Found hidden safe, should we crack?
bogleheads.org
bogleheads.org
On the other hand, I would try cracking it myself, for fun. If not, call someone.
In the end we drilled a hole through the top plate (did not take very long but made a lot of noise) and stuck a little camera through to find it was empty (as far as we could see).
Cemented over it, new floor over that, left as a surprise to future owners.
Feynman was famous for "cracking" safes in his time (more like cleverly trying all possibilities): https://www.youtube.com/watch?v=Waw11zhaKSk
> a de Bruijn sequence of order n on a size-k alphabet A is a cyclic sequence in which every possible length-n string on A occurs exactly once as a substring (i.e., as a contiguous subsequence). Such a sequence is denoted by B(k, n) and has length k^n, which is also the number of distinct substrings of length n on A; de Bruijn sequences are therefore optimally short.
That is, it reduces the total number of input symbols required to traverse all permutations from (k^n)*n to (k^n)+n-1. i.e each sequence attempt takes only one extra input symbol regardless of the code length (n) or alphabet (k).
Once I learned this (actually originally ended up figuring out for k=2 since google failed to reveal this page), I started to notice the critical difference between short 4 digit permutation keypads on doors: those that accept a continuous stream of input characters without a reset are vulnerable to this shortened brute force sequence; whereas those that require you delimit sequences with a separate key are not.
Specifically: a non-delimited 4 digit decimal keypad takes at most 10003 input chars to crack, whereas a delimited one with a reset button takes 50000 (~5 times more, n+1 for the reset button). I'm not sure if continuous form are merely cheaper or the delimited form are simply newer and lock makers a little wiser?
[edit]
I suppose in the worst case for the non-delimited 4 digit keypads, if you also figure out the subset of alphabet used (i.e UV light button trick), then it reduces to (n^n)+n-1 = 259 input symbols !! except it adds the requirement of generating the sequence dynamically... but that's hardly difficult for n=k=4... and if any buttons are used more than once it reduces k further! e.g if a button is used twice then (4^3)+4-1 = 67!
> I'm not sure if continuous form are merely cheaper or the delimited form are simply newer and lock makers a little wiser?
Found this article [0] on exactly the same thing. Except he goes further to ask the difficulty added by simply increasing the alphabet by one (without adding delimiter key, and remaining vulnerable to de brujin sequences) vs adding a delimiter key. Answer: It depends on whether n > k.
The reduced alphabet attack works equally on both forms as far as I can see.
[0] https://www.johndcook.com/blog/2019/10/22/hacking-with-de-br...
I suspect the 70% success is more to do with mechanical reliability, since the device must be compatible with multiple different mechanical combination locks that have different physical characteristics and may be far from in perfect operating condition - and also be able to operate at a reasonably high speed to be able to traverse all combinations in reasonable time even when using a de Bruijn sequence.
Eventually I got bored and started playing with it. Since it was locked open, it was possible to start taking apart the door from the inside. Once the tumblers were exposed, I figured out the combination.
It was tremendous fun!
If anyone here is in a similar situation, I recommend cracking the safe. Building the robot seems like a nice bit of mechanical engineering:
https://learn.sparkfun.com/tutorials/building-a-safe-crackin...
https://www.theatlantic.com/technology/archive/2018/12/profe...
He's got a good instagram page as well: https://www.instagram.com/santore_safecracker/
I’d go the brute force method, personally. That safe would get opened . . .
That’s probably the best thing I found. Less savoury was the discovery that the house was, in fact, owned by rats. They were everywhere. There was a lovely little nest made from a bag of straw and lined with a newspaper from 1938. They’d eaten into the expansion tanks in the loft so they had a fresh supply of water.
All the radiation shielding would obviously be get important. :D
Not to mention, just randomly drilling holes in a safe is a pretty bad idea, as it might contain a glass relocker, or any other relocker you might accidentally trigger.
Examples:
Sewn up - https://www.thesun.co.uk/news/3319119/man-carves-open-throat...
Grinding wheel still in the face - https://www.reddit.com/r/Welding/comments/1sq6v7/wear_your_f...
Explosives?
As far as relockers go, you've already resorted to destructive methods. If you find that it's worth opening after drilling, then you'll find a way in.
Huh. I may have just figured out what I'm getting for that tricky friend on my shopping list.
90^5 / 3 / 24 / 3600 = approx. 23000 combinations/s
That rate seems much too high, for either a mechanical lock mechanism or an electronic keypad (which I guess would have some kind of lockout for brute forcing anyway).
No idea if that's a common problem with safes, but it's pretty clear that a safe would not have any outside maintenance access to fix a problem like that (other than drilling it open, which seems to be routine enough given the "yeah, we can make it usable again" offer)
2. It's a trap lock and was never designed to be operable in the first place.
Or as others said, the lock mechanism could be faulty or seized.
For example a standard Master dial lock has 40 hash marks but, IIRC, older ones had only about 12 valid positions. There was a trick you could use to find the third position, which would have left 144 combinations try except there were a few invalid combinations reducing to around 120. This is for a lock that a naive estimate would but at 40^3 or 64,000 combinations.
I once witnessed someone open a safe in a few hours. It is truly amazing to see these kind of proffesionals at work. How they approach this puzzle and the knowledge they can acquire by just feeling. Especially considering it took me a few tries to open the safe when I knew the combination.
But its not likely to tell the difference between 50-0-50 and 49-0-49. I suspect the "70% chance" for the robot to succeed is because it's going to try every 4th number or 5th number to hugely reduce the search space.
Trying every 5th number is just 8000 combinations!
Define "too long"? The post says it would take a specialized robot up to 3 days, with no guarantee of success.
Depends on the reason for moving out. Being deceased for example does make keeping material goods a bit more challenging.
I remember a program on TV, where they opened a few hundred old bank boxes hoping to find a treasure map. They of course did not find anything. Wouldn't you check many times if any box had anything of value before decommissioning them?
There is something very exiting and addicting with mystery boxes though...
[1] https://forums.somethingawful.com/showthread.php?threadid=11...
If it's about what might be in there... shouldn't it be fairly easy to drill a small hole (given the right type of drill) and use a miniature/endoscopic camera to take a look?
On the other hand, that you want to use it, then design your own robot and try all combinations. There is no time constraint since you're the owner, no need to "finish in 3 days"
https://www.bogleheads.org/forum/viewtopic.php?t=295877&star...
I'm surprised there's not a TV show yet.
A couple have been faked for karma but since no one has figured a way to make money yet most seem real.
https://www.reddit.com/r/WhatsInThisThing/
The catch is, if it has anything the person will not follow up, else someone might claim it or the police might take away their new drug stash and weapons.
By my tally, the min is $150 for one days rt travel (assuming rt = back and forth) + $300 for combo machine = $450
And max would be $150/day * 4 (3 days combo machine + 1 day drilling) + $300 combo machine + $600 drilling - $300 credited from combo machine = $1,200
Not that this is important to the story, but it bugs me when I'm clearly missing something.
That said: If the safe is old and the locksmith is pretty good, there's a legit possibility that the locksmith could just crack the safe. I had an old safe worked on and the locksmith told me he could open it without the combo just from the feel of the tumblers.
Having a safe in one’s home is a useful thing indeed.
Getting a ~$700 safe for $600 with free installation might be a good deal - but only if you were in the market for a $700 safe to begin with :)
[1] https://postimg.cc/QK81zbKC [2] https://www.safesetc.com/brands-hayman-safes-hayman-floor-sa...
It doesn't seem in any way a "safe" safe, it is just a very ordinary low-cost "home" safe, it shouldn't be that dificult to open it, it looks similar to the one that Sparkfun's Nathan Seidle founder opened up with an (el-cheapo, around 200 US$ in parts) self- made robot:
https://www.youtube.com/watch?v=_fTz2D6x20U
This article details how the actual possible combinations are much less than the theorical ones on these "home" safes:
https://www.tomsguide.com/us/safecrack-robot-defcon25,news-2...
And here is the full tutorial/howto:
https://learn.sparkfun.com/tutorials/building-a-safe-crackin...
Lots of smart people, willing to share with you ways to live below your means and invest the difference. Great place.
Looks kind of fun.