Espressif ESP32: Bypassing Encrypted Secure Boot, Smart Meter Tamper Teardown

grarpamp grarpamp at gmail.com
Tue Sep 22 14:58:13 PDT 2020


https://raelize.com/posts/espressif-esp32-bypassing-encrypted-secure-boot-cve-2020-13629/
https://news.ycombinator.com/item?id=24552482

During our Fault Injection research on the ESP32, we gradually took
steps forward in order to identify the required vulnerabilities that
allowed us to bypass Secure Boot and Flash Encryption with a single EM
glitch. Moreover, we did not only achieve code execution, we also
extracted the plain-text flash data from the chip.


https://www.youtube.com/watch?v=G32NYQpvy8Q Smart Meter Tamper
Teardown with bigclive.com

Nobody going to be powering many crypto miners over that tiny busbar
and contactor :)


More information about the cypherpunks mailing list