UFS/eMMC Firmware Extraction - UFI Box

4,498
0
Published 2024-07-18
In this video, I discuss a new firmware reader for UFS and eMMC flash chips, the UFI Box. I don't recommend this product unless you REALLY need to read UFS chips.

Amazon Echo paper mentioned in video:
dontvacuum.me/papers/ACMWisec-2021/

Need IoT pentesting or reverse engineering services?
Please consider Brown Fine Security:
brownfinesecurity.com/

IoT Hackers Hangout Community Discord Invite:
discord.com/invite/vgAcxYdJ7A

🛠️ Stuff I Use 🛠️

🪛 Tools:
Raspberry PI Pico: amzn.to/3XVMS3K
XGecu Universal Programmer: amzn.to/4dIhNWy
Multimeter: amzn.to/4b9cUUG
Power Supply: amzn.to/3QBNSpb
Oscilloscope: amzn.to/3UzoAZM
Logic Analyzer: amzn.to/4a9IfFu
USB UART Adapter: amzn.to/4dSbmjB
iFixit Toolkit: amzn.to/44tTjMB

🫠 Soldering & Hot Air Rework Tools:
Soldering Station: amzn.to/4dygJEv
Microsoldering Pencil: amzn.to/4dxPHwY
Microsoldering Tips: amzn.to/3QyKhrT
Rework Station: amzn.to/3JOPV5x
Air Extraction: amzn.to/3QB28yx

🔬 Microscope Setup:
Microscope: amzn.to/4abMMao
Microscope 0.7X Lens: amzn.to/3wrV1S8
Microscope LED Ring Light: amzn.to/4btqiTm
Microscope Camera: amzn.to/3QXSXsb

About Me:
My name is Matt Brown and I'm an Hardware Security Researcher and Bug Bounty Hunter. This channel is a place where I share my knowledge and experience finding vulnerabilities in IoT systems.

- Soli Deo Gloria

💻 Social:
website: brownfinesecurity.com/
twitter: twitter.com/nmatt0
linkedin: www.linkedin.com/in/mattbrwn/
github: github.com/nmatt0/

#hacking #iot #cybersecurity

All Comments (21)
  • @Micron88
    I am really glad i encountered your channel. Love your content and learned a lot. Your videos have exactly the right pace. Just wanna say thanks! Please keep it up.
  • Sounds like you need to spend a little time in Ghidra with their software. You could bypass the virtual system detect.
  • @mpicuser
    Hello Matt, always a pleasure watching your videos. Thank you!
  • @wasabinow
    Matt, thank you! Appreciate your interesting topics.
  • I like what you do, but honestly I would love to see more firmware analysis / linux stuff / reverse engineering, than hardware related thing. (I'm a hw guy) Thanks.
  • @XYZ56771
    Keep it up, its highly interesting!
  • Thaaaaank uuuuu Matt you are awesome for anyone want to get into hardware hacking
  • I would love to see more devices support that UFS memory card you may have heard of that looks kind of like a MicroSD card. I wouldn't be surprised if something better came along by now but I knew about UFS memory cards for a good while. The fact is that there is already UFS storage in phones, just soldered down. Why UFS memory cards don't seem to be used everywhere is a mystery to me. It is as if they suffered the same fate that Thunderbolt nearly did and would have if Apple did not use it. I would say that though Thunderbolt is NOT Apple proprietary it may be known for being easier to find on Apple devices.
  • @LostDeadSoul
    @Matt Brown Do you do FPGA stuff too? Just thinking that bit banging with an ASIC, one could be able to interface anything ;)
  • @Segphalt
    The what I assume is a USB A to USB A cable bothers me greatly.
  • @SkippyDa
    Thanks for this video, I wonder if you have any tool you recommend to extract files from an DiskOnChip G4 flash media storage (having a Windows CE on it)
  • @RetroDelete
    Thanks for the video Matt, one question though, isn't there supposed to be "UFI Box" instead of "EFI Box"? Not a grammar stickler, just wanted to ask :D . I was thinking to get one of these a while ago, thanks for helping me decide NOT to get one of these! I hate these arbitrary restrictions >:(
  • I will never buy a black box with proprietary software that only runs on Windows.
  • @philipp__3671
    The software making VM checks is weird to. Makes me wonder if it also does some checks if it's being debugged and doing some sketchy stuff. Anyways, there are ways to at least try to circumvent the vm checks. Eric Parker has a video on that, setting up a VMWare VM he uses when analyzing malware
  • @tweebs1
    Android huh.... I wonder what it would take to repurpose one of these to run an alternative ROM, with local Home Assistant support. Is there a repository for these firmware dumps out on the darkweb somewhere? I have a pile of these e-waste spyware ver1 echos around here somewhere.
  • @lilmancc35
    Im new to this channel and kind of confused. So the type of hacking you do is practically hardware hacking right? What is typically the purpose of this? Just to check weakness and modify the software on board? I'll be scrolling back at some older videos to learn more. This is interesting.