Lemmy Fans
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@lemmy.world to RevEng@infosec.pubEnglish · 26 days ago

Adventures of My Oven (Pinocchio) with ChipWhisperer

cfp.recon.cx

external-link
message-square
0
link
fedilink
  • cross-posted to:
  • [email protected]
2
external-link

Adventures of My Oven (Pinocchio) with ChipWhisperer

cfp.recon.cx

cm0002@lemmy.world to RevEng@infosec.pubEnglish · 26 days ago
message-square
0
link
fedilink
  • cross-posted to:
  • [email protected]
Adventures of My Oven (Pinocchio) with ChipWhisperer 2023
cfp.recon.cx
external-link
You probably wouldn't consider power analysis & fault injection being a required skill set for your oven repair person. But when your oven is actively lying to you and not just broken, a new type of repair is needed beyond just replacing a heating element. This talk starts from a common complaint: how a range of Samsung ovens show you only the set temperature, and the actual temperature varies widely (and is often incorrect). Using an attack combining power analysis & fault injection the code protection of the Toshiba TMP91FW series microcontrollers used in the controller is bypassed using a ChipWhisperer-Husky, which allows recovery of the oven firmware. From there the firmware is reverse engineered, and new functions are added to output the internal measured temperatures & control signals for analysis. This allows us to definitely demonstrate that the reason our thanksgiving turkey took so long to cook: an inflexible control system that cannot enable the heater long enough. Finally as a proof of concept, a patched version of the firmware improves how quickly it can recover, and is demonstrated cooking a souffle (all while displaying the actual oven temperature, also fixing one of the other common complaints). The documentation and tools are helpful for others repairing these ovens, hopefully diverting them from become waste.
alert-triangle
You must log in or register to comment.

RevEng@infosec.pub

reverseengineering@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

Reverse Engineering is a community about all aspects of RE!

Please be kind to each other!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 63 users / month
  • 70 users / 6 months
  • 1 local subscriber
  • 285 subscribers
  • 12 Posts
  • 6 Comments
  • Modlog
  • mods:
  • CyberKaida@infosec.pub
  • BE: 0.19.11
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org