Archive for the ‘APDU hex Scanning’ Category

Will iphone 3G 3.0 OS and iphone 3GS be unlockable and how to create an unlock solution Fast.

June 14, 2009

This Blog article is about new and emerging phone models and software versions and will give an insight to users on how the rebel simcard Team create unlock solutions.

Lets Take for example the new iphone 3G 3.0 OS and the iphone 3GS model due for release very soon this month. This will be a real challenge and we shall see which company can produce the World First Solution for unlocking.

The Rebel simcard Team invest very heavilty in R&D and is the reason behind the success of Rebel Simcard. Back in January the Rebel Simcard Launched the Worlds First Reverse Engineering Tool for Scanning Hex Data used to Create unlock Solutions for Rebel Simcard for all the Beta Testers/Resellers and for Students of Smart Card Technology worldwide.

The Tool comes with 4 FPCB (flexible Printed Curcuit Board) connections that can fit in to virtually any mobile phone in the world. This way once the setup has been made its possible to then plug the network simcard in the hex scanner and thus capture all data communications that are exchanged by the mobile phone and simcard.

This is a tool kit to help scan network simcards so we can add support to the rebel sim for new network simcards and new iphone firmwares and models that come out and continue to dominate the mobile phone simcard unlocking technology Industry.

This shows how serious we take our leadership of the simcard unlocking Field.

Also this toolkit can be used by the enginners of tomorrow to learn about APDU’s and scanning methods.

As the rebel sim card Team has distributed over 800 Hex scanners worldwide. This is the only reason rebel simcard is and will always have Worldwide Compatiblity as Rebel simcard is tested on mobile networks all over the world and data is collected and new improvemnts are made all the time as we can obtian realtime data and feedback from our beta testig Team.

The Other Real Benefit of being a Rebel simcard user is the ability for users to apply the updates in the comfort of thier home and when new updates and releases are created by us then simply users need to use a PC and the Update Software we provide with the Rebel Simcard Programmers.

This is of great benefit as rebel simcard users do not need to keep on purchasing new rebel simcards with new firmwares and then have to wait for delivery of the products each time apple release a new firmware. As the Rebel simcard Clients are Based worldwide this can save alot of money on Postage fees and avoid additional delays in using the Latest Technology from us.

The Rebel Simcard Team have always Delivered World First Solutions and we are very committed and focussed at the  moment on bringing  the world the First unlock solution for the iphone 3.0 OS and iphone 3G model.

IF  you have a mobile phone where no unlock is possible and you would like to work with us to make the solutions possible then kit is the way forward and by sending us hex scans made using the scanner we can look in to this without having to send the phone to us.

If you are interested in scanning new phone models and firmwares of phones and wish to provide the scan data to the rebel simcard team then this Kit is Designed Especially for you. At the same time you can learn more about smarcards and how they communicate with the mobile phones and extend your knowledge and have chance to Win a Trip to to the UK HQ of rebel simcard and recieve extra training on Creating new Unlock Solutions using smartcard technology.

Kit Includes

1 Hex Scanner Kit

1 Rebel Compact Programmer

1 Usb Cable

1 Dummy Sim Adapter

1 Rebel Sim No Cut sim

2 Rebel Cut sims

1 Rebel sim cutter

Price per Unit (piece): £40.00
US $65.80

H

Solutions Point Limted Launches the Rebel Hex APDU Scanner Tool

February 3, 2009

Solution Point Limited the creators of Rebel Simcard have announced availablity of its Latest product aimed at enthusiasts and hobbiest to scan data communication between network simcard and mobile phones.

This is a tool kit to help scan network simcards so we can add support to the rebel sim for new network simcards that come out and continue to dominate the mobile phone simcard unlocking technology Industry.

This shows how serious we take our leadership of the simcard unlocking Field.

Also this toolkit can be used be the enginners of tomorrow to learn about APDU’s and scanning methods.

Scan APDU Commands From GSM/UMTS Simcards. Ideal To Learn more and to help us make rebel sim work on the newer phones that just released. Hardware Based APDU Sniffing for RS232 Packets.


Scan APDU Commands From GSM/UMTS Simcards for Analysis

Hardware Based APDU Sniffing for RS232 Packets.

All Software Required is here

What is ATR ?

July 10, 2008

ATR

ATR is used for conveying parameters that are required by the card to establish a data communication pathway. This message is conveyed as soon as the power in the smart card is set to on and stands for answer to reset (ATR).

It is usually up to 33 bytes, contains the transmission parameters such as T = 0 and T = 1, which are supported by the card. It also carries all the necessary information that is required to be known by the host such as:

  • Data transmission rate
  • Card hardware parameters
  • Chip serial number
  • Mask version number

What is an APDU?

July 10, 2008

Answer 
The APDU (Application Protocol Data Unit) is the communication unit between a reader and a card. The structure of an APDU is defined by the ISO 7816 standards.

There are two categories of APDUs: command APDUs and response APDUs. As the name implies, the former is sent by the reader to the card: it contains a mandatory 5-byte header and from 0 to up to 255 bytes of data. The latter is sent by the card to the reader: it contains a mandatory 2-byte status word and from 0 to up to 256 bytes of data.

The APDU is an application level protocol as specified in the ISO 7816-4, which takes place between a smart card and a host application for the communication purpose.

APDU consist of two structures, as defined below:

  1. Command APDU (C-APDU: this command is used by the host application to send command to the card.
    1. Header: it consist of 4 bytes:-
      1. Class of instruction (CLA)
      2. Instruction code (INS)
      3. Parameters: P1 and 2
    2. Optional body: varies in length.
      1. Lc = specifies the length of the optional body or the data field (Bytes).
      2. Le = specifies the length of the data or the number of bytes that the host is expecting in response to the command sent.
      3. Data field contains the data that are sent to the card for executing the instruction specified in the header. 
  2. Response APDU (R-APDU): this command is used by the card in order to respond to the command send by the host application.
    1. Optional body: it consist of data field whose length is specified by the Le
    2. Trailer: it consist of two words SW1 and SW2 called as status word, which denotes the processing state in the card after the execution of the command APDU.

Structure of the APDU is given below:

1. Command APDU

 

Mandatory Header Optional body
CLA INS P1 P2 Lc Data Field Le

 

2. Response APDU

 

Optional body Mandatory Trailer
Data Field SW1 SW1

 

Note:

  • A command is always paired with response APDU
  • The data field is optional in both command APDU and response APDU.

The second case further divides the command and response APDU in four categories.

  1. There is no transfer of data to or from the card
    1. C- APDU: contains header only.
    2. R- APDU: contains only the trailer status word. 
  2. There is no transfer of data to the card but data are returned from the card
    1. C- APDU: contains Le only, which specifies the number of data bytes in the corresponding response APDU. 
  3. There is transfer of data to the card but no data is returned from the card
    1. C- APDU: contains Lc and data field, Lc which specifies the length of the data field.
    2. R-APDU: contains the trailer status word SW1 and SW2. 
  4. There is transfer of data to the card and data is returned from the card
    1. C- APDU: contains Lc and data field and Le.
    2. R-APDU: contains both the optional body and the trailer status word SW1 and SW2.