Migrate classic contactless smart card systems to the next security level.
MIFARE Plus brings benchmark security to mainstream contactless smart card applications. It is the only mainstream IC compatible with MIFARE Classic offering a seamless upgrade path, with minimal effort, for existing infrastructure and services.

Key applications:
-Public transportation.
-Access management, e.g. employee, school or campus cards.
-Electronic toll collection.
-Car parking.
-Loyalty programs.

Independent Security Reviews:
-BSI Common Criteria Certification EAL 4+
-University of Bochum
-Katholieke Universiteit Leuven

Key features:
-2 or 4-KB EEPROM.
-Simple fixed memory structure compatible with MIFARE Classic 1 K (MF1ICS50), MIFARE Classic 4 K (MF1ICS70).
-Access conditions freely configurable.
-Smooth migration from MIFARE Classic to MIFARE Plus security level supported.
-Open standard AES crypto for authentication, integrity and encryption.
-Common Criteria Certification: EAL4+ for IC HW and SW.
-ISO/IEC 14443-A unique serial number, 4 or 7 byte and random IDs.
-Multi-sector authentication, multi-block read and write.
-Anti-tear function for writing AES keys.
-Keys can be stored as MIFARE Classic CRYPTO1 keys (2 x 48 bit per sector) or as AES keys (2 x 128 bit sector).
-Supports virtual card concept.
-High data rates up to 848 kbit/s.
-Available in MOA4 modules or 8-inch sawn bumped wafer.

NXP MIFARE Plus is based on open global standards both for air interface and cryptographic methods. It is available in two versions: MIFARE Plus S, the Slim version, for straightforward migration of MIFARE Classic systems, and MIFARE Plus X, the eXpert version, which offers more flexibility to optimize the command flow for speed, privacy and confidentiality. MIFARE Plus X offers a rich feature set, including proximity checks against relay attacks.

MIFARE Plus is fully functional backwards compatible with MIFARE Classic 1 K / 4 K. Interoperability with MIFARE Classic has been verified by the independent MIFARE Certification Institute. MIFARE Plus offers the possibility to issue cards seamlessly into existing MIFARE Classic applications, before the infrastructure is upgraded. Once the security upgrades are in place, MIFARE Plus cards can be switched to a more secure mode in the field with no customer interaction necessary. AES (advanced encryption standard) is then being used for authentication, encryption and data integrity.

MIFARE Plus supports high-speed communication between card and terminal at up to 848 kbps/s, for time critical services. The read range of up to 10 cm increases the convenience of the touch-and-go experience.

Security Levels:
MIFARE Plus cards supports one pre-personalization and 3 security levels. Cards operate in one security level at any given time and can only be switched to a higher level.

Security Level 0
MIFARE Plus cards are pre-personalized with configuration keys, level switching keys, MIFARE Classic CRYPTO1 and AES keys for the memory.
Security Level 1
In this level the cards are 100% functionally backwards compatible with MIFARE Classic 1K / 4K cards. Cards work seamlessly in existing MIFARE Classic infrastructure.
Security Level 2
Mandatory AES authentication. MIFARE Classic CRYPTO1 for data confidentiality.
Security Level 3
Mandatory AES for authentication, communication confidentiality and integrity. Optional proximity detection (MIFARE Plus X only).

An automatic anti-tear mechanism is available for secure deployment of rolling keys. If a card is removed from the field during a key update, it either concludes the update or automatically falls back to the previous key. NXP recommends 7Byte UID, but offers 4B UID versions of MIFARE Plus during migration. MIFARE Plus is available in the proven MOA4 module and as sawn bumped wafers, no changes for existing manufacturing processes necessary.

Migrate classic contactless smart card systems to the next security level! MIFARE Plus brings benchmark security to mainstream contactless smart card applications. It is the only mainstream IC compatible with MIFARE Classic 1K (MF1ICS50) and MIFARE Classic 4K (MF1ICS70) which offers an upgrade path for existing infrastructure and services. After the security upgrade, MIFARE Plus uses AES-128 (Advanced Encryption Standard) for authentication, data integrity and encryption. MIFARE Plus is based on open global standards for both air interface and cryptographic methods at the highest security level.
MIFARE Plus is available in two versions: MIFARE Plus X and MIFARE Plus S.
• The MIFARE Plus X (MF1PLUSx0y1, described in this data sheet) offers more
flexibility to optimize the command flow for speed and confidentiality. It offers a rich feature set including proximity checks against relay attacks.
• The MIFARE Plus S (MF1SPLUSx0y1)is the standard version for straight forward migration of MIFARE Classic systems. It is configured to offer high data integrity.
Features and benefits
2 kB or 4 kB EEPROM
Simple fixed memory structure compatible with MIFARE Classic 1K and MIFARE Classic 4K
Memory structure identical to MIFARE Classic 4K (sectors, blocks)
Access conditions freely configurable
Supports ISO/IEC 14443-31 unique serial number (4-byte or 7-byte), optional support of random IDs
Multi-sector authentication, Multi-block read and write
AES-128 used for authenticity, confidentiality and integrity
Anti-tearing mechanism for writing AES keys
Keys can be stored as MIFARE CRYPTO1 keys (2 × 48-bit per sector) and as AES keys (2 × 128-bit per sector)
Full support of virtual card concept
Proximity check
Communication speed up to 848 kbit/s