Chip-Off Firmware Extraction and Reverse Engineering of Arris SB6121 Cable Modem

Поделиться
HTML-код
  • Опубликовано: 2 дек 2024

Комментарии • 48

  • @ilyakuznetsov6462
    @ilyakuznetsov6462 Год назад +36

    That poor little capacitor went unnoticed :(

    • @mattbrwn
      @mattbrwn  Год назад +4

      omg yeah I saw that when I was editing the video...

  • @Levelworm
    @Levelworm 9 месяцев назад +2

    Hi Matt, this is really really helpful. I absolutely love how you go through the step on by one and explain the why of each step. I have bought a soldering iron and a hot air gun but so far I haven't gathered the courage to try them out. Your video completely removed my underlying reluctance. Good job!

  • @johnsantos975
    @johnsantos975 Год назад +2

    Excellent, I appreciate you taking the time to go through the whole process in real time. Excellent job. Superb

  • @funil6871
    @funil6871 3 месяца назад

    Continue doing this great work, Matt.

  • @sunny53078
    @sunny53078 Месяц назад

    VERY INTERESTING THANK YOU SO MUCH FOR THIS

  • @damny0utoobe
    @damny0utoobe 6 месяцев назад

    Excellent tutorial.
    Binwalk is a good util

  • @hardrocklobsterroll395
    @hardrocklobsterroll395 9 месяцев назад

    First video here and I think I’m Gonna like your channel

  • @jnilsson1983
    @jnilsson1983 Год назад +1

    Nice work! Thank you for sharing and showing us problems on the way that you solves on the go!

  • @neon_Nomad
    @neon_Nomad Год назад +6

    Im a simple human i see matt brown i click matt brown

  • @Rf-Vision.Technologies
    @Rf-Vision.Technologies 7 месяцев назад +1

    Ok so I've been watching your videos for awhile now and like most of your commenters, i think your stuff is digital gold. But it just clicked and occurred to me, although i don't watch streams myself per say, I do watch alot of straemers YT content which as you know is often outtakes from streams or sometimes standalone projects. My point is I just realized your a streamer bro! Your personality and content formatting like your voice overs are perfect and it already seems you have a solid community behind you and developing. Keep doing you but please stream what you do and monetize it accepting donations ect. You would pop off in the tech world. Just a thought, peace.

    • @mattbrwn
      @mattbrwn  7 месяцев назад +2

      Thanks man! Yeah I've thought about streaming as well but there are at least a couple reasons that it would not work for me. One is that you want to stream at a consistent time to grow an audience but having a family makes that hard. If you see the time on my computer/watch on my videos you'll see that I usually record very late at night. Second reason is that I'm often finding stuff in devices that I have to censor in the video edits which would not be possible if streaming.

    • @Rf-Vision.Technologies
      @Rf-Vision.Technologies 7 месяцев назад

      @@mattbrwn Ahh I see still your up there with the best bro all the best

  • @honda4life894
    @honda4life894 Год назад +4

    You dont need to remove the chip. You can use an in circuit chip clip. I have done this on a 6580. Also, if you plug into cable, it will get a default config from your isp. If you ssh into the device you can get root access and download the firmware and config for review.

    • @mattbrwn
      @mattbrwn  Год назад

      I don't have cable internet. I have fiber.
      I'm guessing there is a way to emulate the cable signal somehow but I need to look into that. The Ethernet port doesn't get a link at all. I'm guessing it needs the cable side to come up first.

    • @honda4life894
      @honda4life894 Год назад +5

      @Matt Brown you would have to emulate a cmts and that would be hard as you would have to have the correct upstream and downstream frequencies modulated. You would need a cmts with dcam and ucam cards

  • @xenoxaos1
    @xenoxaos1 4 месяца назад +1

    10:39 I hope that cap wasn't important...

  • @Ravnegutten
    @Ravnegutten 6 месяцев назад

    This is great!

  • @johnsantos975
    @johnsantos975 Год назад

    Please continue to do more vids

  • @sunny53078
    @sunny53078 Месяц назад

    i have tried like hell to get the firmware to extract the way you did. Can you please make a video on how you set up your computer to do this and maybe go into a little more depth with teaching the commands. I cant get the files out of the squashfs. I got 3 of these modems chips off the boards already lol

  • @drcmediarepairtool
    @drcmediarepairtool Год назад

    hi, does xgecu board you use can dump bga153 emmc from android tv box?

  • @robbietee4785
    @robbietee4785 6 месяцев назад

    28:20 "password = maplesyrup, not localised" ???

    • @Spudz76
      @Spudz76 6 месяцев назад

      all in test smtp files. every cable company redefines the SMTP credentials, these days.

  • @tradeshmarts2056
    @tradeshmarts2056 Год назад

    Can i ask what was the purpose of doing this? The application?

  • @LiftsInGermany
    @LiftsInGermany Год назад +1

    is there no way with JTAG / UART?

    • @Spudz76
      @Spudz76 6 месяцев назад +1

      Was possible on earlier models of SurfBoard but they learned their lesson and even if it did have JTAG pins or pads, they are disabled and/or the CPU won't give a real dump or accept writes.

  • @Myself-yh9rr
    @Myself-yh9rr 6 месяцев назад

    To emulate the internet side of it you need some knowledge of DOCSIS. I am not sure if connecting it to a MoCA adapter using a coaxial cable would work. I know that a lot of these devices would not experience interference from MoCA. It uses different frequencies so that it ought not interfere.

    • @Spudz76
      @Spudz76 6 месяцев назад

      The thingy on the other end that it would talk to is called a CMTS which might help search for some sort of CMTS emulator/test harness. Most old school DOCSIS hackers would just find an actual decommissioned CMTS unit somehow, if what they were testing couldn't work black-box style with a live cable network (real CMTS).

    • @martinmadsen1199
      @martinmadsen1199 3 месяца назад

      The Arris CMTS 1000 are relatively cheap now, dhcpd and tftp is all you need.

  • @peteroyepez
    @peteroyepez Год назад

    can you make a sb6190

  • @KavorkaDesigns
    @KavorkaDesigns 6 месяцев назад

    I asked ChatGPT this, I got a few answers you'll like! "How to emulated a coax isp input to modem for Arris to do ethernet setup, i need to access the wifi settings and it will not detect over Ethernet unless emulated, what are my options?"

    • @KavorkaDesigns
      @KavorkaDesigns 6 месяцев назад

      What it spit out, do the search for more details on each:
      Use a Dummy Coaxial Signal
      "Connect one end of the splitter to the modem and the other end to a 75-ohm terminator. This tricks the modem into thinking it’s receiving a signal."
      Access via Backup Battery (if applicable)
      "Sometimes, during the initial boot process, the modem/router might allow access to its settings via Ethernet even without a live coaxial signal."
      Bypass Coaxial Check
      "Telnet or SSH connection"

  • @markayala7752
    @markayala7752 Год назад +2

    without watching the video i click like :) .

    • @mattbrwn
      @mattbrwn  Год назад +3

      haha much appreciated!

  • @sunny53078
    @sunny53078 Месяц назад

    DO THE SB6580 NEXT

  • @weniweedeewiki.6237
    @weniweedeewiki.6237 Год назад

    Yes my g

  • @shanebrady568
    @shanebrady568 Год назад +1

    Did you teach yourself Linux or did you take a computer course for that?

    • @mattbrwn
      @mattbrwn  Год назад +4

      I taught myself. I know very few Linux users/professionals who got into it by a structured course.
      The best way to learn is to install Linux on some old laptop/desktop you don't use anymore. If you don't have one laying around, then either buy one refurbished on ebay or get a Raspberry Pi. There are TONS of youtube videos that will walk you through this process and teach you other stuff about Linux along the way. But the best way to learn Linux is to try using it as your "daily driver" (the computer you use to get your work done) as much as possible.

    • @shanebrady568
      @shanebrady568 Год назад

      @@mattbrwn I'd love to teach myself Linux (bash). Could you recommend any books that would help me learn Linux?

    • @sleepymarauder4178
      @sleepymarauder4178 Год назад +1

      @@shanebrady568 The Cyber Mentor has a good course on RUclips.
      The Linux Command Line interface is a free online book.
      Linux for hackers is also a nice resource.
      But you will learn the most from fucking up and trying to fix it.
      Learn by doing, hands on the keyboard.

  • @I_hu85ghjo
    @I_hu85ghjo 7 месяцев назад +1

    13:44

  • @sergius4691
    @sergius4691 11 месяцев назад

    13:15 that made me laugh

  • @larrybud
    @larrybud 11 месяцев назад

    Look, am I going to get free PPV or not? lol

  • @samuelvaclavik7500
    @samuelvaclavik7500 Год назад +1

    I’m curious what that rsa_key.priv file was all about 😵‍💫

    • @mattbrwn
      @mattbrwn  Год назад +2

      used for dropbear ssh server as the SSH server's RSA host key:
      from service file:
      dropbear -r /etc/rsa_key.priv