;
blocknum + + ;
2019-03-10 07:00:59 +08:00
printf ( " . " ) ;
fflush ( stdout ) ;
2019-03-10 06:35:06 +08:00
}
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-12-01 03:02:02 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " block# | data |lck| ascii " ) ;
PrintAndLogEx ( NORMAL , " ---------+--------------+---+---------- " ) ;
for ( int i = 0 ; i < blocknum ; i + + ) {
2019-03-10 07:00:59 +08:00
PrintAndLogEx ( NORMAL , " %3d/0x%02X | %s | %d | %s " , i , i , sprint_hex ( mem [ i ] . block , 4 ) , mem [ i ] . lock , sprint_ascii ( mem [ i ] . block , 4 ) ) ;
2019-03-10 06:35:06 +08:00
}
PrintAndLogEx ( NORMAL , " \n " ) ;
size_t datalen = blocknum * 4 ;
2020-03-22 03:38:58 +08:00
saveFile ( filename , " .bin " , data , datalen ) ;
2019-04-29 02:42:57 +08:00
saveFileEML ( filename , data , datalen , 4 ) ;
2020-03-22 03:38:58 +08:00
saveFileJSON ( filename , jsf15 , data , datalen ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2010-10-19 22:25:17 +08:00
}
2017-09-05 04:48:35 +08:00
2019-04-13 00:41:14 +08:00
static int CmdHF15List ( const char * Cmd ) {
2019-04-10 18:23:40 +08:00
( void ) Cmd ; // Cmd is not used so far
2019-03-10 06:35:06 +08:00
CmdTraceList ( " 15 " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
}
/*
// Record Activity without enabling carrier
2019-11-26 02:53:06 +08:00
static int CmdHF15Sniff ( const char * Cmd ) {
2019-11-22 19:55:09 +08:00
clearCommandBuffer ( ) ;
SendCommandNG ( CMD_HF_ISO15693_SNIFF , NULL , 0 ) ;
return PM3_SUCCESS ;
2017-09-05 04:48:35 +08:00
}
2019-11-22 19:55:09 +08:00
*/
2017-09-05 04:48:35 +08:00
2019-04-13 00:41:14 +08:00
static int CmdHF15Raw ( const char * Cmd ) {
2010-10-19 22:25:17 +08:00
2019-03-10 06:35:06 +08:00
char cmdp = param_getchar ( Cmd , 0 ) ;
2019-03-10 07:00:59 +08:00
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_raw ( ) ;
2019-03-10 06:35:06 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-03-10 06:35:06 +08:00
int reply = 1 , fast = 1 , i = 0 ;
2019-11-27 21:11:43 +08:00
bool crc = false , leaveSignalON = false ;
2019-03-10 06:35:06 +08:00
char buf [ 5 ] = " " ;
uint8_t data [ 100 ] ;
uint32_t datalen = 0 , temp ;
// strip
2019-03-10 07:00:59 +08:00
while ( * Cmd = = ' ' | | * Cmd = = ' \t ' ) Cmd + + ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
while ( Cmd [ i ] ! = ' \0 ' ) {
if ( Cmd [ i ] = = ' ' | | Cmd [ i ] = = ' \t ' ) { i + + ; continue ; }
if ( Cmd [ i ] = = ' - ' ) {
switch ( Cmd [ i + 1 ] ) {
2019-03-10 06:35:06 +08:00
case ' r ' :
case ' R ' :
reply = 0 ;
break ;
case ' 2 ' :
fast = 0 ;
break ;
case ' c ' :
case ' C ' :
crc = true ;
break ;
2019-11-27 21:11:43 +08:00
case ' p ' :
case ' P ' :
leaveSignalON = true ;
break ;
2019-03-10 06:35:06 +08:00
default :
PrintAndLogEx ( WARNING , " Invalid option " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EINVARG ;
2019-03-10 06:35:06 +08:00
}
2019-03-10 07:00:59 +08:00
i + = 2 ;
2019-03-10 06:35:06 +08:00
continue ;
}
2019-03-10 07:00:59 +08:00
if ( ( Cmd [ i ] > = ' 0 ' & & Cmd [ i ] < = ' 9 ' ) | |
2019-03-10 18:20:22 +08:00
( Cmd [ i ] > = ' a ' & & Cmd [ i ] < = ' f ' ) | |
( Cmd [ i ] > = ' A ' & & Cmd [ i ] < = ' F ' ) ) {
2019-03-10 07:00:59 +08:00
buf [ strlen ( buf ) + 1 ] = 0 ;
2019-03-10 06:35:06 +08:00
buf [ strlen ( buf ) ] = Cmd [ i ] ;
i + + ;
if ( strlen ( buf ) > = 2 ) {
sscanf ( buf , " %x " , & temp ) ;
data [ datalen ] = ( uint8_t ) ( temp & 0xff ) ;
datalen + + ;
* buf = 0 ;
}
continue ;
}
PrintAndLogEx ( WARNING , " Invalid char on input " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EINVARG ;
2019-03-10 06:35:06 +08:00
}
if ( crc ) {
2019-04-07 18:07:50 +08:00
AddCrc15 ( data , datalen ) ;
2019-03-10 06:35:06 +08:00
datalen + = 2 ;
}
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , datalen , fast , reply , data , datalen ) ;
2019-03-10 06:35:06 +08:00
if ( reply ) {
if ( WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-04-18 05:44:48 +08:00
uint8_t len = resp . oldarg [ 0 ] ;
2019-12-01 03:02:02 +08:00
PrintAndLogEx ( INFO , " received %i octets " , len ) ;
PrintAndLogEx ( SUCCESS , " %s " , sprint_hex ( resp . data . asBytes , len ) ) ;
2019-03-10 06:35:06 +08:00
} else {
PrintAndLogEx ( WARNING , " timeout while waiting for reply. " ) ;
}
}
2019-11-27 04:11:02 +08:00
2019-11-27 21:11:43 +08:00
if ( ! leaveSignalON )
DropField ( ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2010-10-19 22:25:17 +08:00
}
2012-05-29 20:31:29 +08:00
/**
* Commandline handling : HF15 CMD READMULTI
* Read multiple blocks at once ( not all tags support this )
*/
2019-04-13 00:41:14 +08:00
static int CmdHF15Readmulti ( const char * Cmd ) {
2012-05-29 20:31:29 +08:00
2019-03-10 06:35:06 +08:00
char cmdp = param_getchar ( Cmd , 0 ) ;
2019-03-10 07:00:59 +08:00
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_readmulti ( ) ;
2019-03-10 06:35:06 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-03-10 06:35:06 +08:00
uint8_t * recv ;
2019-05-01 03:10:11 +08:00
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
2019-04-19 23:03:39 +08:00
uint16_t reqlen = 0 ;
uint8_t arg1 = 1 ;
2019-03-10 06:35:06 +08:00
uint8_t pagenum , pagecount ;
2019-04-10 02:08:35 +08:00
char cmdbuf [ 100 ] = { 0 } ;
2019-03-10 06:35:06 +08:00
char * cmd = cmdbuf ;
2019-04-10 02:08:35 +08:00
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
2019-03-10 06:35:06 +08:00
2019-04-19 23:03:39 +08:00
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_READMULTI ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2019-03-10 06:35:06 +08:00
// add OPTION flag, in order to get lock-info
req [ 0 ] | = ISO15_REQ_OPTION ;
// decimal
pagenum = param_get8ex ( cmd , 0 , 0 , 10 ) ;
pagecount = param_get8ex ( cmd , 1 , 0 , 10 ) ;
2020-04-03 20:07:32 +08:00
// PrintAndLogEx(NORMAL, "ice %d %d\n", pagenum, pagecount);
2019-03-10 06:35:06 +08:00
// 0 means 1 page,
// 1 means 2 pages, ...
if ( pagecount > 0 ) pagecount - - ;
req [ reqlen + + ] = pagenum ;
req [ reqlen + + ] = pagecount ;
2019-04-07 18:07:50 +08:00
AddCrc15 ( req , reqlen ) ;
2019-04-19 23:03:39 +08:00
reqlen + = 2 ;
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-03-10 06:35:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-04-18 05:44:48 +08:00
uint32_t status = resp . oldarg [ 0 ] ;
2019-03-10 07:00:59 +08:00
if ( status < 2 ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2019-04-18 05:44:48 +08:00
recv = resp . data . asBytes ;
2019-03-10 06:35:06 +08:00
2019-04-07 18:07:50 +08:00
if ( ! CheckCrc15 ( recv , status ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " CRC failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_ESOFT ;
2019-03-10 06:35:06 +08:00
}
2019-03-10 07:00:59 +08:00
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2020-04-03 20:07:32 +08:00
// skip status byte
int start = 1 ;
2019-03-10 07:00:59 +08:00
int stop = ( pagecount + 1 ) * 5 ;
2019-03-10 06:35:06 +08:00
int currblock = pagenum ;
// print response
PrintAndLogEx ( NORMAL , " " ) ;
PrintAndLogEx ( NORMAL , " block# | data |lck| ascii " ) ;
PrintAndLogEx ( NORMAL , " ---------+--------------+---+---------- " ) ;
for ( int i = start ; i < stop ; i + = 5 ) {
2019-03-10 07:00:59 +08:00
PrintAndLogEx ( NORMAL , " %3d/0x%02X | %s | %d | %s " , currblock , currblock , sprint_hex ( recv + i + 1 , 4 ) , recv [ i ] , sprint_ascii ( recv + i + 1 , 4 ) ) ;
2019-03-10 06:35:06 +08:00
currblock + + ;
}
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2012-05-29 20:31:29 +08:00
}
2012-05-29 20:17:24 +08:00
/**
* Commandline handling : HF15 CMD READ
* Reads a single Block
*/
2019-04-13 00:41:14 +08:00
static int CmdHF15Read ( const char * Cmd ) {
2010-10-19 22:25:17 +08:00
2019-03-10 06:35:06 +08:00
char cmdp = param_getchar ( Cmd , 0 ) ;
2019-03-10 07:00:59 +08:00
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_read ( ) ;
2019-03-09 15:59:13 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-03-10 06:35:06 +08:00
uint8_t * recv ;
2017-09-02 02:34:17 +08:00
2019-04-19 23:03:39 +08:00
// arg: len, speed, recv?
2019-03-10 06:35:06 +08:00
// arg0 (datalen, cmd len? .arg0 == crc?)
// arg1 (speed == 0 == 1 of 256, == 1 == 1 of 4 )
// arg2 (recv == 1 == expect a response)
2019-05-01 03:10:11 +08:00
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
2019-04-19 23:03:39 +08:00
uint16_t reqlen = 0 ;
uint8_t arg1 = 1 ;
int blocknum ;
2019-04-10 02:08:35 +08:00
char cmdbuf [ 100 ] = { 0 } ;
2019-03-10 06:35:06 +08:00
char * cmd = cmdbuf ;
2019-04-10 02:08:35 +08:00
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
2019-03-09 15:59:13 +08:00
2019-04-19 23:03:39 +08:00
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_READ ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2017-09-05 06:25:53 +08:00
2019-03-10 06:35:06 +08:00
// add OPTION flag, in order to get lock-info
req [ 0 ] | = ISO15_REQ_OPTION ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
blocknum = strtol ( cmd , NULL , 0 ) ;
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
req [ reqlen + + ] = ( uint8_t ) blocknum ;
2019-03-09 15:59:13 +08:00
2019-04-07 18:07:50 +08:00
AddCrc15 ( req , reqlen ) ;
2019-04-19 23:03:39 +08:00
reqlen + = 2 ;
2010-10-19 22:25:17 +08:00
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
2010-10-19 22:25:17 +08:00
2019-03-10 07:00:59 +08:00
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-12-01 03:02:02 +08:00
PrintAndLogEx ( ERR , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-03-10 06:35:06 +08:00
}
2019-03-09 15:59:13 +08:00
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-04-18 05:44:48 +08:00
uint32_t status = resp . oldarg [ 0 ] ;
2019-03-10 07:00:59 +08:00
if ( status < 2 ) {
2019-12-01 03:02:02 +08:00
PrintAndLogEx ( ERR , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2017-09-05 05:45:35 +08:00
2019-04-18 05:44:48 +08:00
recv = resp . data . asBytes ;
2019-03-09 15:59:13 +08:00
2019-04-07 18:07:50 +08:00
if ( ! CheckCrc15 ( recv , status ) ) {
2019-12-01 03:02:02 +08:00
PrintAndLogEx ( ERR , " CRC failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_ESOFT ;
2019-03-10 06:35:06 +08:00
}
2019-03-09 15:59:13 +08:00
2019-03-10 07:00:59 +08:00
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
2019-07-14 06:35:18 +08:00
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2019-03-09 15:59:13 +08:00
2019-03-10 06:35:06 +08:00
// print response
PrintAndLogEx ( NORMAL , " " ) ;
2019-03-10 07:00:59 +08:00
PrintAndLogEx ( NORMAL , " block #%3d |lck| ascii " , blocknum ) ;
PrintAndLogEx ( NORMAL , " ------------+---+------ " ) ;
PrintAndLogEx ( NORMAL , " %s| %d | %s " , sprint_hex ( recv + 2 , status - 4 ) , recv [ 1 ] , sprint_ascii ( recv + 2 , status - 4 ) ) ;
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2010-10-19 22:25:17 +08:00
}
2012-05-29 20:17:24 +08:00
/**
* Commandline handling : HF15 CMD WRITE
* Writes a single Block - might run into timeout , even when successful
*/
2019-04-13 00:41:14 +08:00
static int CmdHF15Write ( const char * Cmd ) {
2010-10-19 22:25:17 +08:00
2019-03-10 06:35:06 +08:00
char cmdp = param_getchar ( Cmd , 0 ) ;
2019-03-10 07:00:59 +08:00
if ( strlen ( Cmd ) < 3 | | cmdp = = ' h ' | | cmdp = = ' H ' ) return usage_15_write ( ) ;
2019-03-10 06:35:06 +08:00
2019-04-18 18:43:35 +08:00
PacketResponseNG resp ;
2019-03-10 06:35:06 +08:00
uint8_t * recv ;
2019-05-01 03:10:11 +08:00
uint8_t req [ PM3_CMD_DATA_SIZE ] = { 0 } ;
2019-04-19 23:03:39 +08:00
uint16_t reqlen = 0 ;
uint8_t arg1 = 1 ;
int pagenum , temp ;
2019-04-10 02:02:33 +08:00
char cmdbuf [ 100 ] = { 0 } ;
2019-03-10 06:35:06 +08:00
char * cmd = cmdbuf ;
char * cmd2 ;
2019-04-10 02:05:27 +08:00
strncpy ( cmd , Cmd , sizeof ( cmdbuf ) - 1 ) ;
2019-03-10 06:35:06 +08:00
2019-04-19 23:03:39 +08:00
if ( ! prepareHF15Cmd ( & cmd , & reqlen , & arg1 , req , ISO15_CMD_WRITE ) )
2019-11-27 04:11:02 +08:00
return PM3_SUCCESS ;
2019-03-10 06:35:06 +08:00
// *cmd -> page num ; *cmd2 -> data
2019-03-10 07:00:59 +08:00
cmd2 = cmd ;
while ( * cmd2 ! = ' ' & & * cmd2 ! = ' \t ' & & * cmd2 ) cmd2 + + ;
2019-03-10 06:35:06 +08:00
* cmd2 = 0 ;
cmd2 + + ;
pagenum = strtol ( cmd , NULL , 0 ) ;
req [ reqlen + + ] = ( uint8_t ) pagenum ;
while ( cmd2 [ 0 ] & & cmd2 [ 1 ] ) { // hexdata, read by 2 hexchars
2019-03-10 07:00:59 +08:00
if ( * cmd2 = = ' ' ) {
2019-03-10 06:35:06 +08:00
cmd2 + + ;
continue ;
}
2019-03-10 07:00:59 +08:00
sscanf ( ( char [ ] ) { cmd2 [ 0 ] , cmd2 [ 1 ] , 0 } , " %X " , & temp ) ;
req [ reqlen + + ] = temp & 0xff ;
cmd2 + = 2 ;
2019-03-10 06:35:06 +08:00
}
2019-04-07 18:07:50 +08:00
AddCrc15 ( req , reqlen ) ;
2019-04-19 23:03:39 +08:00
reqlen + = 2 ;
2019-03-10 06:35:06 +08:00
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " iso15693 writing to page %02d (0x%02X) | data " , pagenum , pagenum ) ;
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , reqlen , arg1 , 1 , req , reqlen ) ;
2019-03-10 06:35:06 +08:00
2019-03-10 07:00:59 +08:00
if ( ! WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card timeout, data may be written anyway " ) ;
2019-11-27 04:11:02 +08:00
DropField ( ) ;
return PM3_ETIMEOUT ;
2019-03-10 06:35:06 +08:00
}
2019-11-27 04:11:02 +08:00
DropField ( ) ;
2019-04-18 05:44:48 +08:00
uint32_t status = resp . oldarg [ 0 ] ;
2019-03-10 07:00:59 +08:00
if ( status < 2 ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " iso15693 card select failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
2019-04-18 05:44:48 +08:00
recv = resp . data . asBytes ;
2019-03-10 06:35:06 +08:00
2019-04-07 18:07:50 +08:00
if ( ! CheckCrc15 ( recv , status ) ) {
2019-03-10 06:35:06 +08:00
PrintAndLogEx ( FAILED , " CRC failed " ) ;
2019-11-27 04:11:02 +08:00
return PM3_ESOFT ;
2019-03-10 06:35:06 +08:00
}
2019-03-10 07:00:59 +08:00
if ( recv [ 0 ] & ISO15_RES_ERROR ) {
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( ERR , " iso15693 card returned error %i: %s " , recv [ 0 ] , TagErrorStr ( recv [ 0 ] ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EWRONGANSVER ;
2019-03-10 06:35:06 +08:00
}
PrintAndLogEx ( NORMAL , " OK " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2010-10-19 22:25:17 +08:00
}
2019-04-13 00:41:14 +08:00
static int CmdHF15Restore ( const char * Cmd ) {
FILE * f ;
uint8_t uid [ 8 ] = { 0x00 } ;
char filename [ FILE_PATH_SIZE ] = { 0x00 } ;
char buff [ 255 ] = { 0x00 } ;
size_t blocksize = 4 ;
uint8_t cmdp = 0 ;
char newCmdPrefix [ FILE_PATH_SIZE + 1 ] = { 0x00 } , tmpCmd [ FILE_PATH_SIZE + 262 ] = { 0x00 } ;
char param [ FILE_PATH_SIZE ] = " " ;
char hex [ 255 ] = " " ;
2019-06-08 00:41:39 +08:00
uint8_t retries = 3 , i = 0 ;
2019-04-13 00:41:14 +08:00
int retval = 0 ;
while ( param_getchar ( Cmd , cmdp ) ! = 0x00 ) {
switch ( tolower ( param_getchar ( Cmd , cmdp ) ) ) {
case ' - ' :
param_getstr ( Cmd , cmdp , param , sizeof ( param ) ) ;
switch ( param [ 1 ] ) {
case ' 2 ' :
case ' o ' :
strncpy ( newCmdPrefix , " " , sizeof ( newCmdPrefix ) - 1 ) ;
strncat ( newCmdPrefix , param , sizeof ( newCmdPrefix ) - strlen ( newCmdPrefix ) - 1 ) ;
break ;
default :
PrintAndLogEx ( WARNING , " Unknown parameter '%s' " , param ) ;
return usage_15_restore ( ) ;
}
break ;
case ' f ' :
param_getstr ( Cmd , cmdp + 1 , filename , FILE_PATH_SIZE ) ;
cmdp + + ;
break ;
case ' r ' :
retries = param_get8ex ( Cmd , cmdp + 1 , 3 , 10 ) ;
cmdp + + ;
break ;
case ' b ' :
blocksize = param_get8ex ( Cmd , cmdp + 1 , 4 , 10 ) ;
cmdp + + ;
break ;
case ' u ' :
param_getstr ( Cmd , cmdp + 1 , buff , FILE_PATH_SIZE ) ;
cmdp + + ;
2020-03-22 03:38:58 +08:00
snprintf ( filename , sizeof ( filename ) , " hf-15-%s-dump.bin " , buff ) ;
2019-04-13 00:41:14 +08:00
break ;
case ' h ' :
return usage_15_restore ( ) ;
default :
PrintAndLogEx ( WARNING , " Unknown parameter '%c' " , param_getchar ( Cmd , cmdp ) ) ;
return usage_15_restore ( ) ;
}
cmdp + + ;
}
2019-10-06 05:56:19 +08:00
PrintAndLogEx ( INFO , " Blocksize: %zu " , blocksize ) ;
2019-04-13 00:41:14 +08:00
if ( ! strlen ( filename ) ) {
PrintAndLogEx ( WARNING , " Please provide a filename " ) ;
return usage_15_restore ( ) ;
}
if ( ( f = fopen ( filename , " rb " ) ) = = NULL ) {
2020-03-22 03:38:58 +08:00
2019-04-13 00:41:14 +08:00
PrintAndLogEx ( WARNING , " Could not find file %s " , filename ) ;
2019-11-27 04:11:02 +08:00
return PM3_EFILE ;
2019-04-13 00:41:14 +08:00
}
if ( ! getUID ( uid ) ) {
PrintAndLogEx ( WARNING , " No tag found " ) ;
fclose ( f ) ;
2019-11-27 04:11:02 +08:00
return PM3_ESOFT ;
2019-04-13 00:41:14 +08:00
}
PrintAndLogEx ( INFO , " Restoring data blocks. " ) ;
while ( 1 ) {
2019-06-08 00:41:39 +08:00
uint8_t tried = 0 ;
2019-04-13 00:41:14 +08:00
hex [ 0 ] = 0x00 ;
tmpCmd [ 0 ] = 0x00 ;
2019-06-08 00:41:39 +08:00
size_t bytes_read = fread ( buff , 1 , blocksize , f ) ;
2019-04-13 00:41:14 +08:00
if ( bytes_read = = 0 ) {
PrintAndLogEx ( SUCCESS , " File reading done `%s` " , filename ) ;
fclose ( f ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2019-04-13 00:41:14 +08:00
} else if ( bytes_read ! = blocksize ) {
2019-10-06 05:56:19 +08:00
PrintAndLogEx ( ERR , " File reading error (%s), %zu bytes read instead of %zu bytes. " , filename , bytes_read , blocksize ) ;
2019-04-13 00:41:14 +08:00
fclose ( f ) ;
2019-11-27 04:11:02 +08:00
return PM3_EFILE ;
2019-04-13 00:41:14 +08:00
}
for ( int j = 0 ; j < blocksize ; j + + )
snprintf ( hex + j * 2 , 3 , " %02X " , buff [ j ] ) ;
2019-05-14 18:51:45 +08:00
for ( int j = 0 ; j < ARRAYLEN ( uid ) ; j + + )
2019-04-13 00:41:14 +08:00
snprintf ( buff + j * 2 , 3 , " %02X " , uid [ j ] ) ;
//TODO: Addressed mode currently not work
//snprintf(tmpCmd, sizeof(tmpCmd), "%s %s %d %s", newCmdPrefix, buff, i, hex);
snprintf ( tmpCmd , sizeof ( tmpCmd ) , " %s u %u %s " , newCmdPrefix , i , hex ) ;
PrintAndLogEx ( DEBUG , " Command to be sent| %s " , tmpCmd ) ;
for ( tried = 0 ; tried < retries ; tried + + ) {
if ( ! ( retval = CmdHF15Write ( tmpCmd ) ) ) {
break ;
}
}
if ( tried > = retries ) {
fclose ( f ) ;
PrintAndLogEx ( FAILED , " Restore failed. Too many retries. " ) ;
return retval ;
}
i + + ;
}
fclose ( f ) ;
PrintAndLogEx ( INFO , " Finish restore " ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2019-04-13 00:41:14 +08:00
}
2019-07-07 16:52:00 +08:00
/**
* Commandline handling : HF15 CMD CSETUID
* Set UID for magic Chinese card
*/
static int CmdHF15CSetUID ( const char * Cmd ) {
uint8_t uid [ 8 ] = { 0x00 } ;
uint8_t oldUid [ 8 ] , newUid [ 8 ] = { 0x00 } ;
PacketResponseNG resp ;
int reply = 1 , fast = 0 ;
2019-07-07 20:00:13 +08:00
uint8_t data [ 4 ] [ 9 ] = { { 0x00 } } ;
2019-07-07 16:52:00 +08:00
2019-07-07 20:00:13 +08:00
char cmdp = tolower ( param_getchar ( Cmd , 0 ) ) ;
if ( strlen ( Cmd ) < 1 | | cmdp = = ' h ' ) return usage_15_csetuid ( ) ;
2019-07-07 16:52:00 +08:00
if ( param_gethex ( Cmd , 0 , uid , 16 ) ) {
PrintAndLogEx ( WARNING , " UID must include 16 HEX symbols " ) ;
2019-11-27 04:11:02 +08:00
return PM3_EINVARG ;
2019-07-07 16:52:00 +08:00
}
2019-07-07 18:10:51 +08:00
if ( uid [ 0 ] ! = 0xe0 ) {
2019-07-07 20:00:13 +08:00
PrintAndLogEx ( WARNING , " UID must begin with the byte " _YELLOW_ ( " E0 " ) ) ;
2019-11-27 04:11:02 +08:00
return PM3_EINVARG ;
2019-07-07 16:52:00 +08:00
}
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Input new UID | " _YELLOW_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
2019-07-07 16:52:00 +08:00
if ( ! getUID ( oldUid ) ) {
2019-12-02 17:21:32 +08:00
PrintAndLogEx ( FAILED , " Can't get old/current UID. " ) ;
2019-07-07 20:00:13 +08:00
return PM3_ESOFT ;
2019-07-07 16:52:00 +08:00
}
2019-12-02 17:21:32 +08:00
PrintAndLogEx ( INFO , " Using backdoor magic tag function " ) ;
2019-07-07 16:52:00 +08:00
// Command 1 : 02213E00000000
data [ 0 ] [ 0 ] = 0x02 ;
data [ 0 ] [ 1 ] = 0x21 ;
data [ 0 ] [ 2 ] = 0x3e ;
data [ 0 ] [ 3 ] = 0x00 ;
data [ 0 ] [ 4 ] = 0x00 ;
data [ 0 ] [ 5 ] = 0x00 ;
data [ 0 ] [ 6 ] = 0x00 ;
// Command 2 : 02213F69960000
data [ 1 ] [ 0 ] = 0x02 ;
data [ 1 ] [ 1 ] = 0x21 ;
data [ 1 ] [ 2 ] = 0x3f ;
data [ 1 ] [ 3 ] = 0x69 ;
data [ 1 ] [ 4 ] = 0x96 ;
data [ 1 ] [ 5 ] = 0x00 ;
data [ 1 ] [ 6 ] = 0x00 ;
// Command 3 : 022138u8u7u6u5 (where uX = uid byte X)
data [ 2 ] [ 0 ] = 0x02 ;
data [ 2 ] [ 1 ] = 0x21 ;
data [ 2 ] [ 2 ] = 0x38 ;
data [ 2 ] [ 3 ] = uid [ 7 ] ;
data [ 2 ] [ 4 ] = uid [ 6 ] ;
data [ 2 ] [ 5 ] = uid [ 5 ] ;
data [ 2 ] [ 6 ] = uid [ 4 ] ;
// Command 4 : 022139u4u3u2u1 (where uX = uid byte X)
data [ 3 ] [ 0 ] = 0x02 ;
data [ 3 ] [ 1 ] = 0x21 ;
data [ 3 ] [ 2 ] = 0x39 ;
data [ 3 ] [ 3 ] = uid [ 3 ] ;
data [ 3 ] [ 4 ] = uid [ 2 ] ;
data [ 3 ] [ 5 ] = uid [ 1 ] ;
data [ 3 ] [ 6 ] = uid [ 0 ] ;
2019-07-13 06:38:30 +08:00
for ( int i = 0 ; i < 4 ; i + + ) {
2019-07-07 16:52:00 +08:00
AddCrc15 ( data [ i ] , 7 ) ;
clearCommandBuffer ( ) ;
2019-08-04 01:17:00 +08:00
SendCommandOLD ( CMD_HF_ISO15693_COMMAND , sizeof ( data [ i ] ) , fast , reply , data [ i ] , sizeof ( data [ i ] ) ) ;
2019-07-07 16:52:00 +08:00
if ( reply ) {
if ( WaitForResponseTimeout ( CMD_ACK , & resp , 2000 ) ) {
uint8_t len = resp . oldarg [ 0 ] ;
2019-12-01 02:57:29 +08:00
PrintAndLogEx ( INFO , " received %i octets " , len ) ;
PrintAndLogEx ( INFO , " %s " , sprint_hex ( resp . data . asBytes , len ) ) ;
2019-07-07 16:52:00 +08:00
} else {
PrintAndLogEx ( WARNING , " timeout while waiting for reply. " ) ;
}
}
}
if ( ! getUID ( newUid ) ) {
PrintAndLogEx ( FAILED , " Can't get new UID. " ) ;
2019-07-07 20:00:13 +08:00
return PM3_ESOFT ;
2019-07-07 16:52:00 +08:00
}
2019-12-02 17:21:32 +08:00
if ( memcmp ( newUid , uid , 8 ) ! = 0 ) {
PrintAndLogEx ( FAILED , " Setting UID on tag failed. " ) ;
return PM3_ESOFT ;
} else {
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " Old: %s " , iso15693_sprintUID ( NULL , oldUid ) ) ;
PrintAndLogEx ( SUCCESS , " New: " _GREEN_ ( " %s " ) , iso15693_sprintUID ( NULL , newUid ) ) ;
2019-12-02 17:21:32 +08:00
return PM3_SUCCESS ;
}
2019-07-07 16:52:00 +08:00
}
2019-04-19 06:47:51 +08:00
static command_t CommandTable [ ] = {
2019-05-02 02:48:15 +08:00
{ " help " , CmdHF15Help , AlwaysAvailable , " This help " } ,
2020-04-03 20:07:32 +08:00
{ " list " , CmdHF15List , AlwaysAvailable , " List ISO15693 history " } ,
2019-05-02 02:48:15 +08:00
{ " demod " , CmdHF15Demod , AlwaysAvailable , " Demodulate ISO15693 from tag " } ,
2019-05-02 05:04:50 +08:00
{ " dump " , CmdHF15Dump , IfPm3Iso15693 , " Read all memory pages of an ISO15693 tag, save to file " } ,
{ " info " , CmdHF15Info , IfPm3Iso15693 , " Tag information " } ,
2019-11-22 19:55:09 +08:00
// {"sniff", CmdHF15Sniff, IfPm3Iso15693, "Sniff ISO15693 traffic"},
2019-05-02 05:04:50 +08:00
{ " raw " , CmdHF15Raw , IfPm3Iso15693 , " Send raw hex data to tag " } ,
{ " record " , CmdHF15Record , IfPm3Iso15693 , " Record Samples (ISO15693) " } ,
2020-04-03 20:07:32 +08:00
{ " read " , CmdHF15Read , IfPm3Iso15693 , " Read a block " } ,
{ " reader " , CmdHF15Reader , IfPm3Iso15693 , " Act like an ISO15693 reader " } ,
{ " readmulti " , CmdHF15Readmulti , IfPm3Iso15693 , " Reads multiple Blocks " } ,
2019-05-02 05:04:50 +08:00
{ " restore " , CmdHF15Restore , IfPm3Iso15693 , " Restore from file to all memory pages of an ISO15693 tag " } ,
{ " samples " , CmdHF15Samples , IfPm3Iso15693 , " Acquire Samples as Reader (enables carrier, sends inquiry) " } ,
2020-04-03 20:07:32 +08:00
{ " sim " , CmdHF15Sim , IfPm3Iso15693 , " Fake an ISO15693 tag " } ,
2019-05-02 05:04:50 +08:00
{ " write " , CmdHF15Write , IfPm3Iso15693 , " Write a block " } ,
2020-04-03 20:07:32 +08:00
{ " ----------- " , CmdHF15Help , IfPm3Iso15693 , " " } ,
{ " findafi " , CmdHF15FindAfi , IfPm3Iso15693 , " Brute force AFI of an ISO15693 tag " } ,
{ " writeafi " , CmdHF15WriteAfi , IfPm3Iso15693 , " Writes the AFI on an ISO15693 tag " } ,
{ " writedsfid " , CmdHF15WriteDsfid , IfPm3Iso15693 , " Writes the DSFID on an ISO15693 tag " } ,
{ " ----------- " , CmdHF15Help , IfPm3Iso15693 , " " } ,
2019-11-22 19:55:09 +08:00
{ " csetuid " , CmdHF15CSetUID , IfPm3Iso15693 , " Set UID for magic Chinese card " } ,
2019-05-02 02:48:15 +08:00
{ NULL , NULL , NULL , NULL }
2010-10-19 22:25:17 +08:00
} ;
2019-04-13 00:41:14 +08:00
static int CmdHF15Help ( const char * Cmd ) {
( void ) Cmd ; // Cmd is not used so far
2019-04-19 07:14:04 +08:00
CmdsHelp ( CommandTable ) ;
2019-11-22 19:55:09 +08:00
return PM3_SUCCESS ;
2019-04-13 00:41:14 +08:00
}
2019-03-10 18:20:22 +08:00
int CmdHF15 ( const char * Cmd ) {
2019-03-10 06:35:06 +08:00
clearCommandBuffer ( ) ;
2019-04-19 06:47:51 +08:00
return CmdsParse ( CommandTable , Cmd ) ;
2010-10-19 22:25:17 +08:00
}
2017-09-05 05:45:35 +08:00
2019-04-13 00:41:14 +08:00
// used with 'hf search'
2019-11-27 04:11:02 +08:00
bool readHF15Uid ( bool verbose ) {
2020-04-03 20:07:32 +08:00
uint8_t uid [ 8 ] = { 0 } ;
2019-04-13 00:41:14 +08:00
if ( ! getUID ( uid ) ) {
if ( verbose ) PrintAndLogEx ( WARNING , " No tag found. " ) ;
2019-11-27 04:11:02 +08:00
return false ;
2019-04-13 00:41:14 +08:00
}
2019-12-01 03:04:37 +08:00
PrintAndLogEx ( NORMAL , " " ) ;
2020-04-04 18:17:55 +08:00
PrintAndLogEx ( SUCCESS , " UID: " _GREEN_ ( " %s " ) , iso15693_sprintUID ( NULL , uid ) ) ;
PrintAndLogEx ( SUCCESS , " TYPE: " _YELLOW_ ( " %s " ) , getTagInfo_15 ( uid ) ) ;
2019-11-27 04:11:02 +08:00
return true ;
2019-03-12 07:12:26 +08:00
}