Tuesday, October 9, 2012

Blog Entry #10: James Bond's Dry Erase Marker

LINK: http://www.forbes.com/sites/andygreenberg/2012/10/02/hackers-crack-hotel-room-locks-with-a-tool-disguised-as-a-dry-erase-marker/
 
            It seems that a small group of penetration testers have found a way to bypass a common hotel keycard door lock.  The tool has the look of a dry erase marker but is powerful enough to almost instantly unlock keycard door locks built by the company Onity.  Matthew Jakubowski, one of the three who built the device, notes “someone using this could be searched and even then it wouldn’t be obvious that this isn’t just a pen.” The trio, who built what they are calling the "James Bond's dry erase marker: the hotel pentest pen," got their idea from Cody Brocious, a hacker and software developer for Mozilla.  He built a device that functioned in much the same manner but was less concealable.
            This hardware hack is quite significant because of the sheer number of Onity locks in use, over 4 million according to Onity's own statistics.   The hackers "exploited the port on the bottom of the lock intended for a device that hotels can use to set master keys."  From this they were able to read the locks memory, ultimately giving them access to the locking mechanism.  The entire build cost about $30 and took eight hours to assemble.  That is really cheap considering it gets you worldwide access to some of the finest hotel rooms.  Other hackers have created similar versions, concealing the hardware into an aluminum wallet and an iPhone case.


            You would think that as soon as Onity heard of this issue with their locks, they would be quick to remedy the situation.  However, the solutions they presented were replacing or upgrading the locks at the hotels cost, or installing a small plug which would block the locks data port.  The first solution would be cost prohibitive, meaning hotels would not be likely to repair the locks.  This would leave hotel guests in danger.  The second fix could probably be circumvented by a pick or screwdriver, and even if it cannot be dislodged, "the plugs would prevent the use of the hotels’ lock programming devices." Either way Onity has acted irresponsibly and needs to find an economical way to make their product more secure.

For a complete list of instructions and materials to build the pentest pen, follow the link.

No comments:

Post a Comment