QuestionQ144

Wireless Penetration Testing Methodology

StarMotel is a prominent hotel chain worldwide that uses high-tech solutions to make guests’ stays easier. As part of these solutions, it deployed RFID cards that allow a guest to access their assigned hotel room.

Observing the RFID technology and intending to exploit it, John, a professional hacker, decided to hack it to gain access to any room in the target hotel. He first retrieved an RFID keycard from the target hotel’s trash and, using an RFID card reading and writing tool, identified the master keycard code after several attempts. He then cloned it onto a new RFID card, giving him unrestricted access to any hotel room in the building.

Identify the RFID attack John performed against the target hotel.

  • A RFID spoofing attack
  • B Reverse engineering attack
  • C RFID replay attack
  • D Power analysis attack
Explanation

RFID spoofing involves copying valid RFID credential data onto another card so that the cloned card impersonates an authorized credential. The cloned master-card credential is accepted by the hotel’s access-control readers as legitimate.

Community Discussion

No comments yet. Be the first to start the discussion!