Security risks of electronic password safe (box)
Huai'an Public Security Bureau Li Jijun
Blue Shield Locks
According to the input mode, the electronic password safe (box) can be divided into: password input type, magnetic card input type, fingerprint input type, etc. It has convenient password input, easy to open and use, and intelligent function (open record inquiry function). It can be changed to passwords and other advantages at any time, and is widely used in homes, businesses, and hotels.
Article 5.4.4 of the National Standard "Anti-theft Safe" GB10409-2001 of the People's Republic of China stipulates that the electronic code lock should have an emergency opening function. After 2001, electronic safes produced in accordance with national standards have emergency locks (mechanical locks).
1. Types of emergency locks
The types of emergency locks for electronic safes (boxes) are different for different manufacturers and brands. Sometimes the same grades are different due to different production years. There are basically the following:
1. Ordinary key (straight, curved groove) marble lock.
2. Plane pit marbles (social weighing) locks.
3. Set of marbles (social called mother beads) lock.
4. Cross recess lock.
5. Disc marbles (social called plum seven stars) lock.
6. Blade lock
7. No blade lock
8. Password lock
Second, the location of the emergency lock
The position of the emergency lock hole of the electronic safe (box) is different for the difference between the manufacturer and the brand.
1. Hidden behind the trademark. If it is a self-adhesive trademark, remove it, you can see the iron plate fixed with screws, remove the iron plate, you can see the lock hole; if it is a metal trademark fixed with screws, remove the trademark, you can see the lock hole .
2. Hidden inside the battery compartment. Remove the battery cover and have an emergency lock hole next to the battery; some also remove the battery to see the lock hole.
3. Hidden under a cover. This kind of cover plate and keyboard are made into one body. If you don't pay attention, you can't see it. There is a round hole underneath it. When you use it with a rod shape (such as a ballpoint pen core), the cover will automatically bounce off and remove the cover. You can see the keyhole.
4. Hidden behind the keyboard, you need to remove it to see the emergency keyhole. The method of keyboard removal is either rotating or lifting.
5. Hidden behind the film on the surface of the keyboard. This is the most difficult emergency keyhole to find. You need to remove the film (usually black) covered on the keyboard to see the keyhole.
three. Security risks of electronic password safe (box)
It can be seen from the above description that although the emergency keyhole is different in hiding mode, it can be found completely; and most of the emergency locks are relatively easy to open. The electronic password safe (box) appears to be very safe on the surface, but due to the presence of emergency keyholes, the security performance of the safe is greatly reduced.
According to preliminary investigations, 70% of the emergency locks of electronic safes are disc marble locks. It has 7 marbles. In addition to the position of the lock core, it is arranged along the circumference. The social locksmith is called the plum blossom seven-star lock. Because this type of lock is a common lock, the tool builder has developed a special tool to use, so the fastest time to open this type of lock is only 20 seconds. The remaining types of emergency locks are easier to open than the blade locks (including the springless blade lock). Although there is no possibility of opening the safe by using the input password to open the safe, the purpose of opening the safe by opening the emergency lock is a breeze for some people. The electronic passwords that manufacturers have advertised can reach more than one billion or billions of times, and they cannot be cracked, but they ignore the danger of opening loopholes due to the existence of emergency locks. As time goes by and the network platform communicates, this kind of vulnerability will soon be mastered by some people who are ill-conceived. Therefore, the possibility of theft of the electronic password safe (box) will be greatly increased.
In order to block this loophole as soon as possible and improve the security performance of the electronic password safe (box), the author believes that: "Anti-theft safe" GB10409-2001 standard, increase the emergency lock defense technology opening time provisions, mandatory installation anti- The technology opens a lock with high performance or technology that cannot be opened; only in this way can the electronic password safe (box) become a true security bastion.

Posted on