Matt Gattis
About Me

Sorry Charlie!

I've never been a fan of Boston's poor excuse for a public transportation system. I'm not sure what combinations of failures led to such a poor system for getting around in such a tiny city. It has been in the news lately because a few MIT students exposed holes in basically every security measure it uses (including getting unlimited free rides from the RFID cards). The MBTA responded by suing the students and trying to prevent them from revealing their findings. The court ultimately found that this last ditch security measure was not valid, and it failed like the rest of them. I've read through their presentation, and I'm thoroughly impressed. Plenty of social engineering along with brute-force tactics aimed at weaknesses. It's still pretty embarrassing how easy the MBTA made it for them though. Without further adieu, here's the presentation:

http://www-tech.mit.edu/V128/N30/subway/Defcon_Presentation.pdf

0 comments, 0 trackbacks (URL)
Add Comment
Ignore this field:
 optional; will not be displayed
Don't put anything in this field:
 optional
Don't put anything here:
Leave this empty:
URLs auto-link and some tags are allowed: <a><b><i><p>.