Dismantling the SEOS Protocol

Black Hat Asia 2025 · Day 1 · Briefings

This talk, "Dismantling the SEOS Protocol," delves into the intricate security mechanisms of **HID Global's SEOS protocol**, a widely adopted RFID access control technology. Presented by Evil Damon, a senior penetration tester specializing in hardware and physical security, and Iceman, an RFID hacking veteran and open-source enthusiast, the session aims to demystify a system often touted as "future-proof" and highly secure. The speakers embarked on this research due to the scarcity of substantial public information beyond vendor whitepapers, driven by a fundamental desire to understand how critical security systems truly function.

AI review

This is a masterclass in reverse engineering a critical access control protocol that was deliberately opaque. Evil Damon and Iceman have done the community a tremendous service by painstakingly dissecting HID Global's SEOS, moving beyond marketing fluff to expose its true, layered security architecture. Their work, involving deep protocol analysis, cryptographic implementation, and meticulous documentation, provides an unprecedented, independent technical understanding of a system deployed globally. This is exactly the kind of transparent, foundational research that informs and empowers…

Watch on YouTube