JoshuaWise.com

Defeating HP's Wireless Whitelist for Fun and Profit


Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
wireless-whitelist [2012/12/19 10:10]
joshuawise [Photos]
wireless-whitelist [2012/12/19 10:11] (current)
joshuawise [Defeating HP's Wireless Whitelist for Fun and Profit]
Line 1: Line 1:
 ====== Defeating HP's Wireless Whitelist for Fun and Profit ====== ====== Defeating HP's Wireless Whitelist for Fun and Profit ======
  
-//[[http://www.lulabs.net/|Chris Lu]] and I originally wrote -- and did -- this around December, 2005.  The article has been preserved for posterity.//+//[[http://www.lulabs.net/|Chris Lu]] and I originally wrote -- and did -- this around December, 2005.  The article has been preserved for posterity.  New since then is [[http://tmeeco.eu/|Tiido Priimägi]]'s version of this hack, which takes it to another level; see below!//
  
 As the authors of this article discovered unintentionally, recent HP laptops (including the HP tc1100 tablet PC and the HP zv5460us desktop replacement) have a wireless whitelist built into the BIOS similar to [[http://web.archive.org/web/20090309065357/http://www.srcf.ucam.org/~mjg59/thinkpad/wireless.html|that found by Matthew Garrett on IBM Thinkpads]]. In an attempt to replace the built in Broadcom wireless card in Chris' laptop with an Atheros card, we came across this evil firmware hack on our own. In this paper, we will detail the method that we used to defeat this lockout.  As the authors of this article discovered unintentionally, recent HP laptops (including the HP tc1100 tablet PC and the HP zv5460us desktop replacement) have a wireless whitelist built into the BIOS similar to [[http://web.archive.org/web/20090309065357/http://www.srcf.ucam.org/~mjg59/thinkpad/wireless.html|that found by Matthew Garrett on IBM Thinkpads]]. In an attempt to replace the built in Broadcom wireless card in Chris' laptop with an Atheros card, we came across this evil firmware hack on our own. In this paper, we will detail the method that we used to defeat this lockout.