This repository was archived by the owner on Jul 8, 2026. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 72
Ideas
Matty Patatty edited this page Aug 13, 2017
·
4 revisions
- Open source (eventually)
- Single app for card read/writers, generic.
- Chameleon Mini
- Proxmark 3
- Magspoof (output only)
- USB serial magstripe reader/writers
- ???
- Support only CDC class USB serial devices
- Use cases:
- Redteaming in the field
- Writing implants
- Replacing Chamini's 8 slots & Proxmark's 0 slots with tons on phone
- Only focus on small amount of features for ^ use cases
- Read cards to phone
- Write cards from phone
- Emulate cards from phone
- See UI Ideas for more
- Allow card manual entry / sharing as sharable thing on Android
- Cards store location where they were captured.
- Brute force read mode constantly reads and scans cards like a WiFi scanner scans APs. (I like this idea, however I think we should focus on basic functionality initially, maybe add this in v1.1? If you think you can smash this out then sure, we can think of how to do that - easy enough to capture the location data with a scan anyway)
- Can then "reverse brute force" a card reader by making it BF through list of cards ordered by capture location distance
- Vibrate (optional) on card read (for brute force / continuous mode)
- ^ Do you mean put the reader in continuous read mode and vibrate when u get a read? I imagine this being useful if doing a job where you not sure when you will get a clone of someones card. you have the cloner on continuous scan and it gives you some feedback to let you know u have a read? Or is that not what you mean?
- Should capture multiple locations where seen in "red team" mode (and map them all), for better "reverse brute force" mode
- Maybe a duplicate card button if you want to duplicate an existing card to use the site code or building code and change the uid manually? Could allow you to try a few cards up / down of your current uid? Bit of a manual bruteforce to try get access to a different room.
- A site code brute forcer, set a manual uid and try bf valid site codes?
- Auto-detect card type mode (via ie. Proxmark card search mode)