The antiđŸš«-derailment🚃 & threadđŸ§” hijackingđŸ”« threadđŸ§” ⁉

This is what I ‘normally’ would do

1 Like

I think I’m SOL

Setting: Ultimate Magic card to NTAG 210	
Incorrect ul	
Writing new version	0004040101000b03	
ERROR: 	Failed to write version

Guess it’s time to start saving for a UG4!

2 Likes
script run hf_mf_ultimatecard -c

for reference, here is the output of my gen4 tester card:

[usb] pm3 --> script run hf_mf_ultimatecard -c
[+] executing lua C:\PM3\ProxSpace\pm3\proxmark3\client\luascripts/hf_mf_ultimatecard.lua
[+] args '-c'

========================================================================================
                        Ultimate Magic Card Configuration
========================================================================================
 - Raw Config           00000000000002000978009102DABC1910101112131415160400080051E1
 - Card Protocol        MIFARE Classic Protocol
 - Ultralight Mode      Disabled
 - ULM Backdoor Key     00000000
 - GTU Mode             Disabled
 - Card Type            MIFARE 1k S50 4-byte UID
 - UID
 - ATQA                 00 04
 - SAK                  08

[+] finished hf_mf_ultimatecard

Here is gen1 and gen2 (same output):

[usb] pm3 --> script run hf_mf_ultimatecard -c
[+] executing lua C:\PM3\ProxSpace\pm3\proxmark3\client\luascripts/hf_mf_ultimatecard.lua
[+] args '-c'

ERROR:  partial read of configuration, use -k or change cfg0 block

[+] finished hf_mf_ultimatecard
1 Like

Getting the second one. Definitely not a gen4, looks like I got the crappy batch!

2 Likes

Aw darn!

So, there is ultimate gen 4 and gen 4. If I recall, the correct command to test for a gen 4 GDM block is

hf mf gdmcfg
1 Like

I thought the 2 were the same :sweat_smile:
Whats the difference?

1 Like

Same :confused:

Found this in the search for answers, though it does not answer your question it is a neat reference.

2 Likes

The UG4 is easier to use and more powerful. ZUID is a subtype of gen 4. USCUID is the most versatile of them (not a UG4) that i recall. USCUID also lets you set the byte length of the UID, IIRC. The info is all in the repo linked on the flexUG4 page. I’m sure @Equipter could explain the nuances better.

4 Likes

brain will load more tomorrow but

gen4 has two types, UMC and GDM, UMC is the ug4 which can change between multiple different chip types with multiple customisation options for all of them, truly the UltimateMagicCard.

GDM is our USCUID, ZUID etc (there’s so many of these)

USCUID is essentially the core of this family, it is a mifare classic that has a configuration block that allows it to change multiple things about itself like UID length, magic type, shadow mode, signature etc

ZUID and the other branch variants have this same configuration block but not all of the bytes work so it has only a few of the features, what features it has are dependent on the exact variant you have. USCUID and ZUID are the most common and you’ll sometimes find that gen1s you receive are actually ZUID because they permanently have gen1 enabled and can’t really exist as a standalone product due to the lack of functionality so sellers ram them into fobs and pretend they’re gen1a, hardly a problem but something worth understanding.

the flipper supports gen4 UMC, its conveniently easy to use the flippers UMC support to configure the chip to fit most dumps you’d want to load, to do more you’d need a proxmark and the fusetool to generate the raw commands to change config.

TL;DR: if you see “Gen4” by itself it means it’s a complex IC that is not tied to one configuration of a given chipset, and you’d need to probe further to figure out what exactly is being sold to you.

edit to add: https://github.com/RfidResearchGroup/proxmark3/blob/master/doc/magic_cards_notes.md

is the bible.

it can be tricky to understand (you’ll know what i mean when you read it) if you want clarification on anything (at all, not just magic cards) feel free to inbox me, we’ll figure out what it is that needs explaining and i’ll open a forum post about it so people can see/join the conversation and so it can persist in the backlog incase someone else has the same question (the dangerous things forum has GREAT SEO for a lot of rfid related questions)

6 Likes

Well, I think I finally got it, hidden into the gut of the ZMK documentation and the GitHub file, there is a way to build a “wipe firmware” to fully reset the boards 
 Because when you flash a nice!nano, it doesn’t wipe the old firmware, just change the new settings :man_facepalming::expressionless::roll_eyes:
Wipe both boards, put the firmware back and everything works as expected :partying_face:
Waiting impatiently on the keycaps :grin:

Felling much better today, less irritation and pain, so I am starting to hopeful. I need to be careful for a few days to make sure I don’t hurt it but we’re heading in the right direction.

4 Likes

Why’s it green?

1 Like

flying back from austria the deicer was orange, when i asked the flight attendant she said so they know where they have and haven’t sprayed

Win 11 running. Kinda jacked at the moment. SO MANY PASSWORDS.

Orange is Type 1 De-icing fluid, heated to minimum 160 degrees, used to melt the frost/ice/snow off the plane.

The Green is Type 4 Anti-icing fluid (can also be type 2 or 3, more of a yellowish, but we just use green t4), used to coat the wings so any snowfall will sit on top of that and blow off during takeoff.

7 Likes

I’d rather have a clock, that is indeed disgusting.

Unrelated to what you’re currently working on, try hf mf gdmcfg --gen1a on that fob

3 Likes

I remember 1 being more deep red
 wonder if they changed the colors a bit

1 Like

Partially depends on the manufacturer. Some are more reddish, some bright orange.

2 Likes

Great now I have a new want
 Thanks


6 Likes