So you want to find backdoors in Chinese BIOS...

  Рет қаралды 4,302

Technically Unsure

Technically Unsure

Күн бұрын

In this video, I'll show you how you can dump the BIOS/UEFI and investigate it, analyze it, extract DXEs and load them all in Ghidra and try to find that "hidden backdoor" everyone's talking about. We'll use Flash programmer, Ghidra and many other tools in this video.
The dumped BIOS file: drive.google.c...
The extracted PE binaries:
drive.google.c...
#biosdump #uefi #ghidra #firmwareanalysis #backdoor #cybersecurity #reverseengineering #biosmodding #flashprogrammer #dxe #firmwarehacking #hardwarehacking #uefidump #bioshacking #firmware #biosanalysis #ghidratutorial #ghidraanalysis #securityresearch #vulnerabilityresearch #hiddenbackdoor #firmwareextraction #cyberforensics #malwareanalysis #hardwaresecurity #embeddedsecurity #flashdump #firmwaremodding #biosreverseengineering #securitytools #securityanalysis

Пікірлер: 20
@BrainSlugs83
@BrainSlugs83 Күн бұрын
That SPI ROM is 128 mega *bits* not *bytes*. It works out to 16 megabytes. You should share the ROM dump on the internet archive, for folks to look at, at home.
@TechnicallyUnsure
@TechnicallyUnsure Күн бұрын
You are right. I added links to the raw BIOS dump as well as extracted binaries in the video description. Thank you
@Phil-D83
@Phil-D83 Күн бұрын
Opnsense is a fork of pfsense- I prefer it
@NNasab-pm4le
@NNasab-pm4le 10 сағат бұрын
Excellent job on this video.
@TechnicallyUnsure
@TechnicallyUnsure 10 сағат бұрын
Glad you liked it!
@ipgucker
@ipgucker Күн бұрын
Beeindruckend! Danke!
@ericasante8545
@ericasante8545 Күн бұрын
lol moves from pfsense to Opnsense .. it’s pretty much the same just nicer interface
@xgeko2
@xgeko2 Күн бұрын
there are some other good reason's. Driver and hardware support, opnsense has more packages. there are some other things that are different but opnsense was a project based on pfsense by some former pfsense developers which is why its very similar. Honestly opnsense in my opinion is in a better spot that pfsense at the moment.
@AntonMaltsev
@AntonMaltsev 17 сағат бұрын
Thank you for the video it was quite curious! What about boards with their own version of the operating system, such as Radxa Debian, Orange Pi Debian, etc.? Without their version of OS, there will be no access to drivers (NPU, decoding-encoding acceleration, etc.).
@r0galik
@r0galik 14 сағат бұрын
What do you mean? You can flash many third party systems onto arm boards, in fact the first party OSes usually suck and often don't support GPU, video encode/decode etc.
@AntonMaltsev
@AntonMaltsev 12 сағат бұрын
@@r0galik let's look at the NPU. For example, Rock5 or OrangePi 5 (RK3588 with NPU). There are no open-source drivers for it (there is project from Tomeu Vizoso but with limitations). The only way to use NPU - take official image from Radxa|OrangePi with pre-build binaries for the system. Same problems with a lot of different devices (NXP, MediaTek, Sophon, etc.)
@r0galik
@r0galik 11 сағат бұрын
​@@AntonMaltsevI think you can use the NPU any system with the BSP kernel (Armbian, Joshua Riek Ubuntu etc).
@AntonMaltsev
@AntonMaltsev 11 сағат бұрын
​@@r0galik , it's a matter of luck if the pre-built binary with drivers will work in a different system. Sometimes it may, but there is no guarantee.
@r0galik
@r0galik 11 сағат бұрын
@@AntonMaltsev it's a matter of luck what works with the first party distros as well, as some devices are better supported by third party systems. So I don't get the argument. Besides, Raspberry Pi is guilty of this too.
@maksiodzidek1
@maksiodzidek1 Күн бұрын
Good job
@kentang902
@kentang902 Күн бұрын
Pin for flash ic eeprom 1,2,4,5,6,8 ...
@Rushil69420
@Rushil69420 Күн бұрын
Actually I wanna find [NSA]backdoors in Western consumer tech but I don’t have a CS degree or a desire to end up on a watchlist lol
@BrainSlugs83
@BrainSlugs83 Күн бұрын
They just do it in the open. They mandate companies like Intel and AMD to do it and call it a feature, e.g. Intel Management Engine, and AMD Platform Security, etc.
@justinupshaw672
@justinupshaw672 Күн бұрын
i would be interested to see the mother boards off of aliexpress. im looking at buying a duel x99 combo board ram and cpu
@TechnicallyUnsure
@TechnicallyUnsure Күн бұрын
Check out my past videos, I review bunch of them on my channel and even do Intel ME cleanup from BIOS on them
A simple BIOS for my breadboard computer
21:53
Ben Eater
Рет қаралды 347 М.
It's Official: The Real New COMMODORE® 64 is Finally Here!
39:28
Retro Recipes
Рет қаралды 56 М.
My Daughter's Dumplings Are Filled With Coins #funny #cute #comedy
00:18
Funny daughter's daily life
Рет қаралды 26 МЛН
小丑家的感情危机!#小丑#天使#家庭
00:15
家庭搞笑日记
Рет қаралды 28 МЛН
إخفاء الطعام سرًا تحت الطاولة للتناول لاحقًا 😏🍽️
00:28
حرف إبداعية للمنزل في 5 دقائق
Рет қаралды 68 МЛН
Surprise Comeback: Dark Energy Could Be Holographic After All
7:16
Sabine Hossenfelder
Рет қаралды 177 М.
I’m Downsizing and I’m SO EXCITED
11:38
Linus Tech Tips
Рет қаралды 648 М.
Maybe the smallest 4xM.2 NVMe NAS server
2:36
Stone James
Рет қаралды 3,4 М.
Best Virus Removal Tools: Cleaning a deeply infected system
8:31
The PC Security Channel
Рет қаралды 888 М.
revealing the features of the XZ backdoor
9:29
Low Level
Рет қаралды 282 М.
Earbuds that don’t make me want to die - Nothing Ear (open)
10:14
ShortCircuit
Рет қаралды 240 М.
How to program a bios chip - CH341A programmer, no, you don't have to modify it
13:06
Electronics Repair School
Рет қаралды 184 М.
BIOS, CMOS, UEFI - What's the difference?
5:37
PowerCert Animated Videos
Рет қаралды 2 МЛН
Bare-metal ARM firmware reverse engineering with Ghidra and SVD-Loader
14:40
My Daughter's Dumplings Are Filled With Coins #funny #cute #comedy
00:18
Funny daughter's daily life
Рет қаралды 26 МЛН