Skip to content
TeeKaa OpSec AB Blog

TeeKaa OpSec AB Blog

Side Projects, tutorials, howtos and notes

  • Blog Home
  • Privacy Policy
  • About this blog
  • Back to Main Site
  • Toggle search form

A Hardware Hacker’s (or Penetration Tester’s) must haves

Posted on 2022-12-012022-12-01 By Teekåå

Ok, you are tired of searching for XSS and XSRF in the web interface of a router to make it yours (root access)

So how can we attack or hack the hardware?

Hardware is any type of device with a PCB you can physically access.

This post wil be a reference list for what tools you want to (MUST) have
Follow up blogposts will go through the tools in more detail

Tools (HW):

  • Buspirate by Dangerous Prototypes
    –Open Source Hardware design!
    –So many different features that I wont even start enumerating them..
    I recommend the 3.6 Version as 4.X has been in “development” phase for many years and you get most compatibility with tools using that version.
  • A general USB to FTDI serial communications card
    –Dirt cheap
    –Be sure to buy one with support for Vcc=3.3V and Vcc=5V
  • Soldering station
  • General GPIO pins for attaching to PCBs
  • Jumper cables or dupont cables
  • At least some decent wires/cables
  • Multimeter(!!)

Tools (SW):

  • Flashrom
  • Binwalk
  • Firmware toolkit
  • Refirmware
  • TTY interpreter (Windows)
    Linux has built in via terminal, command is
    > monitor /dev/ttyX %BAUDRATE%
    Be sure to either run as root via sudo or add your user to the singnals-out permission usergroup.

Brainware:

  • Patience, a lot of patience
  • Think before you act
  • Never try to connect to something attached to its normal PSU or that is on and running.
  • A curiosity that survives all the first failed attempts. Take note and analyze what went wrong.

Related

Hardware hacking 101 Tags:Hardware hacking Penetration Testing

Post navigation

Previous Post: Blink
Next Post: BusPirate v3.6 by Dangerous Prototypes

Related Posts

Something to practice on (series): Asus router Hardware hacking 101
Something to practice on (series): LED Strip controllers Hardware hacking 101
A way to attach yourself to the device’s PCB Hardware hacking 101
USB to FTDI RS232 Serial Communication device Hardware hacking 101
BusPirate v3.6 by Dangerous Prototypes Hardware hacking 101

Archives

  • February 2023
  • January 2023
  • December 2022
  • November 2022

Categories

  • Educational content
  • Hardware hacking 101
  • Informative Rants
  • Offtopic or noncategorizable
  • Warnings and newsflash

Recent Posts

  • Secure C programming practices (or HowToMake C Memory Safe(r))
  • Breaking news! Update every device you own, Qualcomm TrustZone TrustEnvironment is pwned
  • Addition to FISA702 rant about who has access to your living room
  • The Right to Privacy, Data Protection and American legislative FISA702
  • Something to practice on (series): Asus router

Recent Comments

No comments to show.

Copyright © 2023 TeeKaa OpSec AB Blog.

Powered by PressBook Masonry Dark