How does Tandberg Works ?

natedogg20050

Donating Member
Messages
409
i would like to understand how Tandberg Works , how does the Video Enc work ? its it similar to Power VU ? since we receive the the Audio Signals it means that only video its coded.
 

kebien

Well Known Member
Messages
1,329
Powervu or any other system can encrypt only audio or only ,or both.
Nothing special about it.
Unless someone take apart a tanberg decoder and is able to extract the encryption algorithm nothing can be done or understood.
The ECM is very simple
00 81 70 18 EE 16 00 00 03 C2 2F 7C EF E6 74 A8 F6 1D 0B 8C 7A 55 46 9C 8C DA 17 E3
00 80 70 18 EE 16 00 00 03 C2 BF 74 1B 6E 42 00 28 8B 0B 8C 7A 55 46 9C 8C DA B2 63
00 81 70 18 EE 16 00 00 03 C2 BF 74 1B 6E 42 00 28 8B 29 BC 63 7E 95 33 CB 6B B6 14

Still not knowing how the control words are encrypted there is nothing to do with it.
After that there is a question if the video encryption is using CSA,DES or any other,which can amount more problems.
 

Dave5118

Feed Hunter
Messages
1,147
Powervu or any other system can encrypt only audio or only ,or both.
Nothing special about it.
Unless someone take apart a tanberg decoder and is able to extract the encryption algorithm nothing can be done or understood.
The ECM is very simple


Still not knowing how the control words are encrypted there is nothing to do with it.
After that there is a question if the video encryption is using CSA,DES or any other,which can amount more problems.

Definitely CSA :D
Managed to get a valid c8/CW several times, which gives you about 10secs of video(recorded).
 

kebien

Well Known Member
Messages
1,329
At least,then one thing is sorted out,CSA.
Good starting point.

I guess the first attempts would be to collect many C8 and ECM packets and start looking for clues.
The idea of brute force an algorithm is too see if it can be guessed by encrypting the CW different ways until the result matches the ECM packet.
It is a lot of work,and time.Two things you have to guess : the algorythm and the key used,impossible task.
A lot faster if someone takes apart the IRD,given the security element is present,and see if it can be read.
 
Last edited:

LoginX

Donating Member
Messages
165
One thing it's clear in my humble opinion. You need someone like Colibri.

I try with someone who works with *** platform and we were closed, but we couldn't get a hand to a SKY STB and the work stopped. What i mean to say with this, you need a guru in this "line of bussines" .
And the last thing, everything it s encrypted, it's meant to be decrypted :). At least this is what i learn in my years on internet and computing.
 

natedogg20050

Donating Member
Messages
409
At least,then one thing is sorted out,CSA.
Good starting point.

I guess the first attempts would be to collect many C8 and ECM packets and start looking for clues.
The idea of brute force an algorithm is too see if it can be guessed by encrypting the CW different ways until the result matches the ECM packet.
It is a lot of work,and time.Two things you have to guess : the algorythm and the key used,impossible task.
A lot faster if someone takes apart the IRD,given the security element is present,and see if it can be read.

it might be a long road but its a good thread to start posting infos and more informations , i was checking the prices of Tandbergs Encoders they are up to 9000 USD which is totally crazy.
 
Top