Inside a low budget consumer hardware espionage implant
Introduction
S8 data line locator capabilities
Listen in
Call back
Query location
Hardware
Chips
Connections
USB (passthrough)
UART
USB (MTK)
Dumping firmware
Obtaining and building fernly’s MT6261 branch
Dumping ROM
Dumping flash
Writing flash attempt
Analysis
SIM sniffing (via SIMtrace)
GPRS sniffing attempt (via OpenBTS)
Flash contents
OS
FAT12 filesystems (?)
Configuration data
Hidden commands
Provider call logs and itemized bill
dw or loc commands and during idle
gpsui.net
Interface
Setting...
Read more at ha.cking.ch