{"id":617,"date":"2024-09-30T08:05:00","date_gmt":"2024-09-30T14:05:00","guid":{"rendered":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/?p=617"},"modified":"2024-09-30T07:55:51","modified_gmt":"2024-09-30T13:55:51","slug":"breaking-the-cryptosystem-of-auto-keyless-entry-canada-auto-thefts-surge","status":"publish","type":"post","link":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/2024\/09\/30\/breaking-the-cryptosystem-of-auto-keyless-entry-canada-auto-thefts-surge\/","title":{"rendered":"Breaking The Cryptosystem of Auto Keyless Entry, Canada Auto Thefts Surge."},"content":{"rendered":"\n<p class=\"has-secondary-color has-text-color has-link-color has-normal-font-size wp-elements-c8aac6e75270f796f285f711ec730122 wp-block-paragraph\"><strong>Imagine a sunny day setting in a coffee shop, peacefully sipping your Frappuccino drink, then someone next to you hijacks your car key fob without even touching it or talking to you.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A recent statistic by the Insurance Bureau of Canada (IBC) shows that auto theft insurance claims spiked to $1.5 billion in 2023 [3]. The numbers show a concerning car theft increase especially in the last four years, so what is the story?<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"768\" height=\"423\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/chart-1.jpg\" alt=\"\" class=\"wp-image-619 lazyload\" style=\"--smush-placeholder-width: 768px; --smush-placeholder-aspect-ratio: 768\/423;width:485px;height:auto\" data-srcset=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/chart-1.jpg 768w, https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/chart-1-300x165.jpg 300w\" data-sizes=\"(max-width: 768px) 100vw, 768px\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Canada nation wide auto claims 2023 [3]<\/p>\n\n\n\n<p class=\"has-normal-font-size wp-block-paragraph\"><strong>The Story of a Crypto Grabber \u201cFlipper Zero\u201d<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to Flipper Zero\u2019s website, the device was launched in 2020 as a community project [1]. $4.8 million was raised through a campaign on an online funding-raising platform called \u201c<strong><em>Kickstarter<\/em><\/strong>\u201d [2]. The device was promoted as a portable multi-purpose gadget that helps security nerds and researchers in security penetration tests without a need to design sophisticated printed circuit boards (PCBs) [6]. The portability of this savvy tool made it widely adopted by the security community and led to an influx of a variety of creative open-source applications published by the community developers. Starting from cloning NFC cards to sniffing any radio frequency signals. Nevertheless, the tool was not available for legitimate use only, but also for malicious hackers as a new way of exploitation techniques.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The federal Innovation, Science and Economic Development (ISED) linked the automobile theft surge to the flipper devices and revealed an investigation document (DGSO-003-24) spotting the strong relationship between the car theft surge and this emerging flipper as a <strong><em>crypto grabber<\/em><\/strong> [4].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><em>\u201cCode grabbers or crypto grabbers:<\/em><\/strong><em>&nbsp;devices designed to receive or copy the code emitted by a vehicle remote key to replicate and\/or transmit the copied code to access the vehicle.,\u201d posted by ISED.<\/em><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On February 8<sup>th<\/sup>, 2024, Canada&#8217;s federal government\u2019s public safety minister Dominic LeBlanc announced the banning of the Flipper Zero devices (Flippers) due to surging automotive thefts. These flippers can copy the wireless signals of the Remote Keyless Entry (RKE) fobs allowing offenders to steal any car without any traceability [5].<\/p>\n\n\n\n<p class=\"has-normal-font-size wp-block-paragraph\"><strong>How the Flipper Zero work?<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Sending wireless codes from key fobs to a car securely has been an arena for vehicle theft crime since the mid-nineties. Initially, the key fob was a primitive design sending a fixed (<em>static<\/em>) message from the fob to the car using a short Radio Frequency (RF). In a nutshell, the signal contains a static (fixed) frequency that maps to a specific function like opening the car doors. It was not a troubling effort for an intruder to break this system by capturing or sniffing the signal and reusing it repeatedly without needing the key fob anymore.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">With technology getting advanced and compacted, the Flipper devices just came perfectly to be a portable gadget as smaller as the keychain in size. Flippers are equipped with built-in local storage and various transceiver modules that can store signals and reemit them on target vehicles. It is not only easy to use but also can intercept fob signals without anyone noticing.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"525\" height=\"409\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Flipper-Signal.jpg\" alt=\"\" class=\"wp-image-621 lazyload\" style=\"--smush-placeholder-width: 525px; --smush-placeholder-aspect-ratio: 525\/409;width:243px;height:auto\" data-srcset=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Flipper-Signal.jpg 525w, https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Flipper-Signal-300x234.jpg 300w\" data-sizes=\"(max-width: 525px) 100vw, 525px\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>The Dilemma<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The evolution of using computer boards in automobile manufacturing imparked on various anti-theft attempts, some of these were good yet are breakable. <strong><em>Rolling Number<\/em><\/strong>s (aka, <strong><em>Rolling Code<\/em><\/strong>) is one common anti-theft design that depends on the use of <strong><em>symmetric cryptography<\/em><\/strong> calculating a challenge code that must match both the car and the fob. The car would have a computer board that maintains a list of rolling numbers (generated incrementally and used in a sequential order). These rolling numbers are used in calculating a symmetric challenge code. Once the challenge is confirmed and matched, the car allows certain actions like door opening, etc. It is a symmetric system as each time the fob is pressed by the car owner, both the car and the fob must use the same rolling number to calculate and have a matching challenge code. Once a rolled number is used, the car removes it from the list, then the next expected rolling number is incremented for the next fob use. The car maintains a lengthy list of rolling numbers list that is enough for tremendous, and long fob usage. Here is an interactive demo to play the rolling numbers game (<a href=\"https:\/\/harryli0088.github.io\/rolling-code\/\">How Rolling Code Works (harryli0088.github.io) [9].<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Each challenge code is calculated as a combination of a serial number (which could be the Vehicle Identification Number or VIN) in addition to a rolling number from the maintained list. Now consider this situation, what if an attacker sends a rolling number faking it as your original fob? now the next expected rolling number is incremented, which means your intercepted fob now is out of sequence as it has an old number that has been removed already from the list. That is why I urge you, please do not try flippers in your car.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"481\" height=\"174\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/static-vs-rolling-code.png\" alt=\"\" class=\"wp-image-622 lazyload\" style=\"--smush-placeholder-width: 481px; --smush-placeholder-aspect-ratio: 481\/174;width:490px;height:auto\" data-srcset=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/static-vs-rolling-code.png 481w, https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/static-vs-rolling-code-300x109.png 300w\" data-sizes=\"(max-width: 481px) 100vw, 481px\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Flipper Zero Launches Campaign to Fight &#8216;Absurd&#8217; Canadian Device Ban [12].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">While rolling numbers model is a good <strong><em>cryptography<\/em><\/strong> as it is hard to break the content of the signal and know the rolling number sequence, yet it is a breakable <strong><em>cryptosystem<\/em><\/strong>. The attacker did not need to know the content of the challenge code to break into the car. The implementation of this cryptosystem did not prevent the attacker from cloning the fob signal and retransmitting it again then accessing the car. The good side of this model though, is that the attacker can not reuse the same signal <em><u>multiple<\/u><\/em> times. Also, copying the fob signal is possible only the if fob is pressed physically by someone and the attacker happens to be near to that signal to capture it.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"1742\" height=\"756\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/rollingcode.gif\" alt=\"\" class=\"wp-image-623 lazyload\" style=\"--smush-placeholder-width: 1742px; --smush-placeholder-aspect-ratio: 1742\/756;width:579px;height:auto\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Rolling Code, Securing keyless entry systems [9].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The manufacturers realized a need to make it hard for the attackers to sniff the fob signals. Hence, a two-way communication is essential where the car\u2019s computer board and the key fob can communicate automatically confirming the symmetric challenge without even pressing anything on the fob. In modern cars nowadays, this typically happens when the car detects a fob in a close distance range, the car then sends a challenge code to the fob expecting a reply with a challenge code containing a correct rolling number. Once the challenge confirmation happens, the car ensures the challenge is correct and belongs to an authorized fob, then it allows the fob to perform certain actions like opening the door or even starting the engine. This is very similar to the same previous workflow except it initiates the communication automatically when there is a proximity between the car and the fob.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Unfortunately, the attackers got cleverer coordinating the hacking attack using a two-phase method called the <strong><em>Relay Attack<\/em><\/strong>. In this type of attack, the attackers establish a side shadow communication channel where each obtains the challenge code without the need to have proximity between the car and the fob, as shown in the diagram below. In this exploitation, one attacker approaches the car with a transceiver faking itself as a fob, while the other attacker has another transceiver next to the fob faking itself as a car. Both attackers have a shadow private communication channel where they can retransmit the signals received from the car and authorized original fob, establishing the proximity but at a longer distance. Now think of the coffee shop story especially when go for coffee next time, please do not panic and start looking around.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"385\" height=\"333\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Relay-Attack.jpg\" alt=\"\" class=\"wp-image-624 lazyload\" style=\"--smush-placeholder-width: 385px; --smush-placeholder-aspect-ratio: 385\/333;width:376px;height:auto\" data-srcset=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Relay-Attack.jpg 385w, https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Relay-Attack-300x259.jpg 300w\" data-sizes=\"(max-width: 385px) 100vw, 385px\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">How the auto relay on attacks work [10]<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">One puzzling point on the rolling number method as a symmetric cryptography implementation is, it lacks the sense of identity for the communicated devices. The <em>Relay Attack<\/em> example shows that any attacker can fake being a car or a fob. The question now is how can the car and the fob be sure of the identity of the communicating devices? Yes, the answer is using <strong><em>asymmetric cryptography<\/em><\/strong> and <strong><em>digital signatures<\/em><\/strong>. However, this entails various questions and concerns. I really hope that we do not pay for annual fees to renew our car fobs.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>So, What Is Missing?<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">There are a few noticed issues in the current anti-theft models:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Absence of <em>I<strong>dentity Authentication <\/strong><\/em>for the communicating devices. How the car can be sure it communicates to an authorized fob, and vice versa as well, how the fob can be sure it communicates to a car it belongs to? How to ensure none of both are being intercepted by fake transceivers?<\/li>\n\n\n\n<li>The <strong><em>proximity<\/em><\/strong> is not a security control.<\/li>\n\n\n\n<li><strong><em>Symmetric<\/em><\/strong> key is a strong <strong><em>cryptography<\/em><\/strong> if used carefully. The <strong><em>cryptosystem<\/em><\/strong> implementation though is a key factor to secure the anti-theft model.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>An Interesting Question, Can Flippers Perform \u201cRelay Attacks\u201d?<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It is a controversial debate, and the answer is yes and no. It depends on the exploitation circumstances. The Flipper enthusiastic community is creative and is adding more attached gears to the device extending the RF range and, in some cases, it can crash a cell phone remotely.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img decoding=\"async\" width=\"125\" height=\"125\" data-src=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/Flipper-expansion.jpg\" alt=\"\" class=\"wp-image-625 lazyload\" style=\"--smush-placeholder-width: 125px; --smush-placeholder-aspect-ratio: 125\/125;width:148px;height:auto\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Expansion Board for Flipper Zero [11].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In contrast, other security experts perceived Flippers as a portable handy gadget that went viral on social media. However, they still see Flipper devices as limited in hardware and radio frequency. In fact, experts know other alternatives in the market can do better. Ivan Reedman, the director of secure engineering at IOActive, explained, \u201c<em>To attack with the Flipper Zero is substantially more complex than simply relaying the signal to the keyfob,&#8221; said Reedman. He also said relay attack devices are readily available or can be easily assembled.<\/em>\u201d [7].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Conclusion<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">There are various RF hacking devices used in auto theft existed in the market for years. What made Flippers Zero so popular is its portability and its ability to exploit wide different vulnerabilities beyond auto theft. In fact, the Flipper Zero became very visible as it caught social media attention and led to a government demand for banning. There will always be a new device called whatsoever, and the banning will never prevent future auto theft. These anti-theft systems are weak already, the government should encourage cryptographers and researchers to study these cryptosystems and work with the manufacturers to enhance their security posture for these systems. Finally, wrap this reading with Dr. August Kerckhoff \u2018s principle, <em>\u201c<u>The system must not require secrecy and can be stolen by the enemy without causing trouble<\/u>. That the method used to encipher data is known to the opponent, and that security must lie in the choice of key.\u201d <\/em>[8].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>References<\/strong>:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[1] Flipper Zero corporation. (n.d.). Retrieved from https:\/\/flipperdevices.com.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[2] Flipper Zero &#8211; Multi-tool Device for Hackers. (n.d.). Retrieved from https:\/\/www.kickstarter.com\/projects\/flipper-devices\/flipper-zero-tamagochi-for-hackers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[3] New data shows severity of Canada\u2019s worsening auto theft crisis &#8211; Theft insurance claims top $1.5 billion in 2023. (2024, May16). Retrieved from https:\/\/www.ibc.ca\/news-insights\/news\/new-data-shows-severity-of-canada-s-worsening-auto-theft-crisis.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[4] Consultation Relating to the Use of Radiocommunication Devices in Auto Theft. (2024, May). Retrieved from https:\/\/ised-isde.canada.ca\/site\/spectrum-management-telecommunications\/en\/learn-more\/key-documents\/consultations\/consultation-relating-use-radiocommunication-devices-auto-theft<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[5] Federal action on combatting auto theft. (2024, Feb 8). Retrieved from https:\/\/www.canada.ca\/en\/public-safety-canada\/news\/2024\/02\/federal-action-on-combatting-auto-theft.html.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[6] Flipper Zero gets a big firmware upgrade, and some amazing new features. (2024, Sept 11). Retrieved from https:\/\/www.zdnet.com\/article\/flipper-zero-gets-a-big-firmware-upgrade-and-some-amazing-new-features.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[7] Canada&#8217;s Planned Flipper Zero Crackdown Provokes Backlash. (2024, Feb 13). Retrieved from https:\/\/www.bankinfosecurity.com\/canadian-flipper-zero-planned-crackdown-provokes-backlash-a-24348.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[8] Auguste Kerckhoffs, \u2018La cryptographie militaire,\u2019 Journal des sciences militaires, vol. IX, pp. 5\u201338, Jan. 1883 [PDF], pp. 161\u2013191, Feb. 1883 [PDF].<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[9] Rolling Code, Securing keyless entry systems. (n.d.). Retrieved from https:\/\/harryli0088.github.io\/rolling-code.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[10] Keyless car theft: What is a relay attack, how can you prevent it, and will your car insurance cover it? (n.d.). Retrieved from https:\/\/leasing.com\/guides\/relay-car-theft-what-is-it-and-how-can-you-avoid-it.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[11] Expansion Board for Flipper Zero. (n.d.). Retrieved from https:\/\/oman.whizzcart.com\/product\/20972372\/for-flipper-zero-modification-module-expansion-board-for-flipper-zero-2-4g-module-expansion-support-nef-sniffer-mousejacker-cc1101-module-wifi-multiboard-development-board-for-flipper-zero.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">[12] Flipper Zero Launches Campaign to Fight &#8216;Absurd&#8217; Canadian Device Ban. (2024, March 20). Retrieved from https:\/\/www.pcmag.com\/news\/flipper-zero-launches-campaign-to-fight-absurd-canadian-device-ban.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Imagine a sunny day setting in a coffee shop, peacefully sipping your Frappuccino drink, then someone next to you hijacks your car key fob without even touching it or talking to you. A recent statistic by the Insurance Bureau of Canada (IBC) shows that auto theft insurance claims spiked to $1.5 billion in 2023 [3]. &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/2024\/09\/30\/breaking-the-cryptosystem-of-auto-keyless-entry-canada-auto-thefts-surge\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Breaking The Cryptosystem of Auto Keyless Entry, Canada Auto Thefts Surge.&#8221;<\/span><\/a><\/p>\n","protected":false},"author":664,"featured_media":618,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"footnotes":""},"categories":[8,1],"tags":[26,27,21,29,25,24,28,11],"class_list":["post-617","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-isec-601","category-uncategorized","tag-auto-theft","tag-canada-auto-theft","tag-cryptography","tag-cryptosystem","tag-flippers","tag-flippper-zero","tag-isec601","tag-security","entry"],"featured_image_src":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/bg-ISEC601-3-600x400.jpg","featured_image_src_square":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-content\/uploads\/sites\/119\/2024\/09\/bg-ISEC601-3-600x600.jpg","author_info":{"display_name":"Tamer Zeineldin","author_link":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/author\/tamer-zeineldin\/"},"_links":{"self":[{"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/posts\/617","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/users\/664"}],"replies":[{"embeddable":true,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/comments?post=617"}],"version-history":[{"count":2,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/posts\/617\/revisions"}],"predecessor-version":[{"id":626,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/posts\/617\/revisions\/626"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/media\/618"}],"wp:attachment":[{"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/media?parent=617"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/categories?post=617"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wpsites.ucalgary.ca\/jacobson-cpsc\/wp-json\/wp\/v2\/tags?post=617"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}