On-line Firmware Updating and Fingerprint Generating for Solid State Disks

Yuan Xue, Shouxin Wang, Tian Chen, Quanxin Zhang, Lu Liu*, Yu an Tan

*Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Virus and Rootkit may modify hard disk’s firmware to hide itself, while the traditional security software is not able to detect the modification of hard disk’s firmware. This paper relies on a USB analyzer to collect the protocol communication data of the JMUtility tool for a Solid State Disk, then unveils its internal protocol interface to dump the RAM content via the USB-SATA interface, and the firmware code is located in the RAM. By reverse engineering the firmware code, the protocol of writing to the RAM is also inferred to enable the modification of firmware code to change the device identification data. Meanwhile, the tool Firmware Extractor is developed to dump the firmware code for a specific Solid State Disk, and the possibility of on-line updating firmware and generating fingerprint is validated.

Original languageEnglish
Title of host publicationData Mining and Big Data - 6th International Conference, DMBD 2021, Proceedings
EditorsYing Tan, Yuhui Shi, Albert Zomaya, Hongyang Yan, Jun Cai
PublisherSpringer Science and Business Media Deutschland GmbH
Pages28-36
Number of pages9
ISBN (Print)9789811675010
DOIs
Publication statusPublished - 2021
Event6th International Conference on Data Mining and Big Data, DMBD 2021 - Guangzhou, China
Duration: 20 Oct 202122 Oct 2021

Publication series

NameCommunications in Computer and Information Science
Volume1454 CCIS
ISSN (Print)1865-0929
ISSN (Electronic)1865-0937

Conference

Conference6th International Conference on Data Mining and Big Data, DMBD 2021
Country/TerritoryChina
CityGuangzhou
Period20/10/2122/10/21

Keywords

  • Fingerprint generating
  • Firmware
  • On-line firmware updating
  • Reverse engineering
  • Solid state disk

Fingerprint

Dive into the research topics of 'On-line Firmware Updating and Fingerprint Generating for Solid State Disks'. Together they form a unique fingerprint.

Cite this