View Single Post
Old 05-23-2016, 09:37 AM   #9
knc1
Going Viral
knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.
 
knc1's Avatar
 
Posts: 17,212
Karma: 18210809
Join Date: Feb 2012
Location: Central Texas
Device: No K1, PW2, KV, KOA
Quote:
Originally Posted by encol View Post
Nice trick!

I've done this and this is what changed:

Code:
/var/local/appreg.db
/var/local/wsync.db
/var/local/system/wifid.conf
The sql returned nothing relevant for me.

I think wifi configuration is in wifid.conf but it seems encrypted
Adult Content?
Just because the first few characters are: aes-128?

= = = =

Seriously, putting sensitive information on a 6 oz, portable device -
I would hope they encrypt the information.

But it **must be** false security (just a warm and fuzzy thing) -
the key must be on the device somewhere so the information can be used.

Look for an executable file, wpa* (or wpa_*) in /bin /sbin /usr - -
I would expect something of that name pattern to have the key hardcoded in it.
Some use of readelf or objdump on the files you find might help (it will be in the 'constant' storage area of the file (where the strings are) but will look like binary rather than printable strings).
Re-Think on that:It may be base64 encoded to be printable, but that would be a dead giveaway itself.

- - - -

I am living in a 'Wifi Free' zone here, while working on NiLuJe's PW-3.
But with any luck, that job will only last a few more days.

- - - -

Disable Whispersync - somewhere along this path:
Menu -> Settings -> Device Options -> Personalize your Kindle -> Advanced Options
That should stop the changes being made to wsync.db

Which requires (real or fake) registration. See:
https://www.mobileread.com/forums/sho...0&postcount=76
for how I 'fake registered' NiLuJe's PW-3

- - - -

Isn't this a lot of fun?

Last edited by knc1; 05-23-2016 at 09:52 AM.
knc1 is offline   Reply With Quote