PDA

View Full Version : NXP LPC2478 CRP3 PROTECTION FUSE UNLOCK



Youneselm
15th November, 2015, 09:50 AM
This is a method is The Temperature Side channel and heating fault attack!!!
So manny members asked me in pm how to do it.


Tampering Techniques

We can distinguish four major attack categories:

A. Microprobing techniques can be used to access the chip surface directly, thus we can observe, manipulate, and interfere with the integrated circuit.

1) Software attacks use the normal communication interface of the processor and exploit security vulnerabilities found in the protocols, cryptographic algorithms, or their implementation.

2) Eavesdropping techniques monitor, with high time resolution, the analog characteristics of all supply and interface connections and any other electromagnetic radiation produced by the processor during normal operation.

3) Fault generation techniques use abnormal environmental conditions to generate malfunctions
in the processor that provide additional access.

All microprobing techniques are invasive attacks. They require hours or weeks in a specialized laboratory and in the process i decap the packaging. The other three are non-invasive attacks. After we have prepared such an attack for a specific processor type and software version, i can usually reproduce it within seconds on another mcu.

This is a method is The Temperature Side channel and heating fault attack!!!

don't forget to thank and reps mate:-)

Type in YouTube: CRP3 NXP and you wil find it. ITS the first video


https://www.youtube.com/watch?v=XfUFQ-WMQIU

Video is not produced by me;-)
Dont want a visit from Nxp or anny other Company lawer;-)

mihaiservice
15th November, 2015, 10:12 AM
Are your home made work ?

Youneselm
15th November, 2015, 12:50 PM
Everybody can do it at home mate.;-)

busaman
15th November, 2015, 12:57 PM
are there any instructions/details ???

Youneselm
15th November, 2015, 01:40 PM
When there is more time, i make how step by step. ITS nothing difficult only patians.;-)
Take 3.3volt vcc and short it to ground pin. Ticking with the wire

Youneselm
15th November, 2015, 04:00 PM
99 views 2 thanks?!!
Chinees friends wil ad this soon on there websites. :-)

busaman
15th November, 2015, 06:48 PM
so what is the action with the hot air gun can you cook the mcu

Faraday
15th November, 2015, 07:03 PM
to open loop.

elchip
20th November, 2015, 08:34 PM
Tested work 101%
Regards

hackgsm
27th November, 2015, 02:17 AM
no work with ktag

imcumen
29th November, 2015, 03:07 AM
99 views 2 thanks?!!
Chinees friends wil ad this soon on there websites. :-)

(http://mhhauto.com/User-EduardNN)Sorry friend


I did not have my glasses

without rancor

Regards

Youneselm
29th November, 2015, 09:18 AM
@Imcumen: you need verry thick glasses.;-)

Only the video is from Eduardnn mate, not the explaining of the technique that is used.
The technique itself is very old in the business of failure attack analyse. Doctor Sergei Skorobogatov from Cambridge Universit? teach us all this kind attacks such as Power glitching, heat glitching or optical glitching,ect,..

If you have done Some study you Will know:-)
These All are my words and ask the Guy himself for it.
His name is already on the post as he is the Maker of the video nothing else.

So whats youre point,
and the purpose for this comment?

Check in sector dashboards, tread "Morgan dash".
You Will see what i do with locked devices.;-)
We engineers know that this solution is an old trick in the fault generating technique, if you know what you are doing.
I can explain it if you ask for it.;-)
But not in pm, only here on forum-board.
So everyone wil learn from it.
It Will be good for every member.

Have dig in my old study Books and maps. This is for the good thinking brain people out here;-)
I put link here from a workshop from my old teacher-professor ho teach me allot, and made me a good engineer.

Look in this sector in tread: PHISYCAL attacks on TAMPER resitance, ect ...

Youneselm
8th December, 2015, 12:45 AM
Here: http://www.digital-kaos.co.uk/forums/showthread.php/500987-PHISYCAL-ATTACKS-ON-TAMPER-RESITANCE

Youneselm
8th December, 2015, 12:29 PM
This technique called" The Temperature Side channel and heating fault attack", and is explained in this document, for those ho dont understand wath is going on in this video. If you have Some questions about topic feel free to ask.;-)

https://eprint.iacr.org/2014/190.pdf

Youneselm
9th December, 2015, 12:09 AM
Watch from 5.20 min. https://m.youtube.com/watch?v=Yi8f8GZMvTQ

Youneselm
14th December, 2015, 09:49 AM
@vasili: no mate, i dont work with you annymore. I make for you a good program to modify ic, and you sold it for big money. No more support for you.

Youneselm
16th December, 2015, 05:00 PM
Yes no problem if i have some spare time.[emoji3]
My skype id: elmo-engineering

abdelamjid
12th March, 2018, 01:31 AM
thanks to all for sharing

i have Kess no help in soft i install help folder ( 1.3 g ) noting
any idea plz
best regards