Products > Test Equipment

Sniffing the Rigol's internal I2C bus

<< < (554/899) > >>

poida_pie:
Good golly man, this sorts out any need to open the 2072A machines now.
I myself have a non A series 2072 so the riglol keygen works fine for me.

But now, the problem for A series owners seems to be sorted thanks to this.

Correct me if I am wrong but the steps to hack an A series  Rigol 2000 DSO is
1 - flash it with attached firmware
2 - connect, issue "*IDN?", write down serial and keys
3 - flash it with current firmware or not, up to you.
4 - find the keygen that you can put in your specific private keys (where would I find that, exactly? I forget.)
5 - generate keys
6 - stuff them into the DSO
7 - get a beer from the fridge, done.

This means no more jtag, no more opening up the new A series DSOs. No more worrying about warranty.
zombie28 you are The Man.
I have a  fridge full of home brew, if ever you are traveling by the way of Melbourne AUS...
P.


--- Quote from: zombie28 on February 01, 2014, 08:10:30 pm ---
--- Quote from: poida_pie on January 29, 2014, 04:17:18 am ---What chances are there to patch a firmware so that it outputs the key and serial when you send it
"*IDN?". That would be good.

--- End quote ---

Done!

https://mega.co.nz/#!MdcEWTgL!0EEmSr-Q6TxaFSsyEmjhRrgqDvFCoXg9K49BalL5Uxc

No need for JTAG memory dumps anymore, just send *IDN? command and you'll get your license encryption keys in response (tested on my DS2072A that has just arrived).

--- End quote ---

AndersAnd:

--- Quote from: tiagobaracho on February 02, 2014, 02:30:35 am ---Have it been tested on DS2072A with   Hardware version 2.0 ? yours is 2.0 ?
--- End quote ---
Every DS2000A series scope has HW 2.
It's only the older DS2000 non-A series scopes that comes with HW 1, but the newer non-A DS2000 also has HW 2, like the A models.

diyaudio:

--- Quote from: zombie28 on February 01, 2014, 08:10:30 pm ---
--- Quote from: poida_pie on January 29, 2014, 04:17:18 am ---What chances are there to patch a firmware so that it outputs the key and serial when you send it
"*IDN?". That would be good.

--- End quote ---

Done!

https://mega.co.nz/#!MdcEWTgL!0EEmSr-Q6TxaFSsyEmjhRrgqDvFCoXg9K49BalL5Uxc

No need for JTAG memory dumps anymore, just send *IDN? command and you'll get your license encryption keys in response (tested on my DS2072A that has just arrived).

--- End quote ---


zombie28 ! great work!

Can anyone do a demo and upload to youtube for us. please. 




ju1ce:

--- Quote from: zombie28 on February 01, 2014, 08:10:30 pm ---Done!

https://mega.co.nz/#!MdcEWTgL!0EEmSr-Q6TxaFSsyEmjhRrgqDvFCoXg9K49BalL5Uxc

No need for JTAG memory dumps anymore, just send *IDN? command and you'll get your license encryption keys in response (tested on my DS2072A that has just arrived).

--- End quote ---
Thanks. I tried this and got the keys. I'm afraid I can't do anything with them though unless a keygen is published. I tried earlier to do a memory dump using Segger J-Link, but it failed after about 48 hours...


--- Quote from: diyaudio on February 02, 2014, 01:53:18 pm ---zombie28 ! great work!

Can anyone do a demo and upload to youtube for us. please.

--- End quote ---
Install this firmware (you get the update instructions pdf from Rigol if you request a firmware update). Connect the scope to your windows PC using lan or usb and send the IDN command using Rigol's Ultra Sigma software (I'm sure there are other alternatives as well). The keys are in the output as told in the readme file. Anything simpler and it soon becomes too easy...

tirulerbach:

--- Quote from: zombie28 on February 01, 2014, 09:25:36 pm ---You can use either my first firmware patch (https://mega.co.nz/#!FFk10SCY!UuWPXyqZwmca00pa2clOth1ryh1Z-AAgJg2yibfoUw0) with old keygen (riglol.3owl.com) or my newest patch from the post above with the new tirulerbach's keygen (if he decides to publish it).

--- End quote ---

Decided: https://mega.co.nz/#!qAkUkTZB!XG12bUKhIz4CmQt6DbBnGRMvEe5AvUjEaBxi4R03tw8  ;)

Navigation

[0] Message Index

[#] Next page

[*] Previous page

There was an error while thanking
Thanking...
Go to full version
Powered by SMFPacks Advanced Attachments Uploader Mod