log☇︎
31000+ entries in 0.182s
mircea_popescu: cnomad, aite, give it a few mins then, maybe not up to date yet
mircea_popescu: cnomad, say !!up to deedbot in a pm.
cnomad: mircea_popescu: ok. I'm not going to get to it within this month, but i'll ping you back for details to give you a die image
douchebag: My friend says he's going to research it some more. He said he can have a unit by Friday, he thinks it'll be interesting because it probably hasn't had as much attention given to it due to low market share
mircea_popescu: cnomad, how about you get a key registered, i send you some bitcoin dust, you order yourself a coupla chromebooks and "imagine it for us".
cnomad: yeah, for a whole chromebook
cnomad: floating an idea... do you folks have a batch of cr50s around that you might be willing to ship? ☟︎
douchebag: Sry, been jumping between quite a few different things throughout the day
douchebag: I didn't even know what a cr50 was 10 minutes ago
asciilifeform: ( unlocking 'rma open' counts as a troo break. )
mircea_popescu: make 100 shots if you have to, just learn how to use the damned sony and get a proper fixed shot
asciilifeform: but will strip down the box again ( gotta pull out mb and heat sinks etc ) and make a bigger, later this wk
mircea_popescu: asciilifeform, can you publish a very large pic of the chip (and margins) only ?
mircea_popescu: could just put a sane kbd driver in there and whatnot. i don;'t even fucking want google's kbd driver, they can shove it.
asciilifeform: mircea_popescu: if i could find a fpga that sits down pad-for-pad, it becomes a $10 problem.
asciilifeform: ( may even be, for all i know, literally a product of altera hardcopy )
a111: Logged on 2018-06-12 16:03 asciilifeform: but if can put a $5 fpga in its place, it's a 15 min job.
asciilifeform: a la altera's 'hardcopy'
BingoBoingo: Even then more apt metaphor for the operation would be a drain and fill
asciilifeform: douchebag: i'm not aware of a component known by name of 'motor compressor' anywhere in or near subj
asciilifeform: does he think subj is a refrigerator ? or wat
asciilifeform: aha, in so far as i can tell they did a fairly clean job.
deedbot: http://qntra.net/2018/06/trump-and-kim-make-a-deal-after-g7-treachery/ << Qntra - Trump And Kim Make A Deal After G7 Treachery
asciilifeform: factory edition of the chip had a loader that overwrites self via spi
asciilifeform: test jig was simply a variant of the stock fw, and it gets rewritten by the 'prod' fw prior to retail sale.
asciilifeform: and in so far as i can tell, thing's a pinball machine, designed to lock up on first sign of glitching
mircea_popescu: asciilifeform, honestly, i still suspect there's a clean way to flash-in via the factory pads. however...
a111: Logged on 2018-06-11 15:46 asciilifeform: one interesting observation, is that the update mechanism lets you flash in arbitrary crapola into 'rw' section ( it simply won't jump to it if it doesn't pass rsa(sha256(payload)) ) . so theoretically could put a nop sled there, ending with jump into the magic half of unlock routine. and then expose the thing to beta/gamma, and perhaps in a few months it will Do The Right Thing
a111: Logged on 2018-06-12 19:51 cnomad: well the most likely non-firmware approach would be finding a way to glitch/fault it
asciilifeform: recall, a cure that requires individual decapping of each patient, is worth ~0.
asciilifeform: otherwise it's a purely c-machine exploitation problem
asciilifeform: the only on-chip secret that'd make a diff, is if there is an iron backdoor left in fpga
mircea_popescu: apparently we'll end up having to organize a defanging lab.
BingoBoingo: <douchebag> It ended up being a spider bite << How sure are you about that? Prolly safest to tent the place and fumigate to be sure.
douchebag: A friend of mine is great w/ hardware hacking, reverse engineering, binary exploitation, firmware exploitation, ect.. He has a ton of equipment, if asciilifeform wants I could have him come in here.
mircea_popescu: douchebag, "parasite" isn't a class. but yes, arachnids.
mircea_popescu: a good.
douchebag: I'm doing well now after a few days
douchebag: It ended up being a spider bite
mircea_popescu: it may be as low as a coupla dozen.
mircea_popescu: well, you live in dc, send a few girls over to talk to the dweebs.
asciilifeform: i mean this is one possible approach, when encountering a mine field that the current republicans + slavegurlz can't clear, to say 'eh it dun need clearing'
asciilifeform: nobody has yet met a martian.
asciilifeform: it's a 'seti'.
asciilifeform: ( so paradoxically a 1btc prize imho could attract moar players than 10, even )
mircea_popescu: and this is not anglotardation ; at some point a decade ago i actually offered a full scholarship. NOBODY claimed it.
mircea_popescu: recall how it never took less than a year for the fucktarded public to even catch on ?
mircea_popescu: you know, i did this on trilema what ? a dozen times ? two ?
mircea_popescu: and somehow, all these inept fucktards sit somewhere "online" on the world wide dweeb, and manage to not notice that "hey, there's some people somewhere , can burn 10s of ks of this shitty green crap just out of boredom. when's the last time our "respectable" "employer" ok'd a $100 expense account ?!?!?!"
mircea_popescu: asciilifeform, and ? they ever won a confrontation with us navy ? they ever won without even needing to confront, like the chinese ?
mircea_popescu: if he's a tradesman. if he's a kid getting in the way of adults, nothing will EVER be worth anything. not ever, no matter what you do.
mircea_popescu: asciilifeform, a tool is worth to the tradesman his life.
asciilifeform: sure but what's a reddit worth.
mircea_popescu: recall the time i bought that dork a ranked reddit account ? recall the time anything came of it ?
mircea_popescu: meanwhile nothing's happening, and time goes by, and trinque in the end had a point, no door's open forever.
mircea_popescu: my bet would be, he's working a shitty job in some shitty company and dreams of the day "things will happen".
asciilifeform: mircea_popescu: hypothetically it'd be a contest with very simple mechanical judgement of winner. but i can picture why no one might want to be the referee.
mircea_popescu: http://btcbase.org/log/2018-04-18#1802054 we've seen ; how about http://btcbase.org/log/2017-10-11#1724173 ? random moron trying to make a living out of "online marketing", gets paid more than he earned his entire working life (cash, not fucking "hopes" bs) and he... what ? ☝︎☝︎
mircea_popescu: recall the days kakobrekla honestly imagined b-a actually has some sort of future ?
mircea_popescu: where are they ? even fucking today ? a year later, and all the "make mp eat crow" one could conjure up, where is it ?
mircea_popescu: recall ? "put your pdf reader in a bot" "where are your microscopy shots" etc.
mircea_popescu: asciilifeform, i'm just saying, the thing you discuss, with "has costs", works a ~certain~ way. and if you recall how NOPENOPE NOPE!!! kanzure was wrt getting his inept bs in functional shape, you realise that they will NEVER do any work.
asciilifeform: understand, a die photo would do me ~0 good re cr50.
asciilifeform: the problem with zeptobars, is that they're a ~porn co.
mircea_popescu: asciilifeform, yes, and if zeptobars weren't fucked in the head, they'd have a !Z service here.
asciilifeform: however must point out, serious work does cost money; e.g. time on electron microscope, we saw what costs; and there is a population of folx who can make use of it, but can't steal enuff time on instruments, or , if they can, allocated it for something that actually pays the bills
mircea_popescu: you're not going to reproduce the former by the latter ; just like you're not going to lure my slavegirls away by promising to be "a good sensitive guy with a great sense of humor". ☟︎
mircea_popescu: the item where they ship pre-printed cutouts with the silouette of a girl, and a hole for the head, holding a $x mn check, DOES SOMETHING.
asciilifeform: currently the thing is in a handful of boxes, but i suspect that it will spread.
asciilifeform: it's been on shop shelves for almost a year, and 0.
asciilifeform: mircea_popescu: the code repo contains list of meat names of good candidates to tie to a post.
mircea_popescu: ie, a) if indeed this guy exists that'd give tyou whatever for the whatever prize, and b) i know for certain that he wouldn;'t have otherwise, somehow then c) i'll send a gal over to tie him to a post, slice an inch of his abdomen, and slowly roll his inrtestine on a cat scratch pad.
mircea_popescu: if they can't do this, measured as "don't do this", a) the argument they were intelligent is tenuous and b) paying them is exacrtly thr wrong thing to do.
asciilifeform: mircea_popescu: occasionally folks do break things. presently they're stuck 1) publishing, and it gets patched within a day by enemy 2) the enemy's bounties, paid in printolade
mircea_popescu: there wasn't a single noteworthy one in the whole bunch, yes ?
asciilifeform: refereeing will take some work. hence the call for a willing referee .
mircea_popescu: this is a naive way of looking at things.
asciilifeform: mircea_popescu: imho it's worth a shot, dun cost me anything if nobody plays.
mircea_popescu: i'd be surprised if "the public" has the werewithal to even liberate 500 of them, should a pill be available now.
mircea_popescu: if it's software and it's found, well... they'll make a firmware upgrade yes.
mircea_popescu: asciilifeform, the only problem is, i'm paying bitcoin to fix google's crapolade ? this sounds a lot like the soviet-sponsored "criticism of capitalism"
a111: Logged on 2018-06-12 19:32 cnomad: im a go-with-the-flow kinda guy. rep will naturally follow
mircea_popescu: http://btcbase.org/log/2018-06-12#1823965 << it will onlty follow if you exist. without a registered key, you don't. nobody's going to even pretend "that cnomad guy" is a thing, different or differentiable from any other http://trilema.com/2014/ill-pay-for-your-tits/ ☝︎
asciilifeform: and at any rate a pill that requires elaborate physical diddling is not suitable for mass curing.
asciilifeform: cnomad: chip appears to be rad-hard, to an extent, also. tho there is a plain physical limit as to rad-hardness of an object half a mm in thickness
mircea_popescu: the claim to the contrary is a political ploy put forth by the enemies of humanity.
a111: Logged on 2018-06-12 19:18 cnomad: is this a technical channel or a political or...?
asciilifeform: cnomad: dpa won't do a lick of good, the boobytrap is a rsa pub sig check, no secrets involved
asciilifeform: well ideally he'd have a box to test $pill on
asciilifeform: mircea_popescu: good. nao all we need is a refereee
a111: Logged on 2018-06-12 18:48 asciilifeform considers idea of proclaiming a 1 btc prize for a working break of cr50 . any l1 folk interested in contributing to the prize chest , and/or overseeing the refereeing ?
mircea_popescu: sounds like a lot of expensive customization.
cnomad: from reading around a few months ago, they use a similar IC that's used for smart cards, which implement a lot of hardening measures like dual rail logic, security meshes, and various other hardening measures
cnomad: well the most likely non-firmware approach would be finding a way to glitch/fault it ☟︎
cnomad: yeah, using a SEM/FIB is the easy way
asciilifeform: but until then, it is a kind of iphone
asciilifeform: then, e.g. the c101pa, becomes a pretty useful, general-purpose arm64 box.
asciilifeform: simply must point out, if as side effect of the break, the user-loaded data is nulled, this is not a problem for us.
asciilifeform: ( though as i understand it will also be possible as a side-effect of any general break. )
cnomad: especially since this is a generic security chip with potentially more serious applications