Posts: 24
Threads: 0
Joined: Oct 2018
Reputation:
0
@emantec
did you do chip off read? With what device you dump nand?
encrypted nand did you verifY read that it was not corrupt?
Posts: 6
Threads: 0
Joined: Jan 2019
Reputation:
0
Does anyone have the 9.1.116.608 firmware, or a mechanism to log in to this release? I can login to 9.1.116V using the mechanism from the NCC blog and I'm sure there must be other vulnerabilities to allow local login still. I looked at the two UARTs and only get output though someone mentioned the possibility of causing some sort of crash. Also from another site, it seems JTAG is disabled, so not going to try that route.
Posts: 180
Threads: 7
Joined: Dec 2008
Reputation:
4
nothing else has been done since this thread got made
Posts: 6
Threads: 0
Joined: Jan 2019
Reputation:
0
Ok, well if anyone is interested in collaborating, I have a spare 116V device I bought on ebay to play with and can extract all the disk images from it, as well as one running 608 that I haven't got into yet.
Posts: 180
Threads: 7
Joined: Dec 2008
Reputation:
4
see what ya can do with it break down the fw from it
Posts: 180
Threads: 7
Joined: Dec 2008
Reputation:
4
have you managed to break down the fw on this router
Posts: 6
Threads: 0
Joined: Jan 2019
Reputation:
0
19-01-2019, 07:46 PM
(This post was last modified: 19-01-2019, 07:48 PM by vmu19.)
I just copied all the partitions off the device with tftp and then extracted them with binwalk