Skip to content

Instantly share code, notes, and snippets.

View orangecms's full-sized avatar
🐢
Hack the planet!

Daniel Maslowski orangecms

🐢
Hack the planet!
View GitHub Profile
@orangecms
orangecms / diff.md
Created October 29, 2024 01:22
diff of GX650PY and G733PYV firmware images

see PSPReverse/PSPTool#63

Diffing G733PYV323.rom vs GX650PY319.rom

Second gen (after Picasso/Raven Ridge) vs Second gen (after Picasso/Raven Ridge)
IMC Firmware                                  both empty
Gigabit ethernet firmware                     both empty
XHCI firmware                                 both empty
Fam 17 Model 00-0f BIOS                       both empty
@orangecms
orangecms / t480_mfs.log
Last active September 23, 2024 21:52
Intel ME MFS directory traversal like `ls -aR`
/home:
|
| 0008 . 636d d | 0000 .. 41ed d | 0009 RTFD 63c0 d |
| 0011 bup 63f9 d | 0023 cls 63c0 d | 0025 dal_ivm 63c0 d |
| 0035 dal_sdm 63c0 d | 0040 fpf 63ff d | 0043 fwupdate 63e8 d |
| 0055 gpio 63f8 d | 0060 hotham 63fe d | 0064 icc 63e8 d |
| 0092 ish_srv 63e0 d | 0096 loadmgr 63c0 d | 0099 manuf 63f8 d |
| 0101 mca 63ed d | 0108 mca_temp 63c0 d | 0110 mctp 63e8 d |
| 0117 nfc 63e8 d | 0120 nvinf 63ff d | 0122 pavp 63f8 d |
| 0145 pmt 63e8 d | 0148 policy 63f9 d | 0174 ptt 63c0 d |
@orangecms
orangecms / kexec-6.10-rc6.md
Last active July 7, 2024 20:31
kexec on RISC-V on 6.10-rc6
@orangecms
orangecms / arm_boot_log.txt
Last active May 10, 2024 15:04
Milk-V Duo S (SG2000) firmware
oreboot 🦀 bt0 on Arm
1091555380
boot_log_len: 2359
>>> BEGIN OF BOOT LOG
B. I:V/3360889e/7vcz:g2a3d7b10/0/40000000.
SCS/0/0. I:ep_swinfo.
I:sw_info=0x0
I:EP:0x3050134/0x0.
I:EP:0x305013c/0x0.
@orangecms
orangecms / build.sh
Created January 30, 2024 00:10
build Zephyr for VF2 / JH7110
#!/bin/bash
# get a toolchain; the one in current Ubuntu is not suitable, so use Zephyr's
# TOOLCHAIN_DL_BASE=https://github.com/zephyrproject-rtos/sdk-ng/releases/download
# TOOLCHAIN_VER=v0.16.5-rc1
# TOOLCHAIN_TAR=toolchain_linux-x86_64_riscv64-zephyr-elf.tar.xz
# wget $TOOLCHAIN_DL_BASE/$TOOLCHAIN_VER/$TOOLCHAIN_TAR
# tar -xf $TOOLCHAIN_TAR
TOOLCHAIN_DIR=$(pwd)/riscv64-zephyr-elf
@orangecms
orangecms / notes.md
Created January 16, 2024 14:53
UEFI hacking workshop

Abstract

We take a look at UEFI platform initialization firmware such as found on many current mainboards like laptops, desktops and servers.

Many security flaws, such as the recently discovered LogoFAIL vulnerability, expose both consumers and organizations to severe risks.

What strategies are there to find such issues, and how do we exploit them?

Description

From 482094ba156b7257ed88c396872e022bc299d629 Mon Sep 17 00:00:00 2001
From: Daniel Maslowski <[email protected]>
Date: Fri, 8 Dec 2023 21:36:37 +0000
Subject: [PATCH] www/minio: downgrade to RELEASE.2022-10-24T18-35-07Z
This is the tagged commit: `bd099f5e71d0ea511846372869bfcb280a5da2f6`
Using the release timestamp and hash to identify the module (variable
GO_MODULE)
errors when running `make makesum`, because the Go proxy does not know
@orangecms
orangecms / veve.md
Last active August 27, 2023 02:46
9loa veve
      ╮     ╭
      ⌺  ⌺  ⌺
      │╱│╱│
    ✳─⌺  ⌺  ⌺─✳
      │╱│╱│
      ⌺  ⌺  ⌺
      ╯     ╰
@orangecms
orangecms / oreboot-jh7110-dtfs-uboot.log
Last active May 19, 2024 15:32
VF2 upstream boot log
oreboot 🦀 bt0
boot mode: UART
RISC-V arch 8000000000000007
RISC-V core vendor: SiFive (0x0489)
RISC-V implementation: 21G1.02.00 / llama.02.00-general (0x04210427)
RISC-V hart ID 1
vout clk axi: 0x00000000
vout clk core: 0x00000000
vout clk ahb: 0x00000000
vout_reset_status: 0x00000000