Page 9 of 19
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 7:06 pm
by hondavtec
arris69 wrote:and if samsung coders really got the point how to make "secure" firmware updates all above won't help.
Sounds like SamyGo would be dead on all newly purchased and all upgraded E series TVs then

Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 7:40 pm
by arris69
hondavtec wrote:arris69 wrote:and if samsung coders really got the point how to make "secure" firmware updates all above won't help.
Sounds like SamyGo would be dead on all newly purchased and all upgraded E series TVs then

see at the subject of this post, it's just a proof of concept, made from boredom

and SamyGO is not just firmware downgrade...
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 7:49 pm
by alex3333
arris69 wrote:alex3333 wrote:Hi Arris69! Can you publish hyperlink (or links table) which TV assumed for firmware downloading and ip address of the server with yours firmwares? I want to play with 'hosts' file and the dnsmasq program for "re-route TV's request" on my Zyxel Keenetic Giga router.
play with hosts file makes just sense on tv.
if you play with dns, if tv requests
http://www.samsungotn.net dns answer shoud be CNAME infolink.samygo.tv
if you play with iptables and nat then reroute the traffic to 46.4.199.222
but no further support by me if you try to "hack around", thats why we made the server implementation, just set dns and let the tv make rest...
and if samsung coders really got the point how to make "secure" firmware updates all above won't help.
Thanks. It's enough. Adding "46.4.199.222
www.samsungotn.net" string to hosts and restarting dnsmasq on router i stiil got error 800. I think TV must be connected to normal
www.samsungotn.net first and then to the infolink.samygo.tv for firmware downloading. Now thinking about this. Setting dns on my TV i got network error on any widget run. In the case with hosts file all widgets runs normally.
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 8:12 pm
by asd0rr
@alex3333 can't you try to sniff traffic first keeping routing to normal dns, then try the dnsmaq trick and figure out what's wrong?
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 8:20 pm
by alex3333
asd0rr wrote:@alex3333 can't you try to sniff traffic first keeping routing to normal dns, then try the dnsmaq trick and figure out what's wrong?
Need select the correct tools for this...
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 8:27 pm
by alex3333
I think Wireshark is ok for that. I'll try to do.
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 9:45 pm
by alex3333
Yes !!! Found it!!! Magic string for hosts file is "192.168.0.2 az43064.vo.msecnd.net"
TV trying to download firmware from
http://az43064.vo.msecnd.net/firmware/t ... appext.img (on my ES6100 with FW 1029). On 192.168.0.2 must be own web-server with /firmware/tv/154/SWU_T-MST10PDEUC_001030_I04_KS000RS000ES000DS000_121101/appext.img with right firmware. One little problem - i don't have rigth firmware image for downgrading.
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Thu Dec 13, 2012 10:30 pm
by asd0rr
prob if you can post or pm to arris69 the entire log (stripping out sensible datas) it would be useful to try to find a patch or a workaround.
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Fri Dec 14, 2012 5:14 am
by E3V3A
hondavtec wrote:arris69 wrote:and if samsung coders really got the point how to make "secure" firmware updates all above won't help.
Sounds like SamyGo would be dead on all newly purchased and all upgraded E series TVs then :?:
No, because we'll find a way to unlock the bootloaders, just like we have done for all their mobile phones!!
So if Samsung wanna put sticks in our wheels, they can feel free to waste their time and money on that, instead of helping us out making their product better.
Re: E-Series Firmware Downgrade (SamyGO Proof of Concept)
Posted: Fri Dec 14, 2012 8:48 am
by juusso
E3V3A wrote:
No, because we'll find a way to unlock the bootloaders, just like we have done for all their mobile phones!!
So if Samsung wanna put sticks in our wheels, they can feel free to waste their time and money on that, instead of helping us out making their product better.
+1

your point of view completely respects spirit of SamyGO ...