{"product_id":"microcontroller-exploits-isbn-9781718503885","title":"Microcontroller Exploits","description":"\u003cb\u003e\u003ci\u003eMicrocontroller Exploits\u003c\/i\u003e is a deep dive into advanced hardware hacking with detailed examples of real-world techniques and a comprehensive survey of vulnerabilities.\u003c\/b\u003e\u003cbr\u003e\u003cbr\u003eIn this advanced guide to hardware hacking, you'll learn how to read the software out of single chip computers, especially when they are configured not to allow the firmware to be extracted. \u003cbr\u003e\u003cbr\u003eThis book documents a very wide variety of microchip hacking techniques; it's not a beginner's first introduction.\u003cbr\u003e\u003cbr\u003eYou'll start off by exploring detailed techniques for hacking real-world chips, such as how the STM32F0 allows for one word to be dumped after every reset. You'll see how the STM32F1’s exception handling can slowly leak the firmware out over an hour, and how the Texas Instruments MSP430 firmware can be extracted by a camera flash.\u003cbr\u003e\u003cbr\u003eFor each exploit, you'll learn how to reproduce the results, dumping a chip in your own lab.\u003cbr\u003e\u003cbr\u003eIn the second half of the book you'll find an encyclopedic survey of vulnerabilities, indexed and cross referenced for use in practicing hardware security.Introduction\u003cbr\u003eChapter 1: Basics of Memory Extraction\u003cbr\u003eChapter 2: STM32F217 DFU Exit\u003cbr\u003eChapter 3: MD380 Null Pointer, DFU\u003cbr\u003eChapter 4: LPC1343 Call Stack\u003cbr\u003eChapter 5: Ledger Nano S, 0xF00DBABE\u003cbr\u003eChapter 6: NipPEr Is a buTt liCkeR\u003cbr\u003eChapter 7: RF 430 Backdoors\u003cbr\u003eChapter 8: Basics of JTAG and ICSP\u003cbr\u003eChapter 9: nRF51 Gadgets in ROM\u003cbr\u003eChapter 10: STM32F0 SWD Word Leak\u003cbr\u003eChapter 11: STM32F1 Interrupt Jigsaw\u003cbr\u003eChapter 12: PIC18F452 ICSP and HID\u003cbr\u003eChapter 13: Basics of Glitching\u003cbr\u003eChapter 14: MC13224, the Simplest Fault Injection\u003cbr\u003eChapter 15: LPC1114 Bootloader Glitch\u003cbr\u003eChapter 16: nRF52 APPROTECT Glitch\u003cbr\u003eChapter 17: STM32 FPB Glitch\u003cbr\u003eChapter 18: Chip Decapsulation\u003cbr\u003eChapter 19: PIC Ultraviolet Unlock\u003cbr\u003eChapter 20: MSP430 Paparazzi Attack\u003cbr\u003eChapter 21: CMOS VLSI Interlude\u003cbr\u003eChapter 22: Mask ROM Photography\u003cbr\u003eChapter 23: Game Boy Via ROM\u003cbr\u003eChapter 24: Clipper Chip Diffusion ROM\u003cbr\u003eChapter 25: Nintendo CIC and Clones\u003cbr\u003eChapter A: More Bootloader Vulns\u003cbr\u003eChapter B: More Debugger Attacks\u003cbr\u003eChapter C: More Privilege Escalation\u003cbr\u003eChapter D: More Invasive Attacks\u003cbr\u003eChapter E: More Fault Injections\u003cbr\u003eChapter F: More Test Modes\u003cbr\u003eChapter G: More ROM Photography\u003cbr\u003eChapter H: Unsorted Attacks\u003cbr\u003eChapter I: Other Chips Thank you, kindly.\u003cbr\u003eBibliography\u003cbr\u003eIndex\"This is both a fascinating and profoundly disturbing book. On the fascinating side, it is a cornucopia of great information . . . On the disturbing side, all that great and profoundly useful information is now gathered in one place and presented by a master.\"\u003cbr\u003e\u003cb\u003e—Richard Austin,\u003ci\u003e IEEE-Cipher\u003c\/i\u003e\u003c\/b\u003e (Read More)\u003cbr\u003e\u003cbr\u003e\"Understanding the pitfalls of microcontroller security is hard, because there are many exquisite and obscure bits of knowledge that must all work together. Before this book, there was only one effective way to learn: talk to a master practitioner like Travis. This book gives a broad and deep survey of the craft, but most importantly it gets the many critical bits in one place, under one cover. I am sure it will become a foundation of many career-changing classes. One day I hope to get good enough to teach one!\"\u003cbr\u003e \u003cb\u003e—Sergey Bratus, Distinguished Professor in Cyber Security, Technology, and Society, Dartmouth College \u003cbr\u003e\u003cbr\u003e\u003c\/b\u003e\"We don't have many books focused on such a topic, but face security problems tied to hardware and specifically to microcontrollers every day. Travis's book is foundational to understanding the security problems and how the attackers are going to exploit them. This book is a must-read for every product security team involved in device security.\" \u003cbr\u003e\u003cb\u003e— Alex Matrosov, CEO and Founder of Binarly\u003c\/b\u003e\u003cbr\u003e\u003cbr\u003e\"The book presents an inspiring and much-anticipated collection of microcontroller security vulnerabilities and exploits - presented by Travis himself. All the examples serve as an excellent reference of attack vectors that had often been excluded as being \"out-of-scope\" and \"nobody would do that\" until proven otherwise. This book is very hands-on and a great read for everyone interested in hardware security. I dearly hope that this book will also find its audience amongst chip vendors and especially their teams designing the next generation security architectures.\"\u003cbr\u003e—Dr. Johannes Obermaier, security engineer and researcher\u003cb\u003eTravis Goodspeed\u003c\/b\u003e is an embedded systems reverse engineer from Tennessee, where he drives a Studebaker and collects memory extraction exploits for microcontrollers. His recent projects include a function recognizer for Thumb2 firmware, a fresh memory corruption exploit for a 90's smart card, and a CAD tool for extracting bits from mask ROM photographs.","brand":"No Starch Press","offers":[{"title":"Default Title","offer_id":46300925329637,"sku":"NP9781718503885","price":49.99,"currency_code":"USD","in_stock":false}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/1842\/7735\/files\/9781718503885.jpg?v=1767732637","url":"https:\/\/k12savings.com\/es\/products\/microcontroller-exploits-isbn-9781718503885","provider":"K12savings","version":"1.0","type":"link"}