Hacker Creates Fake, Effective Boarding Passes
L33tdawg: Somewhat similar to Antonios Chariton's Exploiting Passbook talk from #HITB2014AMS
Przemek Jaroszewski, head of Poland’s chapter of the international Computer Emergency Readiness Team program, was scheduled to present what was likely one of the more basic but frightening hacks at this week’s Defcon conference in Las Vegas—an Android app that generates fake boarding passes.
As reported by Wired, Jaroszewski has used the app multiple times to access the elite lounges of airlines, including his favorite, Turkish Airlines. Jaroszewski says he has never used the fake passes to go anywhere he wasn’t already allowed—he originally created the app to bypass a scanner at a lounge where he already had privileges. But the same process could be used not just to access posh hang suites, but, Jaroszewski claims, to bypass no-fly lists.