Hacking CA system challenge *Tandberg [ NO Keys Allowed in Chat Section/s ]*

siawoosh

Feed Hunter
Messages
814
Latest version of firmware for RX-8200 is 8.5.0 but in some log files that I already sent to Anubis_Ir (+firmware)they mentioned to 8.11 version.That version is not exist and they want to mislead.The big problem is that they didnt use constant keys stored in firmware!! They weekly send new keys and clients must inject those keys into the recivers.
 

Anubis_Ir

Registered
Messages
370
RX-8200 8.5.0 has been analyzed and it doesn't contain the new nano `EC`. It's old and only supports nano EE and ED.
This is the build info of the last version:
 
Last edited:

siawoosh

Feed Hunter
Messages
814
RX-8200 8.5.0 has been analyzed and it doesn't contain the new nano `EC`. It's old and only supports nano EE and ED.
This is the build info of the last version:
I ask my friend who works in one of the biggest company in the world (Broadcasting)about the version of 8.11 ! He told me they have 48 recivers with version 8.5 and work perfectly for EPL feeds.
 

harshy

Registered
Messages
746
I ask my friend who works in one of the biggest company in the world (Broadcasting)about the version of 8.11 ! He told me they have 48 recivers with version 8.5 and work perfectly for EPL feeds.

I don’t understand how do official receivers cope without this nano, oh is this nano used as Some protection layer to protect the real key?

I am guessing this is going to be even more difficult to crack?
 

ilmago_

Registered
Messages
196
Code:
h**p://www.ebay.it/itm/Tandberg-Ericsson-RX8310-Distribution-Receiver-/111863746538?hash=item1a0b994fea:g:MvUAAOSwLN5WhpqI

Why we don't take up a collection all together to buy an ericsson receiver to dump firmware? :thum:
 

Ragnarok

Donating Member
Messages
336
I don’t understand how do official receivers cope without this nano, oh is this nano used as Some protection layer to protect the real key?

I am guessing this is going to be even more difficult to crack?

If there is nothing in the new firmware maybe we are missing something in the EMM stream. I'm sure there where some new looking unsupported EMMS, Could they be loading new information into the these receivers to use the new nano through the emm stream.
 

fiji

Member
Messages
1,095
If there is nothing in the new firmware maybe we are missing something in the EMM stream. I'm sure there where some new looking unsupported EMMS, Could they be loading new information into the these receivers to use the new nano through the emm stream.
Agreed Old flash in box somthing missing in [tb]v3 .
if changes come with new box & flash then may be add new functions .
 

harshy

Registered
Messages
746
Yes looks like one of the new functions includes the insertion of Tandberg Keys sent by the providers onto their extranet.
 

Anubis_Ir

Registered
Messages
370
This is the new `bin\.mdl` file for vPlug (+ full source code) and supports the new nanoEC. You should copy it to vModules folder.
Notes: It requires a DES key and also an AES key (included too, in the bin folder). Without these `2 keys`, it won't work.

So ...
- Good news: we know how nanoEC works.
- Bad news: It requires 2 keys. 1 DES key and 1 of 32 AES keys which won't be transmitted by the EMMs.

Based on the posted image, AES keys start from index 01 to 20 and not 00 to 1F. Use the attached file.
 
Last edited:

nickomaru

Registered
Messages
90
301b412612.png
 
Top