MultiDrive – free backup, clone & wipe disk utility from Atola Technology

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic  [ 5 posts ] 
Author Message
 Post subject: Hard Drive Firmware Backdoor
PostPosted: April 6th, 2016, 22:41 
Offline

Joined: February 7th, 2015, 16:35
Posts: 50
Location: Brazil
How hard or if it's possible to dump/extract the firmware of a HDD? To compare with others firmwares or to find if there's some malware on the source code?


Top
 Profile  
 
 Post subject: Re: Hard Drive Firmware Backdoor
PostPosted: April 7th, 2016, 1:44 
Offline
User avatar

Joined: December 4th, 2012, 1:35
Posts: 3903
Location: Adelaide, Australia
easy to. all you need is some tools like pc3K or even serial port. If you want to go nuts looking there is some firmware in the downloads of this very forum. You aren't ever going to get the source code so forget that. you can disassemble some of the ARM based drives easily enough, but to tell if there is malware is going to take a fair amount of experience in firmware RE.


Top
 Profile  
 
 Post subject: Re: Hard Drive Firmware Backdoor
PostPosted: April 7th, 2016, 17:01 
Offline
User avatar

Joined: September 8th, 2009, 18:21
Posts: 16960
Location: Australia
WD firmware hacking:
http://spritesmods.com/?art=hddhack

SeDiv - Where to get it ?
http://www.hddoracle.com/viewtopic.php?f=84&t=31&p=37

HDD Oracle has several free firmware tools for different drives. Some are only demo versions with limited functionality.

_________________
A backup a day keeps DR away.


Top
 Profile  
 
 Post subject: Re: Hard Drive Firmware Backdoor
PostPosted: April 20th, 2016, 7:59 
Offline

Joined: April 20th, 2016, 7:08
Posts: 15
Location: Rostov-on-Don, Russia
You can write malware in service area but how you will lounch it?


Top
 Profile  
 
 Post subject: Re: Hard Drive Firmware Backdoor
PostPosted: April 20th, 2016, 8:19 
Offline
User avatar

Joined: December 4th, 2012, 1:35
Posts: 3903
Location: Adelaide, Australia
I would guess you would hook another module to do something nefarious based on certain parameters. Such as if the user got the OS to receive a file located on a certain sector, the malware would execute.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 5 posts ] 

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 191 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group