LExxB650 T2P CI+ hacking

This forum is for information related with B series hardware instead of firmware/software.

Re: LExxB650 T2P CI+ hacking

Postby mprotect » Sun Jan 03, 2010 4:37 pm

erdem_ua wrote:About flashing modified firmware. It isn't possible to flash TV with encrypt_update programs output, right?

Wrong. That's why I created the "RSA disable" game.
erdem_ua wrote:And if checksums are generated after flashing, than we can hack exeDSP via IDA as at CI devices (like for implementing Video ARFix.)

I think so, yes.
mprotect
Official SamyGO Developer
 
Posts: 19
Joined: Sun Dec 06, 2009 4:41 pm

Re: LExxB650 T2P CI+ hacking

Postby erdem_ua » Sun Jan 03, 2010 6:15 pm

mprotect wrote:
erdem_ua wrote:About flashing modified firmware. It isn't possible to flash TV with encrypt_update programs output, right?

Wrong. That's why I created the "RSA disable" game.
[quote="erdem_ua"]

Okay. Instead of "RSA disable" game method, I wanted to generate this signature from XOR encrypted image since we know the "secret" key. But I think this RSA secret is different than AES secret, so we needed to scan/bruteforce entire RSA key space for implementing this.
Your method is remove kernel signature check but not every CI+ device has Game menu. We can execute derivative application from telnet too but CI+ devices could only enable their telnet via Telnet Enabler Application which is requires game menu too..

Sum off all those, CI+ is broken for only devices with a "Game" menu. Other CI+ devices cannot update their firmwares as they want...
User avatar
erdem_ua
SamyGO Admin
 
Posts: 2957
Joined: Thu Oct 01, 2009 6:02 am
Location: Istanbul, Turkey

Re: LExxB650 T2P CI+ hacking

Postby erdem_ua » Sun Jan 03, 2010 7:24 pm

So, this topic close to the end here since we got almost all Hardware related things. So I open new topic for at software forum for software discussions/problems for CI+ devices.
Please follow this topic for SOFTWARE related questions and applications for CI+ devices...
User avatar
erdem_ua
SamyGO Admin
 
Posts: 2957
Joined: Thu Oct 01, 2009 6:02 am
Location: Istanbul, Turkey

Re: LExxB650 T2P CI+ hacking

Postby dasilverpaladin » Tue Feb 09, 2010 2:49 am

Sorry,

i know you wanna close this topic but i have something to add here.

After i flashed my TV 2 or 3 times (don`t know exactly) with modified firmware i noticed that my TV says there was no firmware backup.
I checked the path you mentioned in the wiki (Ensure the backup exe.img ( stored on /dev/tbml10 ) is in good condition ( and ideally not altered. ) )
but there is no folder just an 60MB file.

Maybe disabling the RSA also disables the backup progress.

As precoution i suggest every 2nd or 3rd flash should be an original unaltered firmwareimage, havent tried it, bust should work.

As adittion i installed an FTP server on my TV, if someone needs files from an 37" B650 CI+, just ask :)
dasilverpaladin
Official SamyGO Developer
 
Posts: 115
Joined: Sat Oct 31, 2009 1:04 am

Re: LExxB650 T2P CI+ hacking

Postby craftonix » Wed Feb 10, 2010 11:31 pm

Perhaps i can help i own a LE40B651T3P.
Let me know.

I just discovered Samygo, i will be proud if i can help :D
craftonix
 
Posts: 1
Joined: Wed Feb 10, 2010 11:28 pm

Re: LExxB650 T2P CI+ hacking

Postby zoon01 » Sat Feb 27, 2010 12:38 pm

New firmware version is out on Samsung support site for LE40B650T2P

newest version is now T-CHLCIPDEUC-2007.1

does someone knows what is new in this?
zoon01
 
Posts: 14
Joined: Fri Dec 11, 2009 10:17 pm

Re: LExxB650 T2P CI+ hacking

Postby a-o » Thu Mar 11, 2010 9:03 am

dasilverpaladin wrote:As adittion i installed an FTP server on my TV, if someone needs files from an 37" B650 CI+, just ask :)

Could you please provide the files as an attachment in the thread (it is still open) for other users to test?
Then this could be officially distributed in the files section where the other SamyGo stuff is located.
Thank you.

zoon01 wrote:New firmware version is out on Samsung support site for LE40B650T2P
newest version is now T-CHLCIPDEUC-2007.1

Attention, please read the warning "DONT UPDATE LAST SAMSUNG TV FIRMWARES".
.
Best regards, Alpha-Omega (DO NOT UPDATE WITH LAST FW VERSIONS!)

Samsung LE40B650T2PXZG TV w/ FW T-CHLCIPDEUC-2006.0 + SamyGO patch
Samsung BD-D5300 Blu-ray player w/ unpatched FW 2012/10/19_001030
Apple Macbook (C2D 1.83GHz, 2GB RAM, 320GB HD): OS X 10.6.8
Home Server (Intel DQ45CB, C2D E8400, 3GHz, 4GB RAM, ATI HD Radeon 5450 1GB, 1TB softRAID1): Ubuntu 11.10 64bit
Linksys NSLU2 w/ Debian/NSLU2 (armel) 5.0.3 - AVM Fritzbox WLAN 7170 + 7050 w/ Freetz-Mod
.
a-o
 
Posts: 128
Joined: Tue Jan 05, 2010 6:26 am

Re: LExxB650 T2P CI+ hacking

Postby zibri2 » Sat May 21, 2011 12:26 pm

Simple question:

I found these codes inside exeDSP of T-VALDEUC 3009.2

Code: Select all
1194444
8158282
81588
81599
81501
81590
30101


but I didn't find 1198282... where should that be?
zibri2
 
Posts: 134
Joined: Fri Apr 29, 2011 12:02 am

Re: LExxB650 T2P CI+ hacking

Postby juzis » Sat May 21, 2011 12:55 pm

1198282 is for B series. You are looking T-VALDEUC, It`s for C series.
juzis
SamyGO Moderator
 
Posts: 6016
Joined: Sun Mar 07, 2010 6:20 pm

Previous

Return to [B] Hardware

Who is online

Users browsing this forum: No registered users and 1 guest