PDA

View Full Version : New project for FINDING Ki-function ?


Kar@mba
02-13-2003, 18:32
The offer for all:
I think what good team can investigate the FUNCTION for KI-key generation on IMSI based. So, want any BIG GSM-MasTeRs;) be the leaders of this new project?
And all members helping search this function: we can send in group old IMSI+ Ki for example.
What talking Masters? :)


----------------------------------------
Just a talk... just a talk... =)

jsompis
02-14-2003, 02:42
Do u mean KI=f(IMSI) ???.

I think ki not related to IMSI, this is my opinion olny.

Best Regards,
JSompis

SirGraham
02-14-2003, 10:03
Invalid message.

SirGraham
02-14-2003, 10:12
Hi Kar@mba,

in other forum we talking about it.

In some book and web pages show this authenticate secuence:

BTS
send Rand number ---------------> Card Ki = f (IMSI)
Ki -> A3A8 -> SRes & Kc

Make the same
of SIM phone <--------------- Send SRes


uhmmmm..... If this is true.....

Some questions to start to investigate:

* The Ki is calculated all times that the BTS send Rand number
or only the first time? (by the manufactured: Gemplus, ect...)

You can check this if you can change the value of IMSI in original card.

*If you make this.... Changed the operative Ki of this card?
(File 7F20:6F07 of the SIM Card, you can see with XSim)

But You canīt change the PIN of original card because are protected with the administrative PIN.... (normaly PIN4)

*Is there any method to obtain the Administrative PIN? :D

I think It is one way to work.....

Best Regards,
Sir Graham.

Kar@mba
02-18-2003, 19:23
SirGraham!
I'm can't do this - cose i'm only beginner... And i think - only really master can do it. Thanx about new info.
Want you be a moderator of this project?

SirGraham
02-19-2003, 12:03
Hi Kar@mba,

Thanks for you offer.

For the moment I working in a hardware to extract the PINs. Sorry, but I havenīt got any time to moderator more proyects....
(I working in three proyects more than XSim... ufffff).

If I have news about of this, I put a message in this forum.

Best Regards,
Sir Graham.