replayready/README.md

6 lines
591 B
Markdown
Raw Permalink Normal View History

2025-03-03 03:13:02 +05:30
# replayready
2025-03-03 03:16:55 +05:30
Python port of the wrapping mechanism used for "encrypting" the ECC keys to a playready model certificate from the Playready PK.
2025-03-03 03:28:23 +05:30
Nothing particularly special but worth noting that several OEMs use the same hardcoded keys from the Porting Kit for their respective implementations. As a result, the `zgpriv_protected.dat` (48 byte) keys from some TV dumps and even firmwares can be decrypted by this method without ever actually getting into the TEE.
2025-03-03 03:16:55 +05:30
Sharing since a lot of SL3000 certificates have already been made public. Many of which were obtained through the same method.