This commit is contained in:
astravaganza 2025-03-03 03:28:23 +05:30 committed by GitHub
parent 5ea85f74eb
commit 24ee589e0c
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -1,5 +1,5 @@
# replayready
Python port of the wrapping mechanism used for "encrypting" the ECC keys to a playready model certificate from the Playready PK.
Nothing particularly special but worth noting that several OEMs use the same hardcoded keys from the Porting Kit for respective implementations. As a result, the `zgpriv_protected.dat` (48 byte) keys from TV dumps and even firmwares can be decrypted by this method without ever actually getting into the TEE.
Nothing particularly special but worth noting that several OEMs use the same hardcoded keys from the Porting Kit for their respective implementations. As a result, the `zgpriv_protected.dat` (48 byte) keys from some TV dumps and even firmwares can be decrypted by this method without ever actually getting into the TEE.
Sharing since a lot of SL3000 certificates have already been made public. Many of which were obtained through the same method.