Breaking the D-Link DIR3060 Firmware Encryption - Static analysis of the decryption routine - Part 2.2
Tags
attack-pattern: | Data Model Firmware - T1592.003 Hooking - T1617 Tool - T1588.002 Hooking - T1179 Sudo - T1169 Hooking |
Common Information
Type | Value |
---|---|
UUID | e28fbbe6-8187-4550-9d17-0efbaa2ff24a |
Fingerprint | a6359410048d93d4 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | July 15, 2020, 8:20 p.m. |
Added to db | Jan. 18, 2023, 8:01 p.m. |
Last updated | Nov. 15, 2024, 3:35 p.m. |
Headline | Breaking the D-Link DIR3060 Firmware Encryption - Static analysis of the decryption routine - Part 2.2 |
Title | Breaking the D-Link DIR3060 Firmware Encryption - Static analysis of the decryption routine - Part 2.2 |
Detected Hints/Tags/Attributes | 57/1/21 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | dlink-dec.py |
|
Details | Domain | 3 | extract.py |
|
Details | File | 1 | dir_882_fw120b06.bin |
|
Details | File | 1 | decrypted_dir_882_fw120b06.bin |
|
Details | File | 1 | 2_dir-882_reva_firmware122b04.bin |
|
Details | File | 1 | dir882a1_fw130b10_beta_for_security_issues_stackoverflow_20191219.bin |
|
Details | File | 1 | dir-1960_reva_firmware103b03.bin |
|
Details | File | 1 | dir-2660_reva_firmware110b01.bin |
|
Details | File | 1 | dir-3060_reva_firmware111b01.bin |
|
Details | File | 1 | dlink-dec.py |
|
Details | File | 1 | decrypted_dir-3060_reva_firmware111b01.bin |
|
Details | File | 4 | extract.py |
|
Details | File | 52 | hash.txt |
|
Details | File | 8 | cracked.txt |
|
Details | File | 224 | rockyou.txt |
|
Details | md5 | 1 | a59e7104916dc1770ad987a13c757075 |
|
Details | md5 | 1 | 339f98563ea9c0b2829a3b40887dabbd |
|
Details | md5 | 1 | f2aff7a08e44d77787c7243f60c1334c |
|
Details | md5 | 1 | ba72e99a3cea77482bab9ea757d33dfc |
|
Details | md5 | 1 | 86e3f7baebf4178920c767611ec2ba50 |
|
Details | md5 | 2 | C05FBF1936C99429CE2A0781F08D6AD8 |