RunFei: Difference between revisions
No edit summary |
No edit summary |
||
Line 1: | Line 1: | ||
[[Category:RunFei]] | [[Category:RunFei]] | ||
[[Category:Vendor]] | [[Category:Vendor]] | ||
These programmers are notable for containing functions to read out protected ICs (via gentle voltage glitching) and permanently destroy test circuitry to prevent security voltage glitching (via strong voltage glitching) | |||
= RF-1800 = | |||
RF-1800/810 manual: http://web.archive.org/web/20110313101116/http://www.runfei.com.cn:80/software/rf.doc | RF-1800/810 manual: http://web.archive.org/web/20110313101116/http://www.runfei.com.cn:80/software/rf.doc | ||
RF-3148 | |||
= RF-2148 = | |||
"Luckily the PLDs were early GALs which could have their code extracted using a Run-Fei RF-2148USB IC programmer. The software for the programmer allows for some early PLDs with security issues to be copied regardless of the security bit being set. Henry was in luck and was able to read and duplicate all the PLDs for this board." https://wiki.reactivemicro.com/GS-RAM_Plus | |||
= RF-3148 = | |||
https://www.vipprogrammer.com/rf3148-usb-universal-programmer-intelligent-chip-tester-programmer-784 | https://www.vipprogrammer.com/rf3148-usb-universal-programmer-intelligent-chip-tester-programmer-784 | ||
"this (no longer available) RunFei RF-3148 programmer I have has a "Read secured IC" function and a "Special protect" function for at89c52. however the documentation indicates that the latter requires an adapter that's unobtainium. there's two claimed additional security measures for at89c5x: "otp security" and "data line killing"" | "this (no longer available) RunFei RF-3148 programmer I have has a "Read secured IC" function and a "Special protect" function for at89c52. however the documentation indicates that the latter requires an adapter that's unobtainium. there's two claimed additional security measures for at89c5x: "otp security" and "data line killing"" |
Revision as of 00:30, 28 October 2018
These programmers are notable for containing functions to read out protected ICs (via gentle voltage glitching) and permanently destroy test circuitry to prevent security voltage glitching (via strong voltage glitching)
RF-1800
RF-1800/810 manual: http://web.archive.org/web/20110313101116/http://www.runfei.com.cn:80/software/rf.doc
RF-2148
"Luckily the PLDs were early GALs which could have their code extracted using a Run-Fei RF-2148USB IC programmer. The software for the programmer allows for some early PLDs with security issues to be copied regardless of the security bit being set. Henry was in luck and was able to read and duplicate all the PLDs for this board." https://wiki.reactivemicro.com/GS-RAM_Plus
RF-3148
https://www.vipprogrammer.com/rf3148-usb-universal-programmer-intelligent-chip-tester-programmer-784
"this (no longer available) RunFei RF-3148 programmer I have has a "Read secured IC" function and a "Special protect" function for at89c52. however the documentation indicates that the latter requires an adapter that's unobtainium. there's two claimed additional security measures for at89c5x: "otp security" and "data line killing""