15 LPC1114 Bootloader Glitch
In addition to the software vulnerabilities discussed in Chapter 4, the LPC1114 and LPC1343 are vulnerable to voltage glitching attacks documented in Gerlinsky (2017), Nedospasov (2017), and Dewar (2018). This is a beginner’s glitching attack, a good first target to learn fault injection.
Before we get started, look at Figure 4.5 and review the explanation of the lock features in Chapter 4. When the lock level is CRP1, we can use the memory corruption exploit in that chapter to dump the chip’s memory, but in CRP2 and CRP3 the bootloader commands are so restricted that we can’t trigger the vulnerability. That’s where voltage glitching comes in.
You should also see in Figure 4.5 that a single word of flash memory controls ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access