Page 1 of 2

UE55J5500 firmware dump

Posted: Tue May 31, 2016 9:10 am
by flowswitch
Our reckless team have dumped both SPI flash and eMMC from 55J5500. Here are some pieces (a full dump is too big, 4GB)

Re: UE55J5500 firmware dump

Posted: Tue May 31, 2016 9:35 am
by flowswitch
W25Q40B SPI flash dump. It has reversed byte order in dwords. Looks like this is a complete firmware for some separate lightweight Cortex-M core. It listens to some simple commands on UART (connected to main CPU ?).

As far as I understand, the main multicore subsystem boots from eMMC boot partition directly.

There is a key for *.msd upgrade files in USB updater module, but it is encrypted via some hardware ("se" part of "demux" module in device tree).

Re: UE55J5500 firmware dump

Posted: Tue May 31, 2016 9:37 am
by sectroyer
Nice work. Check PM ;)

Re: UE55J5500 firmware dump

Posted: Tue Jan 10, 2017 1:16 am
by ynon
The full dump should be very useful. Any ideas?
-ynon

Re: UE55J5500 firmware dump

Posted: Wed Jan 18, 2017 6:26 pm
by Jegan
J series pinout eMMC
UE32J5500AKXZT
Main: BN41-02353B
eMMC: THGBMBG5D1KBAIT
SpoilerShow
20170116_182938.jpg
20170116_182910.jpg
20170116_182859.jpg
20170115_171915.jpg

Re: UE55J5500 firmware dump

Posted: Wed Jan 18, 2017 6:27 pm
by juusso
Thanks man! :)

Re: UE55J5500 firmware dump

Posted: Wed Jan 18, 2017 6:27 pm
by Jegan
Maybe even what data are needed?

Re: UE55J5500 firmware dump

Posted: Wed Jan 18, 2017 6:28 pm
by juusso
Maybe some know how in wiki?

Re: UE55J5500 firmware dump

Posted: Wed Jan 18, 2017 6:28 pm
by Jegan
ok

Re: UE55J5500 firmware dump

Posted: Fri Jan 27, 2017 8:32 pm
by ynon
The full firmware dump files have already been made available to a few folks, courtesy of flowswitch and team. You know who you are. Point us to the repository, if it's still online.
thx

-ynon