Register
Results 1 to 2 of 2

Thread: locked atmega 8

  1. #1
    DK Veteran
    cubica1's Avatar
    Join Date
    Feb 2012
    Location
    Serbia
    Posts
    601
    Thanks Thanks Given 
    557
    Thanks Thanks Received 
    431
    Thanked in
    183 Posts

    Default locked atmega 8

    Friends,

    Does any tried to read locked atmega 8?? Of course, it means to read content even lock bytes are activated
    Is it possible at all ??
    cuby

  2. #2
    DK Veteran
    Join Date
    Nov 2012
    Posts
    677
    Thanks Thanks Given 
    11
    Thanks Thanks Received 
    154
    Thanked in
    121 Posts

    Default explaining how it done basic idea of it

    You can pay to have it read. Atmega 8's can be done with voltage/clock most places charge 5/600 us. One place sold the voltage unlockrs for 8000 years ago someone might have one on the board.


    Posted in im taking back 15 years. Im the geek dad was the locksmith reply to pm-

    take your time to log every instructions(write code to do it for you time if their is 2 cycles per execution count that. Run though code count up untill you can use a clock glitch or power drop or combinnation to get it to jump a execution, or not execute the last glitchable direct tv card you had to get 6 just right reset card wait reset have your calculations(time it takes per execution untill a glitch will let you dump the flash. Study the atmel code to unloppers and the scematics. Programmable logic controllers are a lot faster now the older atmels 8 and 16 bit should be easy if you really want to make it work. Back in the day TJ found most of the newer holes in the card (jsut use the new one to open t5 and use it not chip simple way to write to h card (it was the original all the soft could read write that hole and close it up when your done. He sold it a week ahead of time to big dealers before giving to little fish. A unlooper with a instead of a card slot was modded to dump the 8 bit and 16 bit atmels( only elite got the dump or big pockets). That was 10 years ago, longer. The big dtv hackers that did not go to jail died murder to hanging to look like suicide hacker did not even live in states did it for fun, to break line cuts. If you studied the time per byte/instruction execution all most all the older micros or newer non powerfull can be dumped or small peice of code added to be read, then have to figure what was their. A old unlooper could get us in back in the right place and winexplorer. Scematics to f unlooper might do some change instruction area to modify after you figure out timing????


    Im explaining how they copy them without using a scanning microscope(I do not have the timing on the chips instructions,you make a peice of code to run each one and run them around 100 to 1000 apeice to get accurate most jmp's will be close if the instruction uses you have to get all some to get the timing right you might have to do it 50 thousand times then find where you have to glitch or mess with clock) you can pay to have the code or if simple enough log and repeat. This way you get a peice of code in at the first point you can using a glitch on a protected micro with code to dump ( its so nice watching hex stream out once you get it right or jump the protection with out taking chip apart(then read the normal way). The russians have alot of the commercial already dumped tell me what you need I can see if they have it if its popular.
    Last edited by 912secured; 24th May, 2013 at 11:00 PM. Reason: cannot post then post after talking in private

 

 

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
This website uses cookies
We use cookies to store session information to facilitate remembering your login information, to allow you to save website preferences, to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners.