asciilifeform: i'd luvv to be proven wrong on this subj
asciilifeform: got example of a successful public reversing of any recent (i.e. post-1995) crystal ?
asciilifeform: swiftgeek: i intend to send a unit to zeptobars in near future. i do not however expect any interesting result, afaik no 22nm or similar density device has ever been publicly reversed
asciilifeform: the latter , you can get root shell on, on stock machine if it is in dev mode
asciilifeform: and cpu uart ( from the rk3399 ) on /dev/ttyUSB2
asciilifeform: btw you will get EC uart on /dev/ttyUSB1
asciilifeform: in fact , if you are so fond of lifting bga, lift the cpu , the spi rom, and the ec, and you will find that you still get the /tty/USB0 shell
asciilifeform: it runs on the h1 device pictured in h1.jpg.
asciilifeform: swiftgeek: given your introduction ( http://btcbase.org/log/2018-06-11#1822589 ) i assume you may be interested in verifying fact that cr50 is not a subfunctionality of the ordinary (i.e. kept in winbond spi ) bootrom or the EC controller ('nuvoton' arm , visible in right hand of photo ). this is very simple to do:☝︎☟︎☟︎