![]() There is no easy way to recover from such firmware modifications, the researchers said. This could allow attackers to implant malware inside the firmware to infect host computers or to add cryptographic backdoors. How to unlock western digital ATA password Without Data loss.All links are available at. The firmware update process on the tested hard drives does not use cryptographic signature verification and can therefore be hijacked. On an Initio INIC-1607E chip the complexity is 2^57, making DEK recovery harder, but within the reach of attackers with access to suitable hardware resources, the researchers said. This compromises the encryption without the need to recover any password or KEK.įor the two remaining chips that did not have authentication backdoors, the researchers determined that the data encryption key (DEK) was generated using poor sources of random data obtained from the host computer and a predictable on-chip random number generator.įor one bridge, the JMicron JMS538S, the researchers estimate the complexity to be at best 2^40, which, according to them, allows the DEK to be recovered in a few hours on a normal high-end computer. They come out of the box with no password protection enabled. For one JMicron chip, the researchers managed to use a commercial data recovery tool to delete some bits from a drive’s service area, completely unlocking the drive’s data. We encourage all security researchers to responsibly report potential security vulnerabilities or concerns to WD Customer Service and Support at. We highly value and encourage this kind of responsible community engagement because it ultimately benefits our customers by making our products better. "We continue to evaluate the observations. HDD What is Thunderbolt 3 Internal Solid State Drives (SSDs) Internal Hard Drives (HDDs). "WD has been in a dialogue with independent security researchers relating to their security observations in certain models of our My Passport hard drives," spokeswoman Heather Skinner told The Register in a statement. Meanwhile, Western Digital says it is on the case. Western Digital WD Black Performance Internal Hard Drive HDD Check Price 3 Seagate BarraCuda Pro (2TB) Check Price 4 Western Digital VelociRaptor 1TB Check Price 5 Seagate BarraCuda Pro (2TB). This paper on WD self-encrypting drives has to be read to be believed. ![]() It must be stressed that the flaws are in WD's software running on these microcontrollers, rather than the chips themselves. ![]() Go to This PC, find the external hard drive you just connected, right-click on it and select Turn on BitLocker from the context menu. Tools used for WD SMR HDD Firmware Unlock and Backup: DFL-WD HDD firmware repair tool. Drive models using a JMicron JMS569 controller – which is present in newer My Passport products – can be forcibly unlocked using commercial forensic tools that access the unencrypted system area of the drive, we're told.ĭrives using a Symwave 6316 controller store their encryption keys on the disk, encrypted with a known hardcoded AES-256 key stored in the firmware, so recovery of the data is trivial. Connect the external hard drive to your computer. Unlock Western Digital HDD Using Master Password Today I spent nearly half day in trying to unlock Western Digital HDD. WD Security Enter an incorrect password five times in a row.
0 Comments
Leave a Reply. |