frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

An Interesting Find: STM32 RDP1 Decryptor

https://carlossless.io/stm32-rdp1-decryptor/
38•carlossless•1h ago

Comments

MrBuddyCasino•23m ago
Some context:

"STM32 Read-Out Protection (RDP) secures flash memory through three levels (0, 1, 2) configured via option bytes. Level 0 allows full access (default). Level 1 restricts debugging and flash access, allowing regression to Level 0 by erasing flash. Level 2 permanently locks the device, disabling debug features, and cannot be reverted."

I actually have a half-defective device with an STM32 MCU that I would like to dump. Its a noise machine with a flash card containing the sounds, but the content is encrypted. I'd like to get at the decryption key to salvage it.

Has Level 2 been cracked?

some_random•9m ago
Huh, very interesting. As mentioned, I assume it's probably making use of the existing exploits against STM32 RDP1 but I'd really like to see some analysis of the device to see for sure.
ndiddy•5m ago
> One quirk: the software would always overshoot when reading. A STM32F205RB has 128KB of flash, but the tool would happily read past that boundary, padding everything beyond it with 0xFF. The actual flash contents within the valid 128KB region were correct though, so it's easy enough to just trim the output to the right size.

This is likely because in many cases, ST will sell microcontrollers with more flash than advertised. For example, the STM32F103C8 on the popular "bluepill" dev board is advertised as having 64 KB of flash. It actually has 128 KB of flash because it's the same chip as the STM32F103CB (this simplifies manufacturing because they can use the same die for both), it's just that ST never tested the second half of flash. In most cases you can use the second half of flash and it'll work just fine, but obviously it's not something you'd want to rely on for a commercial product.

Show HN: Try Archetype 360 – AI‑powered personality test, 3× deeper than MBTI

https://archetype360.app/
1•ddesposito•54s ago•0 comments

Nvidia to invest $4B in two photonics companies

https://www.cnbc.com/2026/03/02/nvidia-investment-coherent-lumentum.html
1•voxadam•1m ago•0 comments

Open Camera is a FOSS Camera App for Android

https://opencamera.org.uk/
1•tetris11•2m ago•0 comments

Macron to boost nuclear arsenal, involve European allies in doctrine change

https://www.reuters.com/world/europe/macron-says-france-will-increase-size-its-nuclear-arsenal-20...
1•Teever•2m ago•0 comments

A new spin on VPS hosting

https://lowendbox.com/blog/shellbox-the-coolest-new-take-on-hosting-provision-your-new-vps-via-co...
1•messh•3m ago•0 comments

Escape from Social Media

https://alf.bearblog.dev/escape-from-social-media/
1•speckx•3m ago•0 comments

The Anatomy of a Trace

https://encore.dev/blog/anatomy-of-a-trace
2•andout_•4m ago•0 comments

Show HN: I parsed 10 years of Japanese corporate filings into an API

https://axiora.dev/en
2•dahaleonkar•5m ago•0 comments

Show HN: AndroJack – A grounding gate for Android AI assistants

https://github.com/VIKAS9793/AndroJack-mcp
1•Vikas9793•6m ago•0 comments

OpenAI Built a Pipeline from Silicon Valley to the Surveillance State

https://matt728243.substack.com/p/the-supply-side-how-openai-built
4•resters•6m ago•1 comments

The Kremlin Banned These Books. You Can Find Them in a New York Library.

https://www.nytimes.com/2026/02/23/nyregion/hunter-college-soviet-banned-books.html
1•bookofjoe•7m ago•1 comments

A Nintendo 64 Rumble Pak so Bad that it's Good

https://phoboslab.org/log/2026/03/n64-rumble-pak
1•nilstycho•7m ago•0 comments

One of Amazon's data centers in the UAE caught fire after being hit by 'objects'

https://www.businessinsider.com/amazon-web-services-data-center-fire-objects-middle-east-strikes-...
2•0x002A•7m ago•0 comments

I read 44 books last year

https://www.jakeworth.com/posts/how-i-read-44-books-last-year/
1•jwworth•8m ago•0 comments

Language Model Contains Personality Subnetworks

https://arxiv.org/abs/2602.07164
1•PaulHoule•8m ago•0 comments

Show HN: UMC – Lossless compression that beats lzma by 7-46% on numeric data

https://github.com/gunnerhowe/Koba-UMC
1•gunnerlevi•9m ago•0 comments

Iran War Widens as Iran Attacks Saudi Oil Infrastructure

https://www.nakedcapitalism.com/2026/03/iran-war-widens-as-iran-attacks-saudi-oil-infrastructure-...
2•hackandthink•10m ago•0 comments

The Bull Case for Ambition

https://www.defmethod.com/essential-complexity/the-bull-case-for-ambition
1•joeleo46•11m ago•0 comments

Kickstarter's CEO on Running a Remote Company with a Four-Day Workweek

https://www.nytimes.com/2026/03/01/business/kickstarter-everette-taylor-interview-remote-four-day...
1•mooreds•13m ago•1 comments

Crypto's Richest Man Details His Secret Talks, Prison Time and Humbling Comedown

https://www.nytimes.com/2026/02/27/technology/cz-changpeng-zhao-binance-memoir-prison.html
1•JumpCrisscross•15m ago•0 comments

We Made the Isospectral Drums

https://prismika.github.io/2026/03/01/we-made-the-isospectral-drums.html
1•brantmv•15m ago•1 comments

How OpenAI caved to The Pentagon on AI surveillance

https://www.theverge.com/ai-artificial-intelligence/887309/openai-anthropic-dod-military-pentagon...
5•zachb211•15m ago•1 comments

Gram 1.0 Released

https://gram.liten.app/posts/first-release/
2•todsacerdoti•15m ago•0 comments

Help the FBI Identify Theses Images – Endangered Child Alert Program (ECAP)

https://www.fbi.gov/wanted/ecap/seeking-information
1•TigerUniversity•16m ago•0 comments

Balance Comes to Force Multiplication

https://kyefox.com/balance-comes-to-force-multiplication/
1•Kye•17m ago•0 comments

Image manipulation with convolution using Julia

https://medium.com/@Ahmad_Hamze/image-manipulation-with-convolution-using-julia-f898995ac1e5
1•AhmadHamze•18m ago•0 comments

Vibecoding Challenge 2: The Five Feathers (Spring 2026)

https://gist.github.com/MostAwesomeDude/ebb60b9bec53c4795f54606e944fccd7
1•todsacerdoti•19m ago•0 comments

Show HN: Agent Orchestrator – Built using the agents it orchestrates

https://github.com/ComposioHQ/agent-orchestrator
1•prateekk77•20m ago•1 comments

Transfr AI – Transfer Conversations Between Claude, ChatGPT, and Gemini

https://chromewebstore.google.com/detail/transfrai/nhhdkdmgcigbmdeacpmanconapeceedf
1•begad_ten•21m ago•1 comments

Catching Up on Some Social Media Addiction Rulings

https://blog.ericgoldman.org/archives/2026/03/catching-up-on-some-social-media-addiction-rulings.htm
1•hn_acker•21m ago•0 comments