Page 2 of 4 FirstFirst 1234 LastLast
Results 11 to 20 of 35
Discuss [Time Capsule] run SSH on its NetBSD? at the Hardware - Hackint0sh.org; Heya, Did anyone ever look into this? It seems the firmware is crypted. at first ...
  1. #11
    Newbie Array

    Join Date
    May 2008
    Posts
    1
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Heya,

    Did anyone ever look into this?

    It seems the firmware is crypted. at first glance.

    Let me know. You may know me from openwii.org.



    Thanks,

    Rhcp
    http://www.crond.org
    http:/www.openwii.org


  2. #12
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    Hi,

    I think so.
    try downloading the file
    http://apsu.apple.com/data/107/061-4...3.1.basebinary

    Any idea on how to start looking into this?
    how to begin?

  3. #13
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    bump
    anyone on how to start to decrypt the file?

  4. #14
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    Hi,

    the new Version for the TC 7.3.2 came out and I did a complete network capture of all packages.
    How can we use this to understand the update process?

  5. #15
    sam
    sam is offline
    Chief of Administration
    iPhone Dev Team
    Array sam's Avatar

    Join Date
    Jun 2007
    Posts
    1,839
    Post Thanks / Like
    Downloads
    35
    Uploads
    277
    Rep Power
    10

    Default

    Can you post this dump here? Maybe place it on rapidshare for us all to get and research.
    If you just want to support hackint0sh.org with a donation click here.
    Follow me on twitter: http://twitter.com/sam_hackint0sh


  6. #16
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    here they are.

    the start of the airport-utility (where it searches and finds the TC)
    http://rapid $ hare.com/files/126660095/airport-utility-start.pcap.html

    The download of the firmware 7.3.2 (might not be that interesting)
    ttp://rapid $ hare.com/files/126660682/TC-Update-Download.pcap.html

    And the update process itself
    http://rapid $ hare.com/files/126661240/TC-Update-Process.pcap.html

    ...these are all files I took with wireshark...

    I could see that the communication runs via the port 5009 on the TC.
    I think there are 2 questions:
    1) is it possible to connect to the 5009 port somehow and do something?
    2) or do we need to modify the firmware itself in order to enable SSH; Firefly Media Server and so on...

    thank you for your help!

  7. #17
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    hey guys,

    i still need some help here - also I understand that the focus in on the iPhone now...

    without having too much insights I would guess that the TC-Firmware (the .basebinary) is comparable to the iPhone: it is also an encrypted firmware I guess

    I saw this thread regarding the dectyption of firmware
    http://hackint0sh.org/forum/showthread.php?t=40063

    but can we use a similar approach to see what is in the .basebinary?
    Any hint on where to start; what to look for; what to "learn";...
    would be great!!!

  8. #18
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    anyone please?

  9. #19
    sam
    sam is offline
    Chief of Administration
    iPhone Dev Team
    Array sam's Avatar

    Join Date
    Jun 2007
    Posts
    1,839
    Post Thanks / Like
    Downloads
    35
    Uploads
    277
    Rep Power
    10

    Default

    I think the basebinary is more a much basic image than a actual firmware compareale to the iphone ipsw/dmg

    As you can see from the file'S descritpr header, it is some kin d of propetery binary firmware format:
    41 50 50 4C 45 2D 46 49 52 4D 57 41 52 45 00 00 00 00 00 6B 07 31 80 02 00 00 00 00 00 00 00 00 | APPLE-FIRMWARE.....k.1..........
    41 50 50 4C 45 2D 46 49 52 4D 57 41 52 45 00 00 00 00 00 6B 07 31 80 02 00 00 00 02 00 00 00 00 | APPLE-FIRMWARE.....k.1..........

    I have checked the history of .bsebinary and came up with that the same format is used for airport extreme before. There are also upgrades with utilities to upgrade device. I will take alook what it might be and talk back to you if I find something.

    At least the updater has some intresting functions in it like _ACPVerifyAppleFirmwareImage
    Last edited by sam; 07-16-2008 at 02:20 PM.
    If you just want to support hackint0sh.org with a donation click here.
    Follow me on twitter: http://twitter.com/sam_hackint0sh

  10. #20
    Supporter Array

    Join Date
    Aug 2007
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    14

    Default

    Quote Originally Posted by sam View Post
    At least the updater has some intresting functions in it like _ACPVerifyAppleFirmwareImage
    where did you get this information from?


 

 
Page 2 of 4 FirstFirst 1234 LastLast

Similar Threads

  1. FS: 2TB time capsule
    By ipatch in forum Mac stuff
    Replies: 1
    Last Post: 09-01-2012, 04:43 AM
  2. Time Capsule Hackable?
    By GoodOmens in forum Hardware
    Replies: 2
    Last Post: 09-24-2010, 09:00 PM
  3. MacNN: Stardom intros Safe Capsule storage for Time Capsule
    By hackint0sh in forum Latest Headlines
    Replies: 0
    Last Post: 11-26-2009, 10:40 PM
  4. Apple TV -- Time Capsule
    By Tehanu in forum AppleTV 1
    Replies: 4
    Last Post: 10-07-2009, 02:35 PM
  5. Replies: 0
    Last Post: 04-02-2008, 03:20 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Powered by vBulletin®
Copyright © 2013 vBulletin Solutions, Inc. All rights reserved.
Search Engine Friendly URLs by vBSEO
(c) 2006-2012 Hackint0sh.org
All times are GMT +2. The time now is 09:04 AM.
twitter, follow us!