Тёмный

how is this hacking tool legal? 

Low Level
Подписаться 698 тыс.
Просмотров 181 тыс.
50% 1

The CH341A is A POWERFUL tool for people who want to get into bug hunting.
• this vulnerability sho...
🏫 COURSES 🏫 Learn to code in C at lowlevel.academy
🔥 SOCIALS 🔥
Come hang out at lowlevel.tv

Наука

Опубликовано:

 

2 окт 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 428   
@LowLevel-TV
@LowLevel-TV 17 дней назад
it's pronounced "spy", also GO CHECK OUT LOW LEVEL ACADEMY ITS PRETTY NEAT lowlevel.academy (poggers?)
@luigidabro
@luigidabro 17 дней назад
poggers
@GEfromNJ
@GEfromNJ 17 дней назад
As a former Invisalign user myself, one thing you quickly learn is that nobody really notices when you're wearing it or your Esses. You sounded great
@cinderwolf32
@cinderwolf32 17 дней назад
Well I didn't notice it but NOW I am aware hahaha No worries.
@billkillernic
@billkillernic 17 дней назад
It's a S P I (it is an acronym) flash reader not a spy lol :P
@DroneMothership
@DroneMothership 17 дней назад
To be real homie. I prefer the Invisalign in. I already have your voice burned in with the Esses so it sounds strange when they are missing.
@Gogeta70
@Gogeta70 17 дней назад
He doesn't mention this in the video, but that CH341 device doesn't always work to read flash chips without desoldering. The problem is that in order to read from the flash chip, you have to power it. The CH341 can power a flash chip, but it can only output a limited amount of current. If the VCC rail connected to the flash chip is directly connected to other components too, it's possible the CH341 won't be able to power all those components, including the flash chip. In these cases, it's often best to just desolder the flash chip. Alternatively, you could connect a logic analyzer to the DI and DO pins of the flash chip, then power up the device. Use the logic analyzer to record the data stream as the CPU reads the flash contents. You may need to write a small program to convert the recording back into binary data though.
@MrWaalkman
@MrWaalkman 16 дней назад
Just my experience, YYMV, but I used one to read and flash the BIOS of a Dell laptop. It functioned perfectly. I had to buy a second clip that connects to the chip since the first one refused to work.
@Gogeta70
@Gogeta70 16 дней назад
@@MrWaalkman Yeah I'd say based on my experience that it works without desoldering about 80% of the time. It really just depends on whether your flash reader can provide enough power to the part of the board you're connected to.
@WiKAi
@WiKAi 16 дней назад
Before unsoldering, just try plugging in the power cord in the device (but don't turn it on ofc) so it gets standby power to the chip. I've had this work on several devices. Some laptops require you to unplug the main battery as well if doing this.
@sutfuf6756
@sutfuf6756 16 дней назад
1. add a electrolytic cap to the power rail (it looks odd, but, works) 100uF iirc. 2. Hold the reset pin on the uC low/high to stop the uC booting (if the bootloader uses the SPI bus it will corrupt your data). I had to do this to a tapo 200v3 to dump the firmware.
@Gogeta70
@Gogeta70 16 дней назад
@@jonlee312 Why would you put a relay between the CH341 and the flash chip?
@adrian_sp6def
@adrian_sp6def 17 дней назад
Be aware of voltages! This device puts 5V on data lines to 3V3 TOE even when supply to TOE is set to 3V3. Look for 3v3 mod for ch341.
@xrayonthemove
@xrayonthemove 17 дней назад
Good point!
@Ether_Void
@Ether_Void 17 дней назад
Afaik there are different versions of this board. The actual CH341 chip is both 3.3V and 5V compatible (which is why the mod even works to begin with) although some boards don't use the integrated 3.3V circuit others do.
@adrian_sp6def
@adrian_sp6def 17 дней назад
@@Ether_Void Yes, and because of that (some devices have this bug and some does not) I want to warn and inform anyone who want to use it.
@ryjelsum
@ryjelsum 17 дней назад
Alternately, there are CH341 dongles with blue PCBs that have just a bunch of pin headers, rather than a fancy socket. This has a proper design: it has a jumper that lets you select between powering the CH341 chip from either USB power or an onboard 3.3v regulator, which is what determines the logic voltage (per the datasheet). You have to think about how to hook it up a little bit more since you don't have the socket, but if you're not confident modifying a PCB it'd probably be an overall better purchase - usually it's a little bit cheaper too.
@adrian_sp6def
@adrian_sp6def 16 дней назад
@@ryjelsum Yes right! I have same dongle as Ed, and mine has 3v3 bug. I juat want to warn and inform to be carefull, some IC will not tolerate 5v as data pulses
@chuckcrizer
@chuckcrizer 17 дней назад
It took me a bit to realize he meant SPI not a special "spy" chip.
@criptych
@criptych 16 дней назад
Same here! I've always spelled it out to help distinguish. Not that I talk much about "spy" chips, though...
@bjarne9700
@bjarne9700 16 дней назад
@@criptych spy chips is what they eat at NSA
@alienJIZ1990
@alienJIZ1990 15 дней назад
I don't call it "spy" but that is what it spells lol. Kinda like "pixie" vs "P.X.E." but in that case I use "pixie"
@davidlee50
@davidlee50 12 дней назад
Good one.
@htjmartin
@htjmartin 4 дня назад
That's why caption matters. Unfortunately not many RU-vidr bothers with it.
@OnlyHerculean
@OnlyHerculean 16 дней назад
The RU-vid algorithm will love these comments about the SPI / SPY topic. Maximum engagement, well played Ed!
@zadintuvas1
@zadintuvas1 16 дней назад
I recommend buying CH341a version 1.7 as it has selectable voltage and this is suitable for more chips
@kikihun9726
@kikihun9726 16 дней назад
If you buy this, make sure you voltage mod it. Can be used at full 5v and full3.3 Or just buy the pgraded version with green pcb and voltage selector.
@lucia-fu5sv
@lucia-fu5sv 17 дней назад
that engineer is a SPI
@ErikTheHalibut
@ErikTheHalibut 17 дней назад
@@lucia-fu5sv THERES A SPI CREEPIN AROUND HERE
@lucia-fu5sv
@lucia-fu5sv 17 дней назад
​@@ErikTheHalibut SPI's, bloody useless
@qwfp
@qwfp 17 дней назад
BAP
@notnheavy
@notnheavy 16 дней назад
engineer security gaming
@KillianTwew
@KillianTwew 16 дней назад
IMO, consumers should either: 1. Legally have FULL access to firmware OR 2. The C-Suite should be held legally liable for security breaches and face legal consequences equal to someone who makes and distributes malware as that's what they sold you.
@luiginica
@luiginica 16 дней назад
Not really. They should not be forced. 1. Is their IP 2. Anybody can do mistakes. I think it's more simple: we should stop using the ones that we don't trust or like you said, the ones that don't open source their firmware.
@marklonergan3898
@marklonergan3898 16 дней назад
I agree that this isn't the best. Just as a thought, imagine the law was done that way, then that means that if a company does give the full source of the firmware, then that would indemnify them and full onus would be on the buyer (and the vast majority of people wouldn't even be able to follow it, let alone detect vulnerabilities in it). It would be the equivalent of all of the ToS you agree to going forward being in a foreign language, and onus being on you for not knowing the language it is written in.
@KillianTwew
@KillianTwew 16 дней назад
@marklonergan3898 No, that's dumb. You guys like, "uh hey excuse me, can you make things secure?". My point is that these people know exactly what they are doing by cutting corners and not making security the forefront of a product they are selling you. We need a major shift in policy regarding selling IoT electronics that punches a giant hole in your security because a group of c-suite asshole don't care about you or your data. It like Apple vs Arch Linux. We have at least two opitons: 1. Companies take responsibility for and are held liable for blatant security vulnerabilities. Im not talking zero days where you follow INDUSTRY STANDARDS but there are always going to be small vulnerabilities. I'm talking blatant bullshit like when an IP camera company leaves that admin password as, "password" and also hardcodes it. That is absolutely disgustingly lazy and should be prosecuted. OR 2. The company can release the firmware unencrypted and fully accessible to the user and they take full responsibility for their security knowing they chose the DIY. You either get to chose a company that takes over the liability for you, or you take it on yourself. It's literally not complicated like you're making it.
@FryuniGamer
@FryuniGamer 16 дней назад
@@marklonergan3898 that is already what happens to most users. People play Minecraft without knowing English and the EULA has no translation. Same for most games and most SaaS. You not knowing the language of the contract you signed or not knowing the language of the code you have access to and are running doesn't exempt you from your responsibility. They wrote the EULA and distributed it, that is their part. So it would not be without precedent to requiring it to be open and leave the responsibility for the user.
@morezco
@morezco 16 дней назад
Good points and good arguments! I’ll go ahead and add that while I totally agree with OP in PRINCIPLE, fining companies as criminals for distributing malware accidentally would immediately make most tech business unviable, since every piece of software I have ever seen has some flaw or breach of some kind.
@luigidabro
@luigidabro 17 дней назад
Can you also rewrite the firmware in rust?
@delphicdescant
@delphicdescant 17 дней назад
meh
@Satoshic_
@Satoshic_ 17 дней назад
Or in cpp; 1 trillion rust users triggered
@patsonical
@patsonical 17 дней назад
@@Satoshic_ Me when I rewrite the firmware in pure Lambda Calculus 💀
@FaultyTwo
@FaultyTwo 17 дней назад
Rust is too bloated. We use Assembly now like a man who paid by hour.
@dosomething6975
@dosomething6975 17 дней назад
No only JavaScript 😂
@74HC138
@74HC138 15 дней назад
Spy flash? I always pronounce it "Ess Pee Eye"
@linuxguy1199
@linuxguy1199 16 дней назад
It's funny when people question the "ethics" of pulling the firmware off a device *they* purchased. You own the device, it's your firmware.
@schistosomaharinasutai6913
@schistosomaharinasutai6913 16 дней назад
Too bad EULA exists. Which I have no idea if they apply on routers.
@_OS_
@_OS_ 16 дней назад
What is the point of this "ethics" if part of the firmware can be used in rare cases for a device of another model. The only downside for the manufacturer is if new functions were added to the old product, for example, NVME support to the old system board. Because of this, slightly fewer users will buy a new product with NVME support.
@linuxguy1199
@linuxguy1199 16 дней назад
@@schistosomaharinasutai6913 EULAs have zero legal standing.
@melihcelik9797
@melihcelik9797 15 дней назад
You actually get the right to use a copy of the firmware, not the firmware itself. That being said, I can also see why some people would try. Putting not encrypted firmware on an embedded device, and the SPI flash is also not included in the SOC. Its an open invitation at this point
@TonyTony-rd4rj
@TonyTony-rd4rj 8 дней назад
Yer but the manufacturer thinks its theirs...
@theaifam5
@theaifam5 17 дней назад
I used that to program bios chip on my laptop 🤣 because it broke after an update
@SM-qo9gr
@SM-qo9gr 17 дней назад
Aahhhh ThinkChad in the comment section?!
@Amipotsophspond
@Amipotsophspond 16 дней назад
the most effective thing you can do with your time is to make instructions on how to do this, because at some point if this is again a problem for you. you might not have to remake another bios that some one made because they learned from your instructions.
@arizali_
@arizali_ 17 дней назад
This is the first time I have encountered someone pronouncing SPI as ‘SPY’. I have only heard ‘S-P-I’ previously. Thank you for the info. As an embedded software developer, I can say that if someone stores unencrypted firmware on an external flash, you are free to read it.
@xjekwkfhzodudidkne
@xjekwkfhzodudidkne 17 дней назад
Opinions on if I have to RE the FW decryption process every time I want to root my devices?
@codingneko
@codingneko 17 дней назад
Literally what the first paragraph of this said. It made me uncomfortable xd
@tavershimaako7034
@tavershimaako7034 9 дней назад
It sucks hearing him pronounce it spy
@highpraise-highcritic
@highpraise-highcritic 6 дней назад
@@tavershimaako7034 Well it is said that way sometimes ... sucks to read people trying pretend they have the corner of being right ... google initialism vs acronyms. If you want S.P.I., then be more diligent with your language. Both are correct, and vary depending on the crowd.
@reekt
@reekt 17 дней назад
I keked every time you pronounced SPI as SPY
@itscharlie0110
@itscharlie0110 16 дней назад
I actually used one of these for the first time recently! I bricked my Chromebook while flashing the stock firmware after having windows on it 😅. Pretty fun tool to mess around with and see how things work :)
@empathon
@empathon 15 дней назад
Please use manual focus if your camera is not keeping up :)
@bytefu
@bytefu 15 дней назад
There is a bug in the video at 11:18 (chroma key overflow).
@KimYoungUn69
@KimYoungUn69 5 дней назад
Its a feature
@willshowalter
@willshowalter 15 дней назад
I wish more new devices were still using SPI flash for more than eeprom config storage these days. TSOP isn’t too bad but requires more expensive readers and BGA just makes me want to cry.
@juho7294
@juho7294 16 дней назад
The only special thing about this product is the ZIF socket you're not even using for its purpose. For general SPI dumping you can use any old arduino or rpi lying around. Or if you get a more feature rich product such as bus pirate or tigard, you can do i2c, uart and others in addition to dumping SPI chips' memories.
@sk9la
@sk9la 17 дней назад
Awesome 👍 Would love to see more hardware hacking videos 😊
@justinnnnnn209
@justinnnnnn209 16 дней назад
Just used one of these devices this weekend to flash a modified bios on my AsRock motherboard, to enable ReBar support. AsRock has there instant flash locked down to only accept there signature. So it does have valid uses, which like many things, can be twisted to do bad things. Also you can easily do this with a raspberry pi.
@UberGeek
@UberGeek 11 дней назад
Misleading. The Router doesn't route the Internet into the house. The Modem does that. the router distributes the data between devices and the modem. But I am sure you all know that. 😊
@AlexanderBelikov
@AlexanderBelikov 16 дней назад
I have one! Bought to fix a samsung tv which died after power gone for half a second.
@ch12o177e
@ch12o177e 6 дней назад
This is my first time checking out one of your videos. I enjoyed it and subscribed! It's funny, at first I thought you were Sheldon grown up. LOL
@0xssff
@0xssff 16 дней назад
ah yes the spy flash. my favorite type of flash. lol
@svenprigann2631
@svenprigann2631 15 дней назад
Dude, my ears are literally bleeding from him pronouncing SPI as some Cold War Soviet fear
@jmvr
@jmvr 16 дней назад
Why are you looking slightly to the left of the camera? It looks like you're being interviewed. If it's because that's where your teleprompter is, then why not just have the camera slightly above it?
@user255
@user255 16 дней назад
You read 16384 kB and you tried to write ~16777kB... that's bit more than just an extra character! Vim corrupted the file? You should have used hex editor. What happened to the device?
@fortimoks8136
@fortimoks8136 16 дней назад
FYI the device wouldn't boot, as vim adds additional metadata about the text layout such as line breaks to the file, and you're right, he should have used hex editor.
@landongreer
@landongreer 17 дней назад
11:20 "with this device", as the spi programmer fades into the green screen. lol.
@wernerviehhauser94
@wernerviehhauser94 17 дней назад
It's probably a stealthy device
@vitto_pincharrata
@vitto_pincharrata 9 дней назад
@@wernerviehhauser94 stealth boy
@wernerviehhauser94
@wernerviehhauser94 9 дней назад
@@vitto_pincharrata must be a prototype since it only makes itself and not the wearer invisible :-)
@sergiokneizl
@sergiokneizl 13 дней назад
Replaced one character and after that it deleted one char. The firmware will not work with bytes desaligned
@ritorujon
@ritorujon 16 дней назад
you're saying "spy" instead of SPI so many times, maybe I'll get used to it in the end... never mind it's impossible for me to get used to it, but I tried 😅 Nice video though, great work! ☺️
@IrtyGo560
@IrtyGo560 16 дней назад
This tool can you let you recover a failed BIOS update using another PC
@WERTBON
@WERTBON 16 дней назад
Please be consistent and call I.S.P. "ISP"!
@tranthien3932
@tranthien3932 16 дней назад
False advertisement, it didn't catch any of the bugs in my room.
@First.nameLastname
@First.nameLastname 15 дней назад
I’m glad your name is no longer low level learning.
@massivgrass
@massivgrass 16 дней назад
10:30 if it uses GPL-like licensed parts, like linux, you actually need to be able to replace that bit. Of course, the root file system may contain other parts. And - if you report a bug, prepare to get sued.
@bumpyturtle127
@bumpyturtle127 17 дней назад
im sorry but SPI is pronounced S.P.I. not SPY! The hell is that???
@muhammadshahzaib3813
@muhammadshahzaib3813 17 дней назад
Don't know man, it's just heartbreaking 😭
@kcalbxof
@kcalbxof 17 дней назад
I had same issue with SCSI pronounciation (skuzi or whatever) that i encountered some time ago. I was pronouncing it letter by letter...
@yoshikawachinatsuu
@yoshikawachinatsuu 17 дней назад
+1, it's annoying
@LowLevel-TV
@LowLevel-TV 17 дней назад
ah yes, because I want to say three distinct syllables instead of just saying "SPY". no thanks. shocking that somehow you still knew what I meant.
@Loki-
@Loki- 17 дней назад
​​@@LowLevel-TV what do you mean that language is about people understanding the meaning of others? 😱
@henriquehff
@henriquehff 16 дней назад
Openwrt is awesome, I had a couple of routers that I didn't use, after discovering openwrt I could use for something useful, but unfortunately the routers only had 4mb of flash and 32mb of ram, so I modified the openwrt partition system for my device to fit inside an 16mb chip, so now I had more storage, but the ram was still an issue, so I flashed a custom bootloader that could work with different ram chips, and then I replaced the ram with a 128mb and now the router has the latest update and I'm able to use all the extra features of openwrt, this is only possible because openwrt is opensource, thank you all for that :D
@WarkWarbly
@WarkWarbly 17 дней назад
Lol "its not spy, its s-p-i" Tow-may-toe Tow-mah-toe Nobody cares how its spoken. We all know the reference. Besides, most of the people that utilize these in the general public (including the euros) pronounce it "spy" In addition to all this nonsense, you can also link this very specific kit (along with some intermediate components) with SDR and recreate the RAMBO hack. You can also directly pull CPU signals too- one method being "Wireless" and the other connecting directly the the spi bus on the soc/cpu. The "wireless" method is very discreet and pretty much requires you to shield your project from other radio signals. I had to put my old laptop in a cardboard box wrapped in foil and another box (Faraday "cage") Its very similar to hertzbleed, but most of what I've seen is either nonsense or instructions I've manually passed. (Haven't gotten anywhere with the wireless yet.)
@Dave_90lg
@Dave_90lg 17 дней назад
I used one of these to unbrick my G75VX laptop in college after asus quoted me $900 to fix it after the laptop bricked when I told it to boot off the dvd drive lol
@jeepxj
@jeepxj День назад
So potting the storage chip mitigates the attack vector.
@danielszilagyi9658
@danielszilagyi9658 17 дней назад
I tought that nothing can hurt my brain more than the pronouncing of SQL as "squeal" but here we are
@Aftermost3590
@Aftermost3590 17 дней назад
binwalk ftw
@sleptiq
@sleptiq 15 дней назад
I have an odd feeling you're talking to someone on my left. But no one is there.
@Grazfather
@Grazfather 17 дней назад
Vim probably appended a newline after your file when you changed the string. By changing it to U-boo you would have changed the alignment of everything after so you probably would not have had it boot correctly.
@bryankadzban1159
@bryankadzban1159 16 дней назад
Was just going to post that :) Much safer to edit with a hex editor, not text editor
@Eng_Simoes
@Eng_Simoes 17 дней назад
No affiliate link to the device? Why?
@LowLevel-TV
@LowLevel-TV 17 дней назад
because i am a moron
@93vxhybridhatchback
@93vxhybridhatchback 17 дней назад
@@LowLevel-TV add it to the description? I'd rather buy it and help you out then buy it and amazon get all the $$
@Eng_Simoes
@Eng_Simoes 17 дней назад
@@LowLevel-TV don't be offended. I really like your channel and my comment was in good faith.
@sintaklaas6427
@sintaklaas6427 17 дней назад
Google: CH 341 - be a little more flexible, dude
@alanschmitt9865
@alanschmitt9865 17 дней назад
@@Eng_Simoes think he’s just annoyed that he didn’t take the easy money 😂
@Nerd3927
@Nerd3927 16 дней назад
I normally pronounce spi as S.P.I. not as Spy. Is that odd?
@zoltangal8981
@zoltangal8981 День назад
No, that is normal... Telling "spy" instead just sounds like mystery... And sounds stupid, in case you know what is about...
@natehamt
@natehamt День назад
I believe right to repair act protects people now to do this type of work on your own appliances.
@Dominion78
@Dominion78 15 дней назад
gotta love the hacker background
@ApeStimplair-et9yk
@ApeStimplair-et9yk 9 дней назад
yes for you it is AI
@jacoblojewski8729
@jacoblojewski8729 16 дней назад
11:20 - what device ;)
@filippobistaffa5913
@filippobistaffa5913 День назад
Why the "boob" didn't work, whereas the "boo" did? Shouldn't the second change the size of the bin, rather than the first?
@anthonyhart7878
@anthonyhart7878 16 дней назад
3:00 Sounds like he doesnt have the power of buying two of them
@CezarLamann
@CezarLamann 10 дней назад
Like Alec from Technology Connections 😂
@benjaminlarsson8685
@benjaminlarsson8685 17 дней назад
The device can also with the correct software read spi-nand chips.
@ttamttam1522
@ttamttam1522 17 дней назад
Holy shit guys look, it's MIPS in the wild!
@EasyNetDev
@EasyNetDev 16 дней назад
Be careful with this device. It needs a modification to use 3.3V signals for the target chip! By default the board of this programmer is outputing 5V for signals (not the power supply!) to CH341 to the target chip. You can find on the internet how to modify the design and set the CH341 as 3.3V signals for the target chip. In some circumstances you can burn the target chip if is not 5V tolerant!
@freebyte
@freebyte 17 дней назад
where is the sexy purple room
@LowLevel-TV
@LowLevel-TV 17 дней назад
😏
@HeatherHerbert_
@HeatherHerbert_ 17 дней назад
Yeah, fantastic content aside, I like the mandated YT purple room
@Mr.Mindset
@Mr.Mindset 7 дней назад
tried both this one and the fixed version and still cannot read a chip. Bought many different clips, cables etc and every time I read it with three different software it post different dumb, which at the end is corrupted, cannot hacked/cracked. So BS. If anyone in the UK reads this, where I can find cheap place where people will flash me three chips?
@gluttonousmaximus9048
@gluttonousmaximus9048 17 дней назад
What about devices that boot off an SD card, like an old industrial device or more commonly an Anbernic game handheld?
@RaisalPradiptaBro
@RaisalPradiptaBro 4 дня назад
This is the first time in my life I've ever heard anyone pronounce SPI as "SPY". But you're obviously a way superior low-level and embedded programmer than I am, so I'll follow your pronounciation from now on :D
@richardblake8275
@richardblake8275 2 дня назад
Are any vids of this type NOT about routers? Any chance of doing this with another product please?
@dmh20002
@dmh20002 6 дней назад
All the 20 or so EE’s I worked with call it spi. Does anyone call the mosi line emm-oh-ess-ai? That’s too much talking for me.
@v0lts
@v0lts 16 дней назад
you should really make longer and more detailed videos. I'd rather sit here for 20-40 minutes listening about a single topic (one that can even be talked about for that long - this one is great for that) than watching multiple short vids of different topics.
@dmh20002
@dmh20002 6 дней назад
Since that router has Linux on it ,can we request/demand a copy of the source? I’ll hold my breath until it comes in.
@wartlme
@wartlme 14 дней назад
Learn to solder, it is not that hard to get that chip off and solder it back on. It works better than the clip. Sorry, I should be nice. I have been soldering for 30 years any my parents used to own a factory that would make computer boards and my mom was a really good at soldering.
@rupantaradhikary6580
@rupantaradhikary6580 2 дня назад
I also have a tp link router and I also think about it now I know the right tool to extract the firmware.
@AchillesPlayzGG
@AchillesPlayzGG 14 дней назад
Hey dude, would this process work on let's say an old Datto or Cisco router?
@cassianomartin2699
@cassianomartin2699 16 дней назад
I burned a lot of those SPI flashes when developing a firmware for this MIPS CPUs
@jasperc.2398
@jasperc.2398 17 дней назад
11:18 "with this device" that's invisible.
@leppie
@leppie 12 дней назад
WTF, 15 minutes for a SPI 16MB flash? That should take seconds.
@TheLongestChannelNameThoughtOf
@TheLongestChannelNameThoughtOf 16 дней назад
I don't know, this dang doodad don't seem like it'll help me hunt down any bugs. How's it going to tell me where the spiders and the centipedes are?
@svenprigann2631
@svenprigann2631 15 дней назад
Most of well developed electronics will not have an easy access flash storage for their code. Either they use an encrypted binary on their flash or they use internal flash, which is not that easy to access.
@collinoly
@collinoly 6 дней назад
I used this to fix a expensive monitor that needed a chip reflashed after a power outage. So cool!
@kimmywho
@kimmywho 13 дней назад
"U-Boob" earned you a new subscriber. 🤣
@xCheddarB0b42x
@xCheddarB0b42x 17 дней назад
Based 0:45 RE Chad.
@WillyJL
@WillyJL 17 дней назад
fun fact: you can use a multitool such as flipper zero to dump SPI memory chips too!
@UltravioletMind
@UltravioletMind 16 дней назад
Ive never heard SPI called SPY
@hafo821
@hafo821 16 дней назад
this "programmer" has 5V data lines, it must be modified or a logic level converter must be used, before connecting to a router like this 🙄
@BrentLeVasseur
@BrentLeVasseur 16 дней назад
So I clicked on this video thinking that USB device would find BUGS as in covert listening devices in my home or AirBnB rental, and not to pull firmware off of a router. 😂
@VeniceInventors
@VeniceInventors 15 дней назад
The title is misleading, as the tool makes reading firmware easier, but hunting bugs is a completely different matter which requires the source code or disassembling the binary.
@galaxygur
@galaxygur 10 дней назад
where can i buy it? my hope to see affiliate link in description was not fulfilled
@JoeBloggs777
@JoeBloggs777 5 дней назад
11:18 What the hell is that stealth camo device you are holding?!
@Repligon
@Repligon 14 дней назад
I wouldn't trust any device with a spy flash inside.
@RGD2k
@RGD2k 5 дней назад
Only one criticism: Never once said 'ess pee eye' spy? Serial Peripheral Interconnect is what it is, confusing is what it is if you say spy instead. Maybe edit and flash 'SPI' on screen each time you say it? That should help the newbies get it. Sometimes we don't know what we know 'too well', and it's a bit difficult for newcomers to hear what we mean, because they hear different meanings. I think your channel would be much improved in value to your target demographic if you visually flashed up pronounced acronyms.
@RGD2k
@RGD2k 5 дней назад
I mean, I don't really care about whether it should be pronounced one way or the other - but if you're introducing new vocabulary audibly, you should at least give people a change to see how it's spelt. Otherwise there's just confusion. The spy vs SPI fight can go where the vi vs emacs fight went.
@vojtechstoklasa3417
@vojtechstoklasa3417 8 дней назад
great contentn, im totally buying it but your cam is out of focus :(
@daniels-mo9ol
@daniels-mo9ol 17 дней назад
Cool video. Ive always wanted to get into these things so maybe I'll get going now knowing you can download firmware without soldering experience. No hate, but I much rather have the classical home office setting instead of the green screen. I guess that might be subjective preference though.
@eyedl
@eyedl 16 дней назад
fancy russian word for recursion is matrioshka?))
@upcaupcik5302
@upcaupcik5302 6 дней назад
You are a magician
@teh_hippo
@teh_hippo 16 дней назад
I think I actually preferred the old camera style and video background (or lack thereof). Do like seeing new things though. Props for adding in pizzaz :)
@antinatalope
@antinatalope 17 дней назад
Would this work on my old XO-1 laptop, to extract the Open Firmware and run it from a USB, as a functional forth interpreter?
@guruoo
@guruoo 11 дней назад
1. legal 2. Ethical 3. No one else will ever know
@test-rj2vl
@test-rj2vl 17 дней назад
I wonder if modern cars are spying on me such ans sending my coordinates to manufacturers, how easy would it be to make privacy related modifications with this device? Or if I am annoyed by auto stop-start feature, how easy would it be to permanently disable it with this thing?
@Alex-ce1ol
@Alex-ce1ol 15 дней назад
That backdrop is a green screen double whammy. Looks like someone plugged in a bad USB stick and got assimilated
@suits911
@suits911 5 дней назад
I think I found a bug in you video, lmao
@pistonsjem
@pistonsjem 17 дней назад
This device kills 5v intolerant devices 😁
@Sys.Badmin
@Sys.Badmin 16 дней назад
I do something similar when key programming for automotives, except mine uses eeprom instead of SPI? Or does eeprom only refer to the type of chip, since those clips you have we usually call the eeprom reader.
@acters124
@acters124 16 дней назад
I used this on my laptop to unlock bios options
@hb3643
@hb3643 17 дней назад
There is a better one a newer version of the programmer you have shown. The one you are using could brick and fry some SoC
@roguesecurity
@roguesecurity 16 дней назад
You feel like an hacker after extracting the firmware off the chip later to realise the firmware is available from vendor website
@themessenger-zq9lr
@themessenger-zq9lr 16 дней назад
Would love more hardware hacking content like this! Keep it up!
Далее
how serious is this new Linux exploit (9.9 CVSS?)
13:50
A RISC-V Stick-on
8:44
Просмотров 263 тыс.
Iran launches wave of missiles at Israel
00:43
Просмотров 1 млн
Building The Pwnagotchi... UNSCRIPTED (FULL BUILD)
29:30
This isn't a normal mini PC... and I love it.
14:17
Просмотров 330 тыс.
this can't be real.
10:16
Просмотров 229 тыс.
I used to hate QR codes. But they're actually genius
35:13
I took the #1 Tech Exam and it was BRUTAL
18:28
Просмотров 1,4 млн
this vulnerability shouldn’t even exist
14:33
Просмотров 200 тыс.
The Beauty of Isometric Video Games
20:01
Просмотров 479 тыс.