guru wrote:
Spildit, I would eat my hat if Doomer posted any files from the SA on those drives.
Ok ... I did manage to get a ROM file from Doomer .... Time to eat your hat ?
This is very cool. Drive is not like "older" ARM based drives at all.
It does have SA on platter and CPs on ROM.
There is a CODF section on ROM that indicates the drive family :
T515000
515
09/03/14 12:18:58
A4GNT514
ARIESHC8SATA
RELEASE
bldcrew
fjofficial1
Y:/ccb6p/R515/library/ARIESHC84KA4GNT515
On ROM there are a table of SA modules with a DIR and a FAT module. This would suggest that the SA file system has a FAT-like structure.
There is also a table for CP modules that are stored on ROM.
The first ROM resident CP is FSVG.
We will be targeting the security CPs .... So those would be CODF CP (ID = 82h), FCOD (security class appears to be Generic), FSEC (ID = 98H) and GNRC CPs.
Maybe we can still unlock this drive by ROM manipulation ...
A huge thanks to @fzabkar for taking the time to analyze this ROM and providing me the information that i did just post.
One step close to unlock this drive and to better understand the firmware arch of those newer drives.
Maybe this time we will beat ACE and figure out a way to access the SA on those prior to PC-3000 support !

_________________
1Q9xrDTzTddUXeJAFRn37aqh1Yr6buDCdw - (Bitcoin Donations)
paypal.me/Spildit - (PayPal Donations)
The HDD Oracle - Platform for OPEN research on Data Recovery.