Bypassing debug password protection on the RH850 family using fault injection
blog.quarkslab.com | research | #hardware-security | #fault-injection | #hardware | #automotive | #rh850 | #renesas | #glitching
Summary
Quarkslab bypasses the 16-byte IDCODE debug password on several Renesas RH850 automotive microcontroller variants using voltage fault injection, enabling firmware extraction in black-box audits.
- Published
- Collected
Skip to content