|
| Author |
Message |
thijsnl
 Joined: 30 Aug 2009 Member: #1,430 Posts: 10 Style: subSilver (1451) Groups: None
|
Is this our unencrypted bootloader we are looking for?
00:00:00.004 Image$$BOOT$$Base.........(0x00100000)
00:00:00.008 Image$$BOOT$$Limit........(0x00100a48)
i did a dump from 0x00100000 with a len of 0xa48 |
Last edited by thijsnl on Mon Jan 18, 2010 7:46 pm; edited 2 times in total
|
|
|
 |
nickba
 Joined: 10 Dec 2009 Member: #1,439 Posts: 1 Style: subSilver (1451) Groups: None
|
Hi,
I read a lot of this topic. I have an Oppo-BD83 and I also have a modchip for it. All the magic is done in the I2C bus as you already know.
As you may have more experience with other Mediatek chips, I have a question:
Do you know if other mediatek chips sends an I2C requests that requires a authentication? I am asking that because everytime the master sends different bytes and waits for different bytes in the I2C log. |
|
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
That modchip just fool the firmware via I2C believing the region match with the disc on unit. |
|
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
Well, I like practical things, I was thinking to desoldering TSOP EEPROM and put in on universal programmer to rip all the contents, will I have it unencrypted ?
I guess the firmware inside is still encrypted, to avoid such means, or I'm wrong?
Gradius |
Last edited by Gradius on Tue Feb 23, 2010 7:25 pm; edited 1 time in total
|
|
|
 |
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
new_age @ Tue Feb 23, 2010 2:37 pm wrote: Are you talking about the serial flash in the MT85xx board?
No, the regular one (not serial eeprom).
On Serial EEPROM it should contains only the keys for Blu-ray.
Which IC is the Flash EEPROM? I don't have the player yet and I cannot find those photos about BDP-83. |
Last edited by Gradius on Tue Feb 23, 2010 6:55 pm; edited 1 time in total
|
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
|
Last edited by Gradius on Tue Feb 23, 2010 7:16 pm; edited 1 time in total
|
|
|
 |
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
What's the Serial EEPROM IC (type) ?
If is inside on MT852x it will be hard to get access to it.
I need to know the IC type for Flash EEPROM too, so I can choose the proper universal programmer for both. |
Last edited by Gradius on Tue Feb 23, 2010 11:33 pm; edited 1 time in total
|
|
|
 |
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
LOL, I cannot, like I said before, I don't have the player. |
|
|
|
 |
|
|
 |
Gradius
 Joined: 13 Jul 2009 Member: #1,421 Posts: 42 Style: subSilver (1451) Groups: None
|
"I don't have the player yet and I cannot find those photos about BDP-83."
"I need to know the IC type for Flash EEPROM too, so I can choose the proper universal programmer for both."
Gradius |
|
|
|
 |
new_age

 Joined: 25 Feb 2008 Member: #1,346 Posts: 53 Style: subSilver (1451) Groups: None 
|
|
|
|
|
 |
derbeDeus
 Joined: 09 Jul 2010 Member: #1,448 Posts: 1 Style: subSilver (1451) Groups: None
|
thijsnl @ Sun Jan 17, 2010 10:56 pm wrote: i did not find the password, but during testing, i found a workaround (actually a bug in the firmware that lets me execute commands without authenticating ;)
Hi, could you tell us what is the workaround?
Thanks |
|
|
|
 |
|
|
Page 8 of 9 [ 122 Posts ]
|
Goto page Previous 1, 2, 3, 4, 5, 6, 7, 8, 9 Next
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum You cannot post attachments in this forum You cannot download attachments in this forum
|
Powered by phpBB © 2001, 2010 phpBB Group All content is copyright © Hej456 and its original authors  10 pages loaded in last 5 mins | 71 unique hits in last 24 hours |