Hello, Just curious if anyone has attempted to emulate the processor on this dongle. It appears as though the hardware has been updated since dr fuhrbals essay (I believe it was marx he dumped the pic of). Anyways , would be curious to find out if any attempts were made on this? Uses idea, rijndael and i believe has rsa support. Thanks, Sab.

It is the only commercial lock that uses a PIC.
You can glitch the code out of the pic.

At one point in time they did not set the Protect fuse, allowing
anybody to read out the code from the PIC.

But now with the fuse set the only option to get the code is to set-up a circuit which drops the voltage substantially on the power after X number of clock cycles.

You need to determine what voltage to drop too, as well as the number of clock cycles to glitch at. You will also need to figure out the click duration.

This is all I can help you with on this one.

Thx tgodd for the response, very informative. Thats about all I needed to know about it (: 4 dongles down, 4 to go (: