Hacking CA system challenge *Tandberg [ NO Keys Allowed in Chat Section/s ]*

nautilus7

VIP
Messages
607
Well, if they updated all the time, it's not an old encryption, right?

Thank to Anubis_Ir and others it's almost cracked in less than 2 months. Not bad I would say.
 

barney115

Donating Member
Staff member
Administrator
Messages
24,827
The progress has been outstanding considering the level of difficulty involved in it .
hopefully this last hurdle will be overcome its just a matter of time now i believe and respect and credit to Anubis_IR and @ Siawoosh for their hard work and efforts ,
Cheers !
 

fiji

Well Known Member
Messages
1,097
Experiment & test separate file for TB V3 ( Offline stream Smart DVB )
- Add 3 ecm keys 16 + add 1 Aes keys 38
Use Aes keys for this .ts file : :thum:http://www.sat-universe.com/showpost.php?p=2036831927&postcount=1716
Replace in v-Plug folder:v_keys download

UlLs9EI.jpg


( If id 01 index 01 in aes keys then normal same id & index ecm disable in case jus work only Aes keys )

Thanks To Anubis_Ir
:cool:
 
Last edited:

barney115

Donating Member
Staff member
Administrator
Messages
24,827
Each weekend there is 3 sets of working AES Keys Sent to Tandberg Broadcaster boxes
this would be the main reason i believe that there is no picture found ,
So is it possible to find the 3 working sets of AES keys for this weekend ?
13,14,15 October ??
if someone has the valid dump of AES Keys or this weekends XML please pm me .
Thnx
 

harshy

Well Known Member
Messages
746
Thanks guys so I knocked off the first two digits and last four digits is that how it’s meant to work in oscam?
 
C

campag5242

Yeah knock off the first two digits, placing them as the key index eg for tonight you need T 02 AES 7F.....
 

barney115

Donating Member
Staff member
Administrator
Messages
24,827
Tried that but no luck .. Nothing i try so far has worked .
something clearly is not right as yet but not sure what it is ?
 
C

campag5242

Bin them. They are probably a checksum, so not needed for decryption, only to verify the integrity of the message.

I haven't been able thus far to prove that: I've tried the known tandberg block signing routine over index+key, over key alone... likewise a simple uint16_t xor sum. No luck.
 
Top