{
  "guid": "05f6851b-4892-51ba-a2d1-06a1a9896857",
  "id": 723,
  "date": "2024-12-27T16:00:00+01:00",
  "start": "16:00",
  "duration": "01:00",
  "room": "Stage HUFF",
  "slug": "38c3-reverse-engineering-u-boot-for-fun-and-profit",
  "url": "https://events.ccc.de/congress/2024/hub/de/event/reverse-engineering-u-boot-for-fun-and-profit/",
  "title": "Reverse engineering U-Boot for fun and profit",
  "subtitle": null,
  "language": "en",
  "track": null,
  "type": "Talk 60 (45min +15 Q&A)",
  "abstract": "A field guide to dumping and reverse engineering a bare-metal U-Boot binary, including all the good stuff like funky hardware setups, UART logs, a locked bootloader and unknown base addresses.",
  "description": "Working on hacking a babyphone and encountering a locked bootloader, we were faced with a major roadblock. So, naturally, we bashed our head against said problem for 2 weeks, coming out the other side with a few fun challenges, solutions and tid-bits.\r\n\r\nI want to recreate this experience here in this talk, by doing the whole process all over again, but this time live, in front of an audience.\r\nIncludes:\r\n    - getting serial logs\r\n    - dumping firmware\r\n    - extracting firmware\r\n    - reverse engineering the U-Boot bootloader, to extract the bootloader password\r\ntogether with some tips, tricks and snark remarks.",
  "logo": null,
  "persons": [
    {
      "guid": "c7a73973-24cb-51e1-bc64-5c8dd2ec49c4",
      "name": "zeno",
      "public_name": "zeno",
      "avatar": "https://cfp.cccv.de/media/avatars/profile_image_Ox7XTjG.png",
      "biography": null,
      "url": "https://events.ccc.de/congress/2024/hub/de/user/speaker_c7a73973-24cb-51e1-bc64-5c8dd2ec49c4/"
    }
  ],
  "links": [],
  "origin_url": "https://cfp.cccv.de/38c3-community-stages/talk/8PCNSP/",
  "feedback_url": "https://cfp.cccv.de/38c3-community-stages/talk/8PCNSP/feedback/"
}